Cyber SDC- Secure Design Pattern Analyst - Staff 2 - Consulting - Location OPEN
Cyber Security Analyst job in Springfield, IL
At EY, we're all in to shape your future with confidence. We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
In an ever-evolving IT landscape, EY stands as a beacon of trust for clients across diverse industries seeking reliable solutions to address their intricate risks and vulnerabilities. As a vital member of our Secure Design Pattern team, you will play a vital role in achieving this objective by empowering clients to comprehend, navigate, and secure all applicable layers of business applications. This is an opportunity to leverage both your technical prowess and business acumen to drive our mission and make a significant impact on global cybersecurity.
**The opportunity**
We currently offer an exciting career opportunity for a Secure Design Pattern Analyst responsible for establishing blueprints to standardize implementation of security controls across layers of business applications and architectures.
At our core, our Secure Design Pattern services play a pivotal role in assisting our clients to implement business applications securely and in line with industry best practices and client policies and standards. The ideal candidate will be responsible for documenting secure design patterns, interfacing with application owners, architects, and subject matter resources, as well as discuss and apply secure patterns, guidelines, and principles.
**Your Key Responsibilities**
+ Create and maintain design patterns documentation and playbooks
+ Coordinate and streamline the processes to create, update, manage, and control design patterns. at clients.
+ Engage with security architects, product owners, engineers, and subject matter resources to support new design patterns and updates to design patterns.
+ Promote security best practices within discussions.
+ Review and process design pattern service requests, ensuring timely resolution.
+ Track and report the status of secure design pattern requests, provide regular updates on progress and outcomes.
**Skills and Attributes for Success**
+ Proven experience writing technical documentation, standard operating procedures, policies, standards supporting the implementation of security controls and architecture patterns.
+ Understanding and apply secure design concepts.
+ Strong communication skills, with the ability to convey technical information in discussions and documentation.
+ Knowledge of industry security frameworks and compliance standards and regulations (e.g., CMMC, NIST, ISO 27001, CIS, OWASP, TOGAF, SABSA, etc.)
+ Familiarity with cloud security platforms (e.g., AWS, Azure) and cloud-native security controls.
+ Basic understanding of authentication (OAuth, SAML, OpenID), authorization (RBAC, ABAC), and Zero Trust
+ Understanding of encryption algorithms, key management, digital signatures, and PKI.
+ Familiarity with SIEM, SOAR, XDR, log management, and anomaly detection.
+ Familiarity with secure coding practices, DevSecOps, SAST/DAST tools, and software security design.
+ Familiarity with firewalls, VPNs, TLS, micro-segmentation, and intrusion detection.
+ Excellent problem-solving skills and the ability to manage multiple tasks effectively.
+ Strong communication skills to collaborate with team members and stakeholders (e.g., business, information technology, product owners, cybersecurity.
+ A track record of delivering high-quality client services and work products within expected timeframes.
+ Ability to managing and maintain inventories of documentation
**To qualify for the role you must have**
+ Understanding of security principles
+ Bachelor's degree in computer science, information technology, cybersecurity, technical writing, or a related field
+ Proven experience in technical writing
+ Hands on experience managing or working on a security architecture and/or GRC team
+ Basic knowledge of cloud platforms (AWS, Azure) and their security features
+ Knowledge of common industry security frameworks and regulations (e.g., CMMC, NIST, ISO 27001, CIS, OWASP, etc.)
+ Knowledge of general security concepts and methods, such as security policy creation, enterprise security strategies, architectures, governance, vulnerability assessments, privacy assessments, intrusion detection, and incident response
+ Experience in leading process definition, workflow design, and process mapping
+ Experience in ServiceNow managing tickets and generating basic reports.
**Ideally, you'd also have**
+ Professional certifications in cybersecurity, such as CISSP, CISM, or specific vendor certifications like from AWS, Azure, and Google Cloud.
+ Hands on experience in cloud-based security solutions
+ Prior experience as a security architect
+ Experience in assessing compliance to regulations and standards
+ Strong interpersonal and communication skills, with the ability to collaborate effectively with clients and cross-functional teams to present solution designs, options, and innovations.
**What we look for**
We are interested in intellectually curious people with a genuine passion for cybersecurity. With your broad exposure across security architecture and enterprise applications, we will turn to you to speak up with innovative new ideas that could make a lasting difference not only to us - but also to the industry at large. If you have the confidence in both your writing, presentation, and technical abilities to grow into a leading expert here, this is the role for you.
**What we offer you**
At EY, we'll develop you with future-focused skills and equip you with world-class experiences. We'll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more .
+ We offer a comprehensive compensation and benefits package where you'll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $61,200 to $100,500. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $73,100 to $113,500. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
+ Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
+ Under our flexible vacation policy, you'll decide how much vacation time you need based on your own personal circumstances. You'll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
**Are you ready to shape your future with confidence? Apply today.**
EY accepts applications for this position on an on-going basis.
For those living in California, please click here for additional information.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
**EY | Building a better working world**
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY's Talent Shared Services Team (TSS) or email the TSS at ************************** .
Security Engineer, Access Risk
Cyber Security Analyst job in Springfield, IL
Meta's security team is the central engine driving data and systems security at the company, supporting Meta and all of its family of apps. The organization is responsible for preventing malicious actors from compromising our environment as well as detecting and responding to them before they can do damage. We ensure that we are maintaining the protections we say we will, and engaging with the community to help those outside the company learn from the work we do. We work across all parts of the company, from the corporate infrastructure to production to external services, interfacing with nearly every team in the company.We are looking for an experienced Security Engineer to join our Identity, Authentication & Access Management (IAM) leadership team to drive cross-company initiatives to reduce access risk, while maintaining an acceptable balance of friction for our workforce.
**Required Skills:**
Security Engineer, Access Risk Responsibilities:
1. Proactively identify and prioritize areas of access risk across the company
2. Lead major cross-company workstreams to deploy capabilities from multiple security teams to mitigate this risk
3. Understand technical implementation of Meta's highest-risk assets (eg. our social graph cache) and design appropriate solutions to reduce internal access risk
4. Understand how our workforce interacts with assets across the company, and pursue opportunities to reduce friction and help the company move fast
5. Work with policy and legal teams to strengthen our standards and governance, and software engineering teams to influence design of our core access control systems
6. Influence asset-owning teams and their leadership across Meta to adopt appropriate access control designs and operational processes
**Minimum Qualifications:**
Minimum Qualifications:
7. Understanding of how to manage security risks in a fast-moving environment
8. Significant experience in driving large cross-company engineering initiatives
9. Experience communicating and influencing across functions to drive solutions
10. Experience delivering executive-level security strategies
11. Engineering experience and capacity to understand and reason about complex technical systems
12. B.S. Computer Science or equivalent work experience
13. 10+ years of work experience in software or security engineering
**Preferred Qualifications:**
Preferred Qualifications:
14. Practical experience with authorization or access management solutions
**Public Compensation:**
$213,000/year to $293,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Principal Security Engineer
Cyber Security Analyst job in Springfield, IL
The Oracle Cloud Security and Safety team is seeking dedicated security engineers looking to make their mark in a new security domain. The team is committed to bridging the gap between operations and security, empowering the engineering and operations teams within Oracle to operate their services without fear of security impacting mistakes or malicious behavior. Oracle Cloud Infrastructure is committed to constantly improving and securing our suite of massive scale, integrated cloud services in a broadly distributed, multi-tenant cloud environment. We are committed to providing the best in cloud products that meet the needs of our customers who are tackling some of the world's biggest challenges.
We offer unique opportunities for smart, hands-on security engineers with the expertise and passion to solve difficult architecture, engineering, and process problems. Our customers run their businesses on our cloud, and our mission is to provide them with the most secure cloud services. Our ideal candidate is a security engineer with expertise and passion in finding and improving areas of weakness, while developing new standards in the security and safe operation of distributed systems, multi-tenant services and large-scale infrastructures. If this is you, joining Oracle Cloud Infrastructure (OCI) will enable you to design and build innovative new security models & systems from the ground up. These are exciting times in our space - we are growing fast and working on ambitious new initiatives. A security-focused engineer at any level can make significant technical and business impact
**Responsibilities**
+ Prototype, design, and implement security solutions for new and challenging problems
+ Drive and champion security tool development (e.g. scanning tools)
+ Consult software development teams in design and architecture of safe and secure systems through Threat Modeling and modeling exercises
+ Champion and consult on secure development lifecycle practices
+ Design and integrate verification and posture reporting mechanisms
+ Define security configuration and implementation best practices
Qualifications:
+ Bachelor's or Master's degree in Computer Science or related field
+ 5+ years of experience in security engineering or related field or equivalent experience
+ Experience building automated security solutions
+ Strong security experience, particularly with focus in one of the following areas:
+ Defensive Security
+ Offensive Security
+ Service architecture and Design Patterns
+ Strong collaboration and communication skills
Preferred Skills
+ Experience scaling operational activities via Python, Bash, and other tools
+ DevOps or SRE experience operating large, distributed, continuously deployed services
+ Experience operating large, distributed, continuously deployed services
+ Expertise in designing databases schemas in (NoSQL / SQL).
+ Knowledge on bridging security engineering requirements into the software development life cycle.
+ Security training and mentoring experience
+ Experience with statistical/mathematical predictive modeling
+ Experience with machine learning / artificial intelligence
+ Experience designing resilient systems that support quick recovery
+ Experience with container orchestration and management
+ History of collaborating and integrating processes with software development teams, data scientists, business and other technical roles
+ Experience with Java or Python development
Disclaimer:
**Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.**
**Range and benefit information provided in this posting are specific to the stated locations only**
US: Hiring Range in USD from: $109,200 to $223,400 per annum. May be eligible for bonus and equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC4
**About Us**
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
Information Security Specialist
Cyber Security Analyst job in Springfield, IL
Windstream Holdings, Inc., is a leading provider of advanced network communications and technology solutions for consumers, small businesses, enterprise organizations and carrier partners across the U.S. + Kinetic is a premier internet solutions provider on a mission to deliver ultra-fast, reliable internet to consumers and small businesses across the U.S., helping them Internet better.
+ Windstream Enterprise is a leading managed services provider providing strategic communications and security products to mid-size businesses and enterprise clients.
+ Windstream Wholesale provides high-capacity, high-performance networking solutions and services to other telecom carriers, data centers, content providers and enterprises.
The Windstream team provides innovative software and network solutions to connect people and empower business in a world of infinite possibilities!
**_________________________________________________________**
**About the Role:**
The Information Security Specialist is a crucial member of the Threat Detection and Response (TDR) team, dedicated to safeguarding the Windstream environment against cyber threats. This role involves a blend of expertise in cybersecurity tactics and an analytical mindset to detect, investigate, and mitigate potential security incidents. The Specialist will act as both a subject matter expert and a mentor, fostering knowledge and skills development within the team.
**What You'll Do:**
+ **Alert Management:** Detect and respond to security alerts from both TDR and third-party tooling.
+ **Incident Handling:** Coordinate a well-structured response to cybersecurity incidents to minimize their impact.
+ **Expertise Provision:** Serve as a subject matter expert in information security within the organization.
+ **Mentorship:** Provide guidance and help develop training plans for junior team members.
+ **Tool Optimization:** Oversee the review and tuning of rules for all TDR tools.
+ **SIEM Enhancement:** Continuously improve the SIEM system, adjust security tools, log ingestion, and rule sets in response to the evolving threat landscape.
+ **Playbook Development:** Create incident response playbooks based on SOC escalation metrics.
+ **Automation and Streamlining:** Develop and drive agile automation solutions to enhance detection capabilities, making use of Security Orchestration, Automation, and Response (SOAR) tools.
+ **Threat Modeling:** Conduct threat modeling exercises to maintain robust security postures.
+ **Threat Hunting:** Execute threat hunts on Common Vulnerabilities and Exposures (CVEs) and Indicators of Compromise (IOCs), ensuring effective monitoring.
+ **Remediation Documentation:** Document remediation strategies to neutralize threats and secure the environment.
+ **Technical Escalation:** Act as an escalation point for Tier I & II analysts or Managed Security Service Providers (MSSP).
+ **Incident Response:** Manage the entire incident response process, from initial alert to recovery and post-incident analysis.
+ **Log Review and Engineering:** Conduct log reviews and engineer the integration of log sources with security tools.
+ **Policy and Documentation Maintenance:** Ensure the creation and updating of cybersecurity service standards, documentation, and processes.
+ **Incident Tracking:** Formally document and track incidents from detection to resolution.
+ **Performance Metrics:** Develop metrics for Incident Response to foster process improvements.
+ **Cyber Threat Intelligence:** Collect and utilize threat intelligence to bolster defenses against known attack vectors.
+ **Threat Classification:** Prioritize threats based on intelligence and system alerts.
+ **Compliance Assistance:** Aid in artifact collection for compliance with standards such as PCI-DSS and SOX.
+ **Team Exercises:** Engage in Red/Blue team activities and participate in tabletop exercises.
+ **Shift Availability:** Availability to work on a 24x7 schedule to ensure continuous security coverage.
**Do You Have:**
+ Comprehensive knowledge of network protocols, devices, operating systems, cloud computing, and secure architecture, including proficiency in Windows, Linux, Azure, and Oracle Cloud.
+ Proficiency with SIEM, SOAR, IDS/IPS, EDR, Mail Gateways, Proxy, PKI, SYSLOG, and other network/security components.
+ Proven experience in incident response and remediation.
+ Familiarity with NIST Publications such as SP 800-53, 800-61, 800-70, 800-37.
+ Understanding of IT Security principles, techniques, and technologies.
+ Capability to conduct host and network analysis, including packet capture analysis.
+ In-depth knowledge of the MITRE ATT&CK Framework, and understanding of OWASP, Kill Chain, and other security frameworks.
+ Strong grasp of malware analysis concepts and methodologies.
+ Ability to independently manage initiatives with minimal oversight.
+ Ownership of toolsets or processes within the security domain.
+ Expertise in managing Incidents, Service Requests, Change, and Problem management processes.
+ Experience with current cyber threats and their exploitation tactics.
+ Exceptional analytical and problem-solving skills.
+ Excellent time management and organizational skills.
+ Quick learner for new technologies and concepts.
**Must Haves:**
Candidates must possess or be willing to obtain within the first 12 months of employment one of the following certifications: Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP) or SANS Global Information Assurance Certification (GCIH).
**Physical Tasks** - Standing Occasionally: 0-33% | Walking Occasionally: 0-33% |Sitting Continuously: 67-100% | Bending: Occasionally: 0-33% | Crouching: Occasionally: 0-33% | Pushing-Pulling: Occasionally: 0-33% | Carrying: Occasional: 0-33% | Reaching Above Head: Occasionally: 0-33% | Lifting-Lowering >1-15 lbs: Occasionally: 0-33% | Repetitive Hand Action: Medium Dexterity: Continuously: 67-100% | Fine Manipulating: frequently: 34% - 66%
**Audio Visual Needs** - Hearing: Continuously: 67-100%| Near Vision: Continuously: 67-100% | Far Vision: Occasionally: 0-33% | Peripheral Vision: Occasionally: 0-33%
**Equipment Used in Job Performance** : Computer, Printer, Telephone, Basic Office Supplies, Copier
**_________________________________________________________**
**Our Benefits:**
+ Medical, Dental, Vision Insurance Plans
+ 401K Plan
+ Health & Flexible Savings Account
+ Life and AD&D, Spousal Life, Child Life Insurance Plans
+ Educational Assistance Plan
+ Identity Theft, Legal, Auto & Home and Pet Insurance
+ ******************************
Windstream is an equal opportunity employer. At Windstream, we celebrate the authenticity and uniqueness of our people and their ideas. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, national origin, genetic information, protected veteran status, current military status, disability, sexual orientation, marital status, creed, citizenship status, or any other status protected by law, and to give full consideration to qualified disabled individuals and protected veterans.
Actual base pay for this job will depend on the candidate's primary work location and other factors, such as relevant skills and experience.
**Notice to Non-U.S. Citizens:** Windstream, as a holder of licenses granted by the Federal Communications Commission, is required to notify and to obtain approval from federal regulatory agencies prior to granting certain system/network access to any non-U.S. citizen personnel. Offers of employment extended to non-U.S. citizens are contingent upon receiving the requisite approval from agencies overseeing compliance. Non-U.S. citizens are required to provide Windstream with the personal identifying information required to obtain the necessary approval prior to accessing certain systems and/or Windstream's network. _If you are not a U.S. citizen, please notify your recruiter or email *************************** as soon as possible for information on Windstream's foreign personnel disclosure and approval requirements._
**Job Details**
**Job Family** **IT**
**Job Function** **Information Security**
**Pay Type** **Salary**
LEAD INFORMATION SECURITY ENGINEER-FEDERAL MB
Cyber Security Analyst job in Springfield, IL
Lumen connects the world. We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly. Together, we are building a culture and company from the people up - committed to teamwork, trust and transparency. People power progress.
We're looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future.
**The Role**
The Lead Information Security Engineer is a member of the Industrial Security team supporting Lumen Government Services and is responsible for performing cybersecurity compliance actives in support of government contracts as well as Lumen Product and Services targeting the Government market. The Lead Information Security Engineer must execute all six phases of the Risk Management Framework (RMF) process in accordance with FISMA, DoD, FIPS, and NIST requirements and policy. Responsibilities include developing RMF documentation (System Security Plan, Security Control Traceability Matrix, Plan of Action & Milestones, various Standard Operating Procedures, Continuous Monitoring Plan, etc), tracking/resolving vulnerabilities, performing continuous monitoring activities, developing security policies, and supporting cybersecurity guidance and compliance related activities. The Lead Information Security Engineer works closely with Lumen government customers (Federal and State), Lumen government program teams, Lumen operational teams, Lumen security teams, as well as Lumen Product and Services teams targeting our government customers.
A successful candidate will have excellent communications skills and experience presenting cybersecurity issues to a wide variety of audiences. The candidate must be able to work independently and as a team leader to develop and execute strategies. The candidate must possess and maintain a broad technical knowledge of current and emerging technologies used within corporate infrastructure and government customer infrastructure.
**The Main Responsibilities**
+ Perform as an Information Systems Security Officer (ISSO) for government system
+ Achieve and maintain ATO (Authority to Operate), as required.
+ Write System Security Plans (SSP), Plan of Actions & Milestones (POA&M), Continuous Monitoring Plan, Risk Assessments, Privacy Impact Analyses (PIA), and supporting documentation for systems subject to NIST SP 800-53
+ Lead Security Assessment and Authorization processes and procedures
+ Manage cybersecurity audits by federal departments/agencies, including third party auditors
+ Develop and complete continuous monitoring reports and briefings
+ Interface with appropriate government agencies, company management and employees, customers, vendors, and suppliers to ensure understanding of and compliance with security requirements
+ Review vulnerability and compliance scan results (Nessus, Qualys, etc), and work with the various team members to remediate vulnerabilities, and track ongoing vulnerability status and remediation activities
+ Conduct periodic reviews to ensure compliance with established policies and procedures
+ Investigate and document cybersecurity incidents, as well as provide protective and corrective measures in response to such incidents
+ Report all cybersecurity incidents to the program Information Systems Security Managers (ISSM) through reports and briefings
+ Participate in the change management process to ensure changes to software, hardware, and firmware do not adversely impact the security of an environment
+ Develop, facilitate, and present information security awareness and security training on various customer and corporate security policies
+ Coordinate and participate in business development opportunities related to cybersecurity compliance to include evaluating Requests for Information (RFI) and
+ Requests for Proposal (RFP) from government customers and documenting cybersecurity responses
+ Recommend security best practices and system configuration standards
**What We Look For in a Candidate**
+ 6+ years or experience performing cybersecurity, certification & accreditation (C&A), or assessment & authorization (A&A) related activities
+ Excellent oral and written communication skills, collaboration skills, and experience in presenting cybersecurity issues to all levels of management, as well as non-technical staff
+ Strong work ethic, demonstrated self-starter with the ability to work in a fast paced, team-oriented environment
+ Uses strong interpersonal skills to build partnerships with stakeholders and peers
+ Ability to successfully complete Government suitability and/or Government personnel security requirements is highly desired.
+ Education: Bachelors or equivalent years of experience.
+ Professional cybersecurity certification (CISSP, CISM, GSLC, CCISO)
**Compensation**
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.
Location Based Pay Ranges:
$103,711 - $138,281 in these states: AL, AR, AZ, FL, GA, IA, ID, IN, KS, KY, LA, ME, MO, MS, MT, ND, NE, NM, OH, OK, PA, SC, SD, TN, UT, VT, WI, WV, and WY.
$108,896 - $145,195 in these states: CO, HI, MI, MN, NC, NH, NV, OR, and RI.
$114,082 - $152,109 in these states: AK, CA, CT, DC, DE, IL, MA, MD, NJ, NY, TX, VA, and WA.
\#GSS
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.
Learn more about Lumen's:
+ Benefits (****************************************************
+ Bonus Structure
**What to Expect Next**
\#LI-JS1
Requisition #: 338652
**Background Screening**
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page (************************************* . Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
**Equal Employment Opportunities**
We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, "protected statuses"). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.
**Disclaimer**
The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
**Application Deadline**
07/22/2025
Cloud Security Engineer
Cyber Security Analyst job in Springfield, IL
Datavant is a data platform company and the world's leader in health data exchange. Our vision is that every healthcare decision is powered by the right data, at the right time, in the right format. Our platform is powered by the largest, most diverse health data network in the U.S., enabling data to be secure, accessible and usable to inform better health decisions. Datavant is trusted by the world's leading life sciences companies, government agencies, and those who deliver and pay for care.
By joining Datavant today, you're stepping onto a high-performing, values-driven team. Together, we're rising to the challenge of tackling some of healthcare's most complex problems with technology-forward solutions. Datavanters bring a diversity of professional, educational and life experiences to realize our bold vision for healthcare.
**What We're Looking For**
As a Cloud Security Engineer in the Secure Product & Infrastructure program, you will be part of a highly technical team, actively working to build security into Datavant's infrastructure. You'll play a key role helping to build secure patterns, and enabling engineering teams to move fast, while being secure.
**What You Will Do**
+ Use your strong understanding of AWS security to help Datavant navigate all the traps of good AWS products vs. great AWS products and know when to be thoughtful on use.
+ Have strong experience and understanding of containerization, as well as operating and securing Kubernetes clusters.
+ Have a point of view on secure continuous development and represent it as Datavant continues to mature working collaboratively with other team members.
+ Have a point of view on secure network controls and the deep design paradigms of secure cloud networking, and overlay networks.
+ Have experience working with engineering teams, helping to tune WAF rules for applications.
+ Review components being built in our cloud infrastructure (via pull request reviews and contribution). During these reviews you'll be mentally present and use your ability to evaluate risk such that you have a great impact on the delivery of secure code. This role is not merely a +1.
+ You will have an understanding of risks, but may have some knowledge gaps in depth of risk management. It's OK, we'll teach you. The core skill set you bring to the table is a development mindset.
+ Work directly with DevOps peers to help build practical and usable security into the SDLC and AWS.
+ Own new projects for advancing security in our environment. Be a technical expert and collaborate with others on the teams to ensure project success. Your impact here cannot be understated, you are a core contributor and have deep influence to empower Datavant greatness.
**What You Need to Succeed**
+ You are humble.
+ You have an "automation first" mindset.
+ You can build Infrastructure as Code in Terraform. It is expected that you have a "git native" skillset.
+ You can articulate start to finish what a secure release cycle should look like in detail.
+ You have opinions and options on most of the steps.
+ You are a consummate collaborator, it's inherent in your work behavior.
+ You value time deeply and optimize for greatest impact.
+ 3+ years of working in at least 1 major public Cloud provider and a desire to learn a second.
+ 2+ years of operating, and securing Kubernetes clusters.
+ Broad scoped projects don't scare you, they energize you. However, you like to get things done fast (and help others) with limited dependencies.
**What Helps You Stand Out**
+ You are often viewed as the "expert in the room" on cloud security in your current role.
+ You have experience with SCA, SAST, and secrets detection.
+ You have experience with security in healthcare or other highly regulated space. Examples: FEDRAMP, HIPAA/HITRUST, SOC 2, PCI experience from an operational response standpoint.
We are committed to building a diverse team of Datavanters who are all responsible for stewarding a high-performance culture in which all Datavanters belong and thrive. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status.
At Datavant our total rewards strategy powers a high-growth, high-performance, health technology company that rewards our employees for transforming health care through creating industry-defining data logistics products and services.
The range posted is for a given job title, which can include multiple levels. Individual rates for the same job title may differ based on their level, responsibilities, skills, and experience for a specific job.
The estimated total cash compensation range for this role is:
$152,000-$190,000 USD
To ensure the safety of patients and staff, many of our clients require post-offer health screenings and proof and/or completion of various vaccinations such as the flu shot, Tdap, COVID-19, etc. Any requests to be exempted from these requirements will be reviewed by Datavant Human Resources and determined on a case-by-case basis. Depending on the state in which you will be working, exemptions may be available on the basis of disability, medical contraindications to the vaccine or any of its components, pregnancy or pregnancy-related medical conditions, and/or religion.
This job is not eligible for employment sponsorship.
Datavant is committed to a work environment free from job discrimination. We are proud to be an Equal Employment Opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, or other legally protected status. To learn more about our commitment, please review our EEO Commitment Statement here (************************************************** . Know Your Rights (*********************************************************************** , explore the resources available through the EEOC for more information regarding your legal rights and protections. In addition, Datavant does not and will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay.
At the end of this application, you will find a set of voluntary demographic questions. If you choose to respond, your answers will be anonymous and will help us identify areas for improvement in our recruitment process. (We can only see aggregate responses, not individual ones. In fact, we aren't even able to see whether you've responded.) Responding is entirely optional and will not affect your application or hiring process in any way.
Datavant is committed to working with and providing reasonable accommodations to individuals with physical and mental disabilities. If you need an accommodation while seeking employment, please contact us at *********************** . We will review your request for reasonable accommodation on a case-by-case basis.
For more information about how we collect and use your data, please review our Privacy Policy (**************************************** .
Security Engineer
Cyber Security Analyst job in Springfield, IL
**About Us** **Since 1989, SHI International Corp. has helped organizations change the world through technology. We've grown every year since, and today we're proud to be a $15 billion global provider of IT solutions and services.** **Over 17,000 organizations worldwide rely on SHI's concierge approach to help them solve what's next.** **But the heartbeat of SHI is our employees - all 6,000 of them.** **If you join our team, you'll enjoy:**
+ **Our commitment to diversity, as the largest minority- and woman-owned enterprise in the U.S.**
+ **Continuous professional growth and leadership opportunities.**
+ **Health, wellness, and financial benefits to offer peace of mind to you and your family.**
+ **World-class facilities and the technology you need to thrive - in our offices or yours.**
**Job Summary**
The IT Security Engineer leads client engagements and assessments, delivering detailed reports on vulnerabilities and offering remediation options while developing new security services and automation playbooks. This role involves collaborating with organizational leaders, educating sales teams on Cyber Security solutions, and staying current on industry trends to strengthen customer relationships and improve internal performance. The IT Security Engineer must demonstrate strong communication, problem-solving, and relationship-building skills to design and deliver solutions, mentor junior staff, and identify areas for improvement through automation.
**Role Description**
+ Leading client engagements and assessments, including scoping, following an industry-standard methodology, reporting findings, and continuously improving processes
+ Delivering detailed reports and leading debriefing calls with clients to discuss discovered vulnerabilities, offering remediation and mitigation options
+ Developing and delivering new security services and automation playbooks to address customer requests and improve internal performance
+ Collaborating with multiple layers of contacts within an organization, including CIO, CSO, CISO, Security Directors, and Security Admin, to strengthen customer relationships
+ Educating sales teams on Cyber Security solution selling and key technologies through training sessions
+ Staying current on new technology, trends, and market behavior by studying market trends and the industry landscape
+ Engaging in self-study and independent work in lab facilities to increase job-related knowledge and skills
+ Assisting in research and development projects as needed, and proactively working with other business units to identify areas of improvement through automation
+ Identifying client needs and requirements to recommend appropriate solutions and service opportunities
+ Serving as a subject matter expert in designing, architecting, and delivering solutions, and mentoring junior analysts and developers
**Behaviors and Competencies**
+ Presenting: Can prepare and deliver presentations, addressing key points and responding to questions with clarity.
+ Collaboration: Can actively participate in team discussions, respect differing opinions, and collaborate with others to achieve common goals.
+ Detail-Oriented: Can identify errors or inconsistencies in work and make necessary corrections.
+ Intellectual Curiosity: Can actively seek out new learning opportunities and apply learned concepts to different situations.
+ Organization: Can prioritize daily tasks, manage personal workflow, and utilize basic tools to keep track of responsibilities
+ Follow Up: Can independently track and follow up on tasks without requiring reminders, ensuring responsibilities are fulfilled.
+ Communication: Can effectively communicate complex ideas and information, and can adapt communication style to the audience.
+ Relationship Building: Can identify opportunities for collaboration, propose strategies for effective communication, and build relationships without explicit instructions.
+ Self-Motivation: Can identify personal or professional growth opportunities, propose self-improvement strategies, and take action without explicit instructions.
+ Negotiation: Can identify opportunities for compromise, propose solutions, and take action to influence outcomes without explicit instructions.
+ Training: Can identify learning gaps within a team, propose training solutions, and take action to implement them without explicit instructions.
+ Results Orientation: Can set personal goals and work towards them, achieving results consistently.
+ Emotional Intelligence: Can identify and manage personal emotions and begin to recognize others' emotions in moderate situations.
+ Flexibility: Can adapt to new methods and procedures, and can propose alternative solutions when faced with obstacles.
**Skill Level Requirements**
+ Ability to understand and articulate various security technologies, including firewalls, endpoint protection, email security, and identity management, to identify and address customer security challenges - Intermediate
+ Knowledge of network protocols and technologies (TCP/IP, VPN, VLANs), understanding of security concepts (access control, authentication, encryption), and proficiency in managing network threats and security solutions (intrusion detection systems, firewalls, Anti-DDOS Protection, Threat Management Protection, Content Filtering, Ingress/Egress management). - Intermediate
+ Proficiency in working with and understanding security solutions from leading vendors such as Okta, Crowdstrike, Palo Alto, Proofpoint, CyberArk, SailPoint, Fastly, FireEye, and Fortinet. - Intermediate
+ Proficiency in implementing and managing cloud security frameworks, compliance standards, and governance models. - Intermediate
**Other Requirements**
+ Completed Bachelor's Degree or relevant work experience required
+ 2-4 years of experience in a cybersecurity role
+ 2-4 years of experience in a presales role
+ Ability to travel to SHI, Partner, and Customer Events
+ Ability to work flexible hours
+ Willingness to obtain one of the following certifications within first year of SHI employment:
+ CISSP
+ CIAM
+ CISM / CISA / CRISC
+ GIAC (GSEC)
+ Or other relevant OEM Cybersecurity Professional Certification
The estimated annual pay range for this position is $90,000 - $120,000 which includes a base salary. The compensation for this position is dependent on job-related knowledge, skills, experience, and market location and, therefore, will vary from individual to individual. Benefits may include, but are not limited to, medical, vision, dental, 401K, and flexible spending.
Equal Employment Opportunity - M/F/Disability/Protected Veteran Status
Sr. Analyst, IT Security Risk Assessment - Third Party
Cyber Security Analyst job in Springfield, IL
**Alternate Locations:** Work from Home **Work Arrangement:** Remote : Work at home employee **Requisition #:** 74284 **The Role at a Glance** This position will develop and conduct information security risk assessments on parties' external to Lincoln Financial Group to ensure that information security risks associated with those relationships are within acceptable tolerances. S/he will provide direction and guidance to stakeholders concerning risks associated with assessment findings and adherence to applicable procedures, regulations, and/or laws. S/he will respond to requests from external parties concerning Lincoln's own information risk management practices.
**What you'll be doing**
+ Maintains knowledge on current and emerging developments/trends for assigned area(s) of responsibility, assesses the impact, and collaborates with senior management to incorporate new trends and developments in current and future solutions.
+ Directs and enhances organizational initiatives by positively influencing and supporting change management and/or departmental/enterprise initiatives within assigned area(s) of responsibility.
+ Identifies and directs the implementation of process improvements that significantly improve quality across the team, department and/or business unit for his/her assigned area(s) of responsibility.
+ Provides subject matter expertise to team members and applicable internal/external stakeholders on complex assignments/projects for his/her assigned area(s) of responsibility.
+ Provides direction on complex assignments, projects, and/or initiatives to build and enhance the capability of his/her assigned area(s) of responsibility.
+ Performs complex risk assessments of external party information security controls to ensure they meet or exceed Lincoln's information security risk management requirements for the services to be provided.
+ Determines information security risk profiles for various vendor and business partner services using questionnaires and knowledge of Lincoln policy and relevant industry best practices and standards.
+ Recommends mitigation plans/solutions to eliminate, reduce, or mitigate risk, and communicates said solutions to both external parties and internal business stakeholders.
+ Records pertinent documentation and communications for all assessments in Lincoln's online information technology (IT) governance, risk, and compliance platform.
+ Responds to incoming requests from external parties for information concerning Lincoln's information security practices by providing appropriately scoped and accurate information in a timely and professionally written manner.
+ Reports status of engagements to Information Security management, project managers, and other business stakeholders as appropriate.
+ Performs other information security risk management tasks as assigned.
+ Assists in creating and enforcing information security standards, policies and procedures.
+ Researches and maintains current knowledge regarding information security issues, trends, and legislation related to information security.
+ Evaluate and identify security risks of third-party AI solutions to provide guidance to internal stakeholders based on Lincoln policies and industry best practices.
+ Stay updated on emerging AI trends and technologies to support innovation within the organization
+ Demonstrates understanding of AI
**What we're looking for**
+ 4 Year/Bachelor's degree in Information Systems, IT Audit, Information Security, Information Risk Management, or related field or equivalent experience in lieu of Bachelor's
+ 5+ years of experience in IT Security, IT Audit or Information Risk Management that directly aligns with the specific responsibilities for this position.
+ 2+ years of experience in Artificial Intelligence that directly aligns with the specific responsibilities for this position.
**Application Deadline**
Applications for this position will be accepted through June 30, 2025, subject to earlier closure due to applicant volume.
**What's it like to work here?**
At Lincoln Financial, we love what we do. We make meaningful contributions each and every day to empower our customers to take charge of their lives. Working alongside dedicated and talented colleagues, we build fulfilling careers and stronger communities through a company that values our unique perspectives, insights and contributions and invests in programs that empower each of us to take charge of our own future.
**What's in it for you:**
+ Clearly defined career tracks and job levels, along with associated behaviors for each of Lincoln's core values and leadership attributes
+ Leadership development and virtual training opportunities
+ PTO/parental leave
+ Competitive 401K and employee benefits (*******************************************************************************
+ Free financial counseling, health coaching and employee assistance program
+ Tuition assistance program
+ Work arrangements that work for you
+ Effective productivity/technology tools and training
The pay range for this position is $93,300 - $169,700 with **anticipated pay for new hires between the minimum and midpoint of the range** and could vary above and below the listed range as permitted by applicable law. Pay is based on non-discriminatory factors including but not limited to work experience, education, location, licensure requirements, proficiency and qualifications required for the role. The base pay is just one component of Lincoln's total rewards package for employees. In addition, the role may be eligible for the Annual Incentive Program, which is discretionary and based on the performance of the company, business unit and individual. Other rewards may include long-term incentives, sales incentives and Lincoln's standard benefits package.
**About The Company**
Lincoln Financial (NYSE: LNC) helps people to confidently plan for their version of a successful future. We focus on identifying a clear path to financial security, with products including annuities, life insurance, group protection, and retirement plan services.
With our 120-year track record of expertise and integrity, millions of customers trust our solutions and service to help put their goals in reach.
Lincoln Financial Distributors, a broker-dealer, is the wholesale distribution organization of Lincoln Financial. Lincoln Financial is the marketing name for Lincoln Financial Corporation and its affiliates including The Lincoln National Life Insurance Company, Fort Wayne, IN, and Lincoln Life & Annuity Company of New York, Syracuse, NY. Lincoln Financial affiliates, their distributors, and their respective employees, representatives and/or insurance agents do not provide tax, accounting or legal advice.
Lincoln is committed to creating a diverse and inclusive (********************************************************************************************* environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.
Follow us on Facebook (******************************************* , X (******************************************* , LinkedIn (*************************************************** , Instagram (******************************************** , and YouTube (******************************************** . For the latest company news, visit our newsroom (********************************************************* .
**Be Aware of Fraudulent Recruiting Activities**
If you are interested in a career at Lincoln, we encourage you to review our current openings and apply on our website. Lincoln values the privacy and security of every applicant and urges all applicants to diligently protect their sensitive personal information from scams targeting job seekers. These scams can take many forms including fake employment applications, bogus interviews and falsified offer letters.
Lincoln will not ask applicants to provide their social security numbers, date of birth, bank account information or other sensitive information in job applications. Additionally, our recruiters do not communicate with applicants through free e-mail accounts (Gmail, Yahoo, Hotmail) or conduct interviews utilizing video chat rooms. We will never ask applicants to provide payment during the hiring process or extend an offer without conducting a phone, live video or in-person interview. Please contact Lincoln's fraud team at ******************** if you encounter a recruiter or see a job opportunity that seems suspicious.
**Additional Information**
This position may be subject to Lincoln's Political Contribution Policy. An offer of employment may be contingent upon disclosing to Lincoln the details of certain political contributions. Lincoln may decline to extend an offer or terminate employment for this role if it determines political contributions made could have an adverse impact on Lincoln's current or future business interests, misrepresentations were made, or for failure to fully disclose applicable political contributions and or fundraising activities.
Any unsolicited resumes or candidate profiles submitted through our web site or to personal e-mail accounts of employees of Lincoln Financial are considered property of Lincoln Financial and are not subject to payment of agency fees.
Lincoln Financial is an Equal Opportunity employer and, as such, is committed in policy and practice to recruit, hire, compensate, train and promote, in all job classifications, without regard to race, color, religion, sex (including pregnancy), age, national origin, disability, sexual orientation, gender identity and expression, Veteran status, or genetic information. Applicants are evaluated on the basis of job qualifications. If you are a person with a disability that impedes your ability to express your interest for a position through our online application process, or require TTY/TDD assistance, contact us by calling ************.
This Employer Participates in E-Verify. See the E-Verify (************************* notices.
Este Empleador Participa en E-Verify. Ver el E-Verify (**************************** avisos.
Lincoln Financial Group ("LFG") is an Equal Opportunity employer and, as such, is committed in policy and practice to recruit, hire, compensate, train and promote, in all job classifications, without regard to race, color, religion, sex (including pregnancy), age, national origin, disability, sexual orientation, gender identity and expression, veterans status, or genetic information. Opportunities throughout LFG are available to employees and applicants and are evaluated on the basis of job qualifications. We have a drug free work environment and we perform pre-employment substance abuse testing.
Security Engineer
Cyber Security Analyst job in Springfield, IL
**Our Company** At Teradata, we believe that people thrive when empowered with better information. That's why we built the most complete cloud analytics and data platform for AI. By delivering harmonized data, trusted AI, and faster innovation, we uplift and empower our customers-and our customers' customers-to make better, more confident decisions. The world's top companies across every major industry trust Teradata to improve business performance, enrich customer experiences, and fully integrate data across the enterprise.
**What You'll Do**
+ Designs, evaluates, tests, implements, and configure production security tools and services to monitor and protect cloud workloads, networks, and endpoints.
+ Serve as the security subject matter expect around Security Engineering topics, processes, and tools.
+ Partner closely with Product and IT teams to implement cohesive security solutions across diverse computing environments.
+ Integrating Sentinel with cloud services and third-party security tools to create a comprehensive security monitoring and response ecosystem.
+ Problem solve and identify potential alternatives to solve challenges, explaining any trade-offs and risks effectively.
+ Collaborate with security leadership, architecture, compliance, and operations teams to execute on security strategies.
+ Identify and automate security processes and practices.
+ Ability to reason about security decisions.
**Who You'll Work With**
The Security Engineering team is looking for a Security Engineer to join our team of security professionals to partner with teams across the organization to ensure we meet a high standard of security for our customers and ourselves. You will leverage a broad range of technical knowledge and security capabilities to deploy and enhance security solutions in partnership with IT and Product to deliver secure, high-powered analytics to our customers.
**What Makes You a Qualified Candidate**
+ MS/BS degree in Electrical Engineering, Computer Science, Information Technology, or related field. Advanced degree highly preferred
+ Must have experience with Microsoft Sentinel.
+ Knowledge how to secure solutions in complex hybrid cloud enterprise and SaaS environment(s)
+ Ability to implement security best practices in partnership with development teams and systems owners
+ Familiarity with one or more cloud environments, such as, AWS, Azure, and/or GCP and their security offerings
+ Experience with Azure Arc, Azure Monitoring Agent, Microsoft Defender, and Prisma Cloud.
+ Experience working in both Windows, Mac, and Linux environments.
+ Ability to create documentation of processes, define technical specifications.
+ Ability to perform customer support with strong analytical skills for troubleshooting.
+ Ability to automate tasks using Powershell, Python, Bash, or Go
+ Knowledge of security best practices and common security frameworks such as NIST, ISO, Common Criteria, OWASP, etc.
**What You Will Bring**
+ Ability to communicate effectively with business representatives in explaining security topics and requirements/risks clearly to stakeholders from engineering to senior leadership
+ An understanding of compliance requirements such as FedRAMP, PCI-DSS, HIPAA
**Why We Think You'll Love Teradata**
We prioritize a people-first culture because we know our people are at the very heart of our success. We embrace a flexible work model because we trust our people to make decisions about how, when, and where they work. We focus on well-being because we care about our people and their ability to thrive both personally and professionally. We are committed to actively working to foster an inclusive environment that celebrates people for all of who they are.
\#LI-OC1
Teradata is proud to be an equal opportunity employer. We do not discriminate based upon race, color, ancestry, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related conditions), national origin, sexual orientation, age, citizenship, marital status, disability, medical condition, genetic information, gender identity or expression, military and veteran status, or any other legally protected status. We welcome and encourage individuals from all backgrounds to apply and join our team, bringing their unique perspectives and experiences to help us innovate and grow.
Pay Rate: 92400.0000 - 115500.0000 - 138600.0000 Annually
Starting pay for the successful applicant will depend on geographic location, internal equity, job-related knowledge, skills, and candidate experience. Sales roles will be eligible for commission payments tied to quota achievement. All other permanent roles will be eligible for one of our annual incentive plans, which are based on company financial attainment and individual performance.
Employees in this position are also eligible to participate in the Company's comprehensive benefits programs, which include healthcare, life and disability insurance plans, a 401(k)-retirement savings plan, and time-off programs. Specific details of these benefits, including eligibility criteria and plan options, will be provided during the hiring process and can be reviewed here: **************************************************
Security Engineer II
Cyber Security Analyst job in Springfield, IL
Trustmark's mission is to improve wellbeing - for everyone. It is a mission grounded in a belief in equality and born from our caring culture. It is a culture we can only realize by building trust. Trust established by ensuring associates feel respected, valued and heard. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture of diversity and inclusion where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves. At Trustmark, we have a commitment to welcoming people, no matter their background, identity or experience, to a workplace where they feel safe being their whole, authentic selves. A workplace made up of diverse, empowered individuals that allows ideas to thrive and enables us to bring the best to our colleagues, clients and communities.
We are seeking a highly skilled Cyber Security Engineer to join our team and play a pivotal role in safeguarding our organization's digital assets. The ideal candidate will possess a deep understanding of cybersecurity principles, a strong technical background, and a passion for protecting sensitive information.
You will be responsible for engineering, implementing and monitoring security measures for the protection of Trustmark's computer systems, networks and information. The role helps identify and define system security requirements as well as develop detailed cyber security designs.
**Responsibilities:**
+ Design, implement, and maintain security architectures, systems, and solutions to protect critical infrastructure and data.
+ Conduct vulnerability assessments and penetration testing to identify and mitigate risks.
+ Develop and implement security policies, standards, and procedures.
+ Monitor security systems and respond to incidents promptly and effectively.
+ Stay up-to-date with the latest cybersecurity threats and trends.
+ Collaborate with cross-functional teams to ensure security is integrated into all aspects of the business.
+ Provide technical guidance and support to internal stakeholders.
**Qualifications:**
+ Bachelor's degree in Computer Science, Information Technology, or a related field or
+ 3-5 Years of network engineering or cyber engineering experience
+ Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001).
+ Proficiency in network security, systems security, application security, and data security.
+ Hands-on experience with security tools and technologies (e.g., firewalls, intrusion detection systems, encryption, SIEM).
+ Excellent problem-solving and analytical skills.
+ Strong communication and interpersonal skills.
+ Ability to work independently and as part of a team.
**Preferred Qualifications:**
+ Certifications such as CISSP, CISA, or CEH.
+ Experience with cloud security (e.g., AWS, Azure, GCP).
+ Knowledge of scripting and programming languages (e.g., Python, PowerShell).
Brand: Trustmark
Come join a team at Trustmark that will not only utilize your current skills but will enhance them as well. Trustmark benefits include health/dental/vision, life insurance, FSA and HSA, 401(k) plan, Employee Assistant Program, Back-up Care for Children, Adults and Elders and many health and wellness initiatives. We also offer a Wellness program that enables employees to participate in health initiatives to reduce their insurance premiums.
**For the fourth consecutive year we were selected as a Top Workplace by the Chicago Tribune.** The award is based exclusively on Trustmark associate responses to an anonymous survey. The survey measured 15 key drivers of engaged cultures that are critical to the success of an organization.
All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, sexual identity, age, veteran or disability.
Join a passionate and purpose-driven team of colleagues who contribute to Trustmark's mission of helping people increase wellbeing through better health and greater financial security. At Trustmark, you'll work collaboratively to transform lives and help people, communities and businesses thrive. Flourish in a culture where appreciation, mutual respect and trust are constants, not just for our customers but for ourselves.
Introduce yourself to our recruiters and we'll get in touch if there's a role that seems like a good match.
When you join Trustmark, you become part of an organization that makes a positive difference in people's lives. You will play a vital role in delivering on our mission of helping people increase wellbeing through better health and greater financial security. Our customers tell us they simply appreciate the personal attention and knowledgeable service. Others tell us we've changed their lives.
At Trustmark, you'll be part of a close-knit team. You'll enjoy abundant opportunities to grow your career. That's why so many of our associates stay at Trustmark and thrive. Trustmark benefits from more than 100 years of experience but pairs that rich history with a palpable sense of optimism, growth and excitement for what's ahead - and beyond. This is a place where associates bring their whole selves to work each day. A place where you can be yourself. Whatever your beyond is, you can achieve it at Trustmark.
Sr Staff Security Researcher - EDR
Cyber Security Analyst job in Springfield, IL
**_Job Title:_** Sr Staff Security Researcher - EDR **About** **Trellix:** **Trellix, the trusted CISO ally, is redefining the future of cybersecurity and soulful work.** Our comprehensive, GenAI-powered platform helps organizations confronted by today's most advanced threats gain confidence in the protection and resilience of their operations. Along with an extensive partner ecosystem, we accelerate technology innovation through artificial intelligence, automation, and analytics to empower over 53,000 customers with responsibly architected security solutions.
We also recognize the importance of closing the 4-million-person cybersecurity talent gap. We aim to create a home for anyone seeking a meaningful future in cybersecurity and look for candidates across industries to join us in soulful work. More at ************************ .
**_Role Overview:_**
We are seeking a highly skilled and deeply technical Sr. Staff Security Researcher to join our research team and lead innovation in the detection capabilities of our EDR product. This strategic role combines hands-on research, reverse engineering, and detection development with architectural vision and cross-functional collaboration. You will investigate emerging attack techniques, design novel detection approaches, and help shape the future of our EDR platform. The role also includes opportunities to publish technical blogs, present at industry conferences, and contribute to community research-showcasing your work and advancing the broader security field.
**Key Responsibilities**
+ Lead efforts to reverse engineer sophisticated malware, identifying malicious code, obfuscation techniques, and communication protocols.
+ Author advanced detection rules for behavior-based detection engines.
+ Conduct comprehensive research on attacker campaigns and techniques to support detection investments and enhance customer experience.
+ Develop and optimize generic threat detection strategies based on static and dynamic detection engines.
+ Drive innovation in EDR detection and prevention capabilities, identifying new research directions and turning ideas into production-grade features.
+ Demonstrate a strong understanding of cybersecurity threats, sophisticated attack techniques, and the MITRE ATT&CK framework.
+ Perform advanced proactive and reactive threat hunting to identify detection issues such as misses or misclassifications from large-scale datasets.
+ Respond to escalations to resolve detection effectiveness issues (misclassifications, false positives, and false negatives).
+ Collaborate with cross-functional teams within the product organization including product management, engineering and research to drive exceptional customer experiences and ensure comprehensive protection.
+ Develop advanced alerting, reporting, and automated detection solutions.
+ Stay abreast of the latest cybersecurity threats, attack techniques, detection evasion tactics, OS features, and industry developments.
+ Build and maintain tools and automation to improve productivity and detection efficacy.
+ Utilize machine learning techniques to enhance threat detection and response capabilities.
+ Serve as a mentor to junior researchers, providing technical guidance and fostering a strong research culture.
+ Publish blogs, speak at security conferences, and engage with the security research community to share insights and elevate our team's presence.
**Qualifications**
+ 10+ years of experience in security research, reverse engineering, malware analysis, or detection development using Snort, Yara, Sandbox, or proprietary detection engines.
+ 7+ years of experience performing threat hunting or deep familiarity with incident response procedures, processes, and tools.
+ 7+ years of experience querying and analyzing large datasets.
+ Deep technical knowledge of modern attack techniques (e.g., process hollowing, reflective DLL injection, UAC bypass, credential dumping, network pivoting).
+ Strong familiarity with MITRE ATT&CK, threat modeling, and telemetry architecture.
+ Extensive hands-on experience with reverse engineering and debugging tools and techniques (e.g., IDA Pro, Ghidra, WinDbg, x64dbg).
+ Expertise in programming and scripting with C++ and Python, including production-level experience in shipping large-scale security or system software.
+ In-depth understanding of operating system internals (e.g., Windows system calls, ETW, kernel callback routines, WFP, and driver development).
+ Hands-on experience with vulnerability research, including fuzzing, binary diffing, mitigation bypass, and exploitation.
+ Demonstrated experience designing and delivering detection logic across multiple OSs (Windows/mac OS/Linux) in a production EDR context.
+ Experience with applying machine learning techniques to cybersecurity problems.
+ Experience leading complex cross-functional security initiatives or projects.
+ Proven ability to mentor and develop junior researchers.
+ Strong communication and technical writing skills, with experience authoring technical blogs or presenting at security conferences.
**_Company Benefits and Perks:_**
We believe that the best solutions are developed by teams who embrace each other's unique experiences, skills, and abilities. We work hard to create a dynamic workforce where we encourage everyone to bring their authentic selves to work every day. We offer a variety of social programs, flexible work hours and family-friendly benefits to all of our employees.
+ Retirement Plans
+ Medical, Dental and Vision Coverage
+ Paid Time Off
+ Paid Parental Leave
+ Support for Community Involvement
We're serious about our commitment to a workplace where everyone can thrive and contribute to our industry-leading products and customer support, which is why we prohibit discrimination and harassment based on race, color, religion, gender, national origin, age, disability, veteran status, marital status, pregnancy, gender expression or identity, sexual orientation or any other legally protected status.
Cyber Defense Forensics Analyst
Cyber Security Analyst job in Springfield, IL
At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your unique voice and perspective to help EY become even better. Join us and build an exceptional experience for yourself, and a better working world for all.
The exceptional EY experience. It's yours to build.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
Today's world is fuelled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team helps protect the EY brand and build client trust.
Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value.
**The opportunity**
Cyber Triage and Forensics (CTF) Incident Analyst will work as a senior member of the technical team responsible for security incident response for EY. The candidate will work as an escalation point for suspect or confirmed security incidents. Responsibilities include performing digital forensic analysis, following security incident response standard methodologies, malware analysis, identify indicators of compromise, support remediation or coordinate remediation efforts of a security incident, and develop documentation to support the security incident response process.
**Your key responsibilities**
+ Investigate, coordinate, bring to resolution, and report on security incidents as they are brought up or identified
+ Forensically analyze end user systems and servers found to have possible indicators of compromise
+ Analysis of artifacts collected during a security incident/forensic analysis
+ Identify security incidents through 'Hunting' operations within a SIEM and other relevant tools
+ Interface and connect with server owners, system custodians, and IT contacts to pursue security incident response activities, including: obtaining access to systems, digital artifact collection, and containment and/or remediation actions
+ Provide consultation and assessment on perceived security threats
+ Maintain, manage, improve and update security incident process and protocol documentation
+ Regularly provide reporting and metrics on case work
+ Resolution of security incidents by identifying root cause and solutions
+ Analyze findings in investigative matters, and develop fact based reports
+ Be on-call to deliver global incident response
**Skills and attributes for success**
+ Resolution of security incidents by identifying root cause and solutions
+ Analyze findings in investigative matters, and develop fact-based reports
+ Proven integrity and judgment within a professional environment
+ Ability to appropriately balance work/personal priorities
**To qualify for the role you must have**
+ Bachelors or Masters Degree in Computer Science, Information Systems, Engineering or a related field
+ 5+ years experience in incident response, computer forensics analysis and/or malware reverse engineering;
+ Understanding of security threats, vulnerabilities, and incident response;
+ Understanding of electronic investigation, forensic tools, and methodologies, including: log correlation and analysis, forensically handling electronic data, knowledge of the computer security investigative processes, malware identification and analysis;
+ Be familiar with legalities surrounding electronic discovery and analysis;
+ Experience with SIEM technologies (i.e. Splunk);
+ Deep understanding of both Windows and Unix/Linux based operating systems;
**Ideally, you'll also have**
+ Hold or be willing to pursue related professional certifications such as GCFE, GCFA or GCIH
+ Background in security incident response in Cloud-based environments, such as Azure
+ Programming skills in PowerShell, Python and/or C/C++ Understanding of the best security practices for network architecture and server configuration
**What we look for**
+ Demonstrated integrity in a professional environment
+ Ability to work independently
+ Have a global mind-set for working with different cultures and backgrounds
+ Knowledgeable in business industry standard security incident response process, procedures, and life cycle
+ Excellent teaming skills
+ Excellent social, communication, and writing skills
**What we offer**
The compensation ranges below are provided in order to comply with United States pay transparency laws. Other geographies will follow their local salary guidelines, which may not be a direct conversion of published US salary range/s
We offer a comprehensive compensation and benefits package where you'll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $87,700 to $164,000. The salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $105,200 to $186,400. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options. Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year. Under our flexible vacation policy, you'll decide how much vacation time you need based on your own personal circumstances. You'll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
+ **Continuous learning:** You'll develop the mindset and skills to navigate whatever comes next.
+ **Success as defined by you:** We'll provide the tools and flexibility, so you can make a meaningful impact, your way.
+ **Transformative leadership:** We'll give you the insights, coaching and confidence to be the leader the world needs.
+ **Diverse and inclusive culture:** You'll be embraced for who you are and empowered to use your voice to help others find theirs.
EY accepts applications for this position on an on-going basis. **If you can demonstrate that you meet the criteria above, please contact us as soon as possible.**
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.
For those living in California, please click here (********************************************************************************************************************************************************************** for additional information.
EY is an equal opportunity, affirmative action employer providing equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY's Talent Shared Services Team (TSS) or email the TSS at **************************
Security Engineer, Incident Response
Cyber Security Analyst job in Springfield, IL
Meta Security is looking for an Incident Response Engineer with experience coordinating, investigating and responding to internal and external threats. You will help the team establish, lead and execute multi-year roadmaps to mature investigative and response services, drawing upon automation and cross functional partnerships to create scalable and maintain high standards of operational competence.
**Required Skills:**
Security Engineer, Incident Response Responsibilities:
1. Conduct security investigations and lead security incident response in a cross-functional environment and drive incident resolution
2. Develop Incident Response initiatives that improve our functionalities to effectively respond and remediate security incidents
3. Refine operational metrics, key performance indicators, and service level objectives to measure Security Operations and Incident Response services
4. Influence and align the team's mission and strategy. Collaboratively prioritize and deliver specific multi-year roadmaps and projects
5. Build, cultivate, and maintain successful relationships with internal customers to identify and facilitate solutions to increase the impact of the team's work
6. Partner with cross-functional teams to solve challenges related to a broad spectrum of detection and response initiatives
7. Collaborate with software and production engineering teams to develop scalable and adaptable Incident Response and Investigative solutions
8. Focus on identifying areas of greatest impact for prioritizing, automating and scaling every aspect of our detection and response functionalities
9. Coach, mentor, support and care for the team in a way that enables long-term career development, happiness and success at scale
**Minimum Qualifications:**
Minimum Qualifications:
10. Bachelor of Science or Master of Science in Computer Science or related field, or equivalent experience
11. 8+ years of work experience in Security Incident Response and Detection and Response Engineering in a large, regulated organization
12. In-depth subject-matter knowledge in technical and process regarding Security Operations and Incident Response services
13. Experience developing and delivering information on incident and program status for leadership
14. Experience leading and managing complex cross-functional programs
15. Experience responding to both external and insider threats
16. Experience analyzing network and host-based security events
17. Knowledge of networking technologies, specifically Transmission Control Protocol (TCP)/Internet Protocol (IP) and the related protocols
18. Knowledge of operating systems, file systems, and memory structures on Windows, mac OS and Linux
19. Coding/scripting experience in one or more general purpose languages
20. Experience with attacker tactics, techniques, and procedures
**Preferred Qualifications:**
Preferred Qualifications:
21. Experience in threat hunting including leveraging intelligence data to proactively identify and iteratively investigate suspicious behavior across networks and systems
22. Experience recruiting, building, and leading technical teams, including performance management
23. Background in malware analysis, digital forensics, intrusion detection, and/or threat intelligence
24. Broad knowledge across the Security domain, as well as demonstrated experience in one (or more) areas such as Logs and events processing, Incident Management, Digital Forensics, Detection and/or response tool development
**Public Compensation:**
$177,000/year to $251,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Principal Security Engineer (Safety)
Cyber Security Analyst job in Springfield, IL
We offer unique opportunities for smart, hands-on security engineers with the expertise and passion to solve difficult architecture, engineering, and process problems. Our customers run their businesses on our cloud, and our mission is to provide them with the most secure cloud services. Our ideal candidate is a security engineer with expertise and passion in finding and improving areas of weakness, while developing new standards in the security and safe operation of distributed systems, multi-tenant services and large-scale infrastructures. If this is you, joining Oracle Cloud Infrastructure (OCI) will enable you to design and build innovative new security models & systems from the ground up. These are exciting times in our space - we are growing fast and working on ambitious new initiatives. A security-focused engineer at any level can make significant technical and business impact
You can learn more about us by visiting ********************************************* .
Career Level - IC4
**Responsibilities**
Responsibilities:
+ Prototype, design, and implement security solutions for new and challenging problems
+ Drive and champion security tool development (e.g. scanning tools)
+ Consult software development teams in design and architecture of safe and secure systems through Threat Modeling and modeling exercises
+ Champion and consult on secure development lifecycle practices
+ Design and integrate verification and posture reporting mechanisms
+ Define security configuration and implementation best practices
Qualifications:
+ Bachelor's or Master's degree in Computer Science or related field
+ 5+ years of experience in security engineering or related field or equivalent experience
+ Experience building automated security solutions
+ Strong security experience, particularly with focus in one of the following areas:
+ Defensive Security
+ Offensive Security
+ Service architecture and Design Patterns
+ Strong collaboration and communication skills
Preferred Skills
+ Experience scaling operational activities via Python, Bash, and other tools
+ DevOps or SRE experience operating large, distributed, continuously deployed services
+ Experience operating large, distributed, continuously deployed services
+ Expertise in designing databases schemas in (NoSQL / SQL).
+ Knowledge on bridging security engineering requirements into the software development life cycle.
+ Security training and mentoring experience
+ Experience with statistical/mathematical predictive modeling
+ Experience with machine learning / artificial intelligence
+ Experience designing resilient systems that support quick recovery
+ Experience with container orchestration and management
+ History of collaborating and integrating processes with software development teams, data scientists, business and other technical roles
+ Experience with Java or Python development
Disclaimer:
**Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.**
**Range and benefit information provided in this posting are specific to the stated locations only**
US: Hiring Range in USD from: $109,200 to $223,400 per annum. May be eligible for bonus and equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
**About Us**
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
Information Security Engineer I
Cyber Security Analyst job in Springfield, IL
Lumen connects the world. We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly. Together, we are building a culture and company from the people up - committed to teamwork, trust and transparency. People power progress.
We're looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future.
**The Role**
Federal SOC Information Security Engineers will provide monitoring, triage, and escalation support for internal Federal SOC and External Customer operations. The SOC Information Security Engineers will work shifts to provide 24x7x365 coverage. SOC Information Security Engineers will work in tandem with other Information Security Engineers in the Global SOC and Federal NOC Organizations.
**The Main Responsibilities**
-Review SOC Shift end Summary and SOC activity logs, emails, tickets, cases and other monitoring tools for complete understanding of previous shift activities and incidents with the goal of maintaining the highest level of customer service by keeping track of the critical customer impacting issue.
-Provide monitoring and responding to alerts and events within SLAs. Services and systems include but not limited to Splunk (internal/external SIEM), Firewalls alerts (MTIPS and MSS), TrendMicro Anti Virus, Tripwire File Integrity Checks, IDS/IPS for customers.
-Monitor multiple ticketing systems and queues. Ensure tickets are created and notated within SLAs
-Login to phone call queues to answer both internal and external calls
-Work closely with FedNOC, the Federal SOC Tier II and Ops Eng teams
-Escalate issues to Vendors, SOC Tier II and Ops Engineers as soon as there is a need
-Adhere to all defined processes and procedures.
-Provide process and operational improvement suggestions.
-Performs a long-term project leadership role working towards the development of new solutions, processes, tools, systems that have company-wide and possibly industry-wide impacts.
-Frequent contact with senior leadership of customers and contractors for the purpose of creating and presenting innovative long-term solutions and managing key relationships. Acts as a resource within the engineering and scientific communities to develop solutions or handle the most complex tasks for which existing methods and procedures may not apply.
-Provides consultation and advice to Federal customers, engineers and management regarding work functions, processes, methods, procedures, and tools. Develops and delivers technical and process training, including, documentation in areas of expertise and innovative areas of technology.
**What We Look For in a Candidate**
(education / experience / skills / competencies).
-Tripwire, TrendMicro, Web Inspect, Tennable Nessus and Qualys vulnerability scanners, Splunk, Secure Log Management, Firewalls, Intrusion Detection.
-Ability to diagnose Trip Wire Events, Trend Micro Events, System Events, Network Events from 4 Supported Environments with dissimilar architecture.
-MFA provisioning, repair, revocation, re-provisioning, reporting, and troubleshooting experience.
-Diagnose and identify reports and alerts within Splunk.
-Isolate BGP alerts and notify customer and other operational teams of an event.
-Perform Analytics on events from customer networks per CDM Framework.
-Experience working out of a ticket queue and receiving inbound customer calls.
-Experience managing Fortigates and Palo Alto Firewalls.
-Equivalent educational experience. Above all, a motivated and trainable individual.
Clearance: Government Suitability Clearance required.
Certifications (preferred but not required): CEH, GIAC Certified Incident Handler (GCIH), CCNA, NSE4.
Education: BS Computer Science or related areas with experience.
**Compensation**
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.
**Location Based Pay Ranges:**
**$55,313 - $73,750 in these states: AL, AR, AZ, FL, GA, IA, ID, IN, KS, KY, LA, ME, MO, MS, MT, ND, NE, NM, OH, OK, PA, SC, SD, TN, UT, VT, WI, WV, and WY.**
**$58,078 - $77,438 in these states: CO, HI, MI, MN, NC, NH, NV, OR, and RI.**
**$60,844 - $81,125 in these states: AK, CA, CT, DC, DE, IL, MA, MD, NJ, NY, TX, VA, and WA.**
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.
Learn more about Lumen's:
+ Benefits (****************************************************
+ Bonus Structure
**What to Expect Next**
Requisition #: 337162
**Background Screening**
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page (************************************* . Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis.
Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
**Equal Employment Opportunities**
We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, "protected statuses"). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training.
**Disclaimer**
The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions.
In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
**Application Deadline**
07/18/2025
Cyber SDC- M365 Security Operations Lead Engineer - Senior - Consulting - Location Open
Cyber Security Analyst job in Springfield, IL
At EY, we're all in to shape your future with confidence. We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go. Join EY and help to build a better working world.
We are seeking a skilled and motivated Microsoft Purview and Defender for Office Operations Engineer to join our cybersecurity team. The ideal candidate will be responsible for the administration, management, and optimization of Microsoft Purview and Microsoft Defender for Office platforms. This role requires a strong understanding of data governance, compliance, and security best practices, along with the ability to work collaboratively with cross-functional teams to enhance our information protection posture.
**Key Responsibilities:**
1. **Platform Administration:**
1. Administer and support Microsoft Purview and Microsoft Defender for Office, ensuring optimal performance and availability of the platforms.
2. Configure and manage security settings, policies, and compliance features within Microsoft Purview and Defender for Office.
2. **Data Governance and Compliance:**
1. Implement and maintain data governance policies and procedures to ensure compliance with regulatory requirements and organizational standards.
2. Monitor and report on compliance metrics, data classification, and data loss prevention (DLP) policies.
3. **User Support:**
1. Provide technical support to end-users regarding Microsoft Purview and Defender for Office tools and best practices.
4. **Collaboration and Communication:**
1. Work closely with IT, security, and compliance teams to integrate Microsoft Purview and Defender for Office with existing systems and workflows.
2. Communicate effectively with stakeholders to report on security incidents, compliance metrics, and recommendations for improvement.
5. **Continuous Improvement:**
1. Stay updated on the latest features, updates, and best practices related to Microsoft Purview and Defender for Office.
2. Identify opportunities for process improvements and automation within the operations of Microsoft Purview and Defender for Office.
3. Automate activities through scripting (PowerShell, Python) and automation (Tines, PowerAutomate, etc.)
6. **Documentation and Reporting:**
1. Maintain accurate documentation of configurations, processes, and procedures related to Microsoft Purview and Defender for Office operations.
2. Generate reports on platform performance, security incidents, and compliance metrics for management review.
**Qualifications:**
+ Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
+ Proven experience in managing and supporting Microsoft Purview and Microsoft Defender for Office.
+ Strong understanding of data governance, compliance frameworks, and information security best practices.
+ Excellent problem-solving skills and attention to detail.
+ Strong communication and interpersonal skills.
+ Scripting experience, including PowerShell, Python, etc.
+ Ticket and change management experience in ServiceNow
+ Relevant certifications (e.g., Microsoft Certified: Security, Compliance, and Identity Fundamentals, Microsoft Certified: Azure Security Engineer Associate) are a plus.
**Preferred Skills:**
+ Experience with data loss prevention (DLP) technologies and strategies.
+ Familiarity with compliance regulations (e.g., GDPR, HIPAA) and data protection laws.
+ Knowledge of cloud security concepts and technologies.
**Work Environment:**
This position may require occasional after-hours support and on-call availability. The Microsoft Purview and Defender for Office Operations Engineer will work in a collaborative team environment, contributing to the overall security and compliance posture of the organization.
**What we offer you**
At EY, we'll develop you with future-focused skills and equip you with world-class experiences. We'll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more .
+ We offer a comprehensive compensation and benefits package where you'll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $77,500 to $140,900. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $92,900 to $160,500. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
+ Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
+ Under our flexible vacation policy, you'll decide how much vacation time you need based on your own personal circumstances. You'll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
**Are you ready to shape your future with confidence? Apply today.**
EY accepts applications for this position on an on-going basis.
For those living in California, please click here for additional information.
EY focuses on high-ethical standards and integrity among its employees and expects all candidates to demonstrate these qualities.
**EY | Building a better working world**
EY is building a better working world by creating new value for clients, people, society and the planet, while building trust in capital markets.
Enabled by data, AI and advanced technology, EY teams help clients shape the future with confidence and develop answers for the most pressing issues of today and tomorrow.
EY teams work across a full spectrum of services in assurance, consulting, tax, strategy and transactions. Fueled by sector insights, a globally connected, multi-disciplinary network and diverse ecosystem partners, EY teams can provide services in more than 150 countries and territories.
EY provides equal employment opportunities to applicants and employees without regard to race, color, religion, age, sex, sexual orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability status, or any other legally protected basis, including arrest and conviction records, in accordance with applicable law.
EY is committed to providing reasonable accommodation to qualified individuals with disabilities including veterans with disabilities. If you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY's Talent Shared Services Team (TSS) or email the TSS at ************************** .
Principal Security Engineer
Cyber Security Analyst job in Springfield, IL
At Oracle Cloud Infrastructure (OCI) we build the future of the cloud for Enterprises. We act with the speed and attitude of a start-up along with the scale and customer focus of the leading enterprise software company in the world. **About the team:**
The Enterprise Engineering SRE team is tasked with ensuring the security and compliance of internal systems by conducting regular audits, identifying potential gaps in existing standards and proactively improving the organization's overall security posture. The team plays a critical role in safeguarding the integrity, confidentiality and availability of all systems while driving risk management initiatives across departments including disaster recovery planning and execution. We are also responsible for liaising with various internal teams during audits, ensuring data sharing is concise, accurate and aligned for successful audit outcomes.
**Ideally, the candidate will possess several of the following skills:**
Supports the strengthening of Oracle's security posture, focusing on one or more of the following: regulatory compliance; risk management; incident management and response; security policy development and enforcement; Threat and Vulnerability Management; Incident Management and response and similar focus areas.
+ **Regulatory Compliance:** Brings advanced level skills to manage programs to establish, document and track compliance to industry and government standards and regulations, e.g. ISO-27001, PCI-DSS, HIPAA, FedRAMP, CMMC, GDPR, etc. Researches and interprets current and pending governmental laws and regulations, industry standards and customer and vendor contracts to communicate compliance requirements to the business. Participates in industry forums monitoring developments in regulatory compliance
+ **Risk Management:** Brings advanced level skills to assess the information security risk associated with existing and proposed business operational programs, systems, applications, practices and procedures in very complex, business-critical environments. Conduct and document very complex information security risk assessments and assist in the creation and implementation of security solutions and programs
+ **Cloud Security:** In-dept knowledge of cloud security principles and best practices, including securing cloud infrastructure, services, and applications in platforms, OCI experience is a plus
+ **Threat and Vulnerability Management:** Brings advanced level skills to research, evaluate, track, and manage information security threats and vulnerabilities in situations where in-depth analysis of ambiguous information is required
+ **Incident Management and response:** Brings advanced level skills to respond to security events and responding in line with Oracle incident response playbooks to mitigate vulnerabilities
+ Mentors and trains other team members
+ Compiles information and reports for management
**Qualifications:**
+ Bachelor's degree in computer science, Information Security, or a related field. Master's degree preferred
+ 10+ years of experience in cybersecurity, security architecture, or a related technical security role securing cloud environments and developing automation workflows, incident detection, response, and vulnerability remediation
+ Industry certifications such as CISSP, OSCP, CISM, GIAC, or OCI/AWS/Azure Security Specialty highly preferred.
+ Proven experience in security architecture, threat modeling, and risk management at an enterprise level.
+ Expertise in network security, cloud security (OCI, AWS, Azure, GCP), endpoint security, Operating systems (Linux, Windows), MiddleTier, Database and identity management.
+ Develop and enforce security policies, governance frameworks, and compliance controls (NIST, ISO 27001, SOC 2, GDPR, HIPAA, etc.).
+ Hands-on experience with firewalls, SIEM tools, IDS/IPS, EDR solutions, and security automation.
+ Oversee security incident response, forensic analysis, red/blue teaming experience, containment, and remediation of cyber threats
+ Strong knowledge of cryptography, secure coding practices, zero-trust architecture, and IAM.
+ Scripting experience with one or more scripting languages: bash, python, perl, YAML or infrastructure as code tools such as Terraform or Cloudformation.
+ Familiarly with container orchestration technologies such as Kubernetes, Openshift, EKS, AKS, container image scanning and vulnerability management
+ Excellent communication skills with the ability to effectively communicate technical concepts to both technical and non-technical stakeholders. Exhibits excellent written and verbal communication skills
Career Level - IC4
**Responsibilities**
+ Develop and manage information security governance, including creating policies, procedures, standards, baselines, and guidelines to ensure the secure operation of information systems.
+ Collaborate with cross-functional teams to establish and maintain robust security policies and procedures, ensuring alignment with industry best practices
+ Build application security frameworks review process (e.g., OWASP Top 10) to identify vulnerabilities such as SQL injection, XSS, and insecure APIs.
+ Designing secure system architectures, both on-premise and in the cloud, with knowledge of zero-trust security models, segmentation, and access control models
+ Evaluate and implement encryption at rest and in transit to secure sensitive data using encryption algorithms (e.g., AES, RSA), public key infrastructure (PKI), SSL/TLS, secrets in vault and key management practices.
+ Build security patterns for hosting platforms (compute, OKE, containers, cloud native services), SaaS, and PaaS services, conduct security architecture and design review
+ Perform code reviews, security testing (e.g., SAST, DAST), and the implementation of secure coding practices within SDLC pipeline, and utilizing CI/CD tools (Jenkins, Git, GitHub Actions, Artifactory, sonarqube), as well as managing secrets, SCA, and open-source tools
+ Build, develop and monitor systems configuration management automation and infrastructure as code (IaC) strategies to achieve secure by design framework
+ Monitors information systems for security incidents and vulnerabilities; develops monitoring and visibility capabilities; reports on incidents, vulnerabilities, and trends to IT or executive management.
+ Proven leadership abilities with experience leading security projects and initiatives independently with Agile or Waterfall methodologies
+ Architects, designs, implements, maintains and operates information system security controls and countermeasures; supervises and trains operators in the administration of these systems; documents the operation, use, and expected outputs of these systems
+ Develop and maintain cybersecurity documentation such as the System Security Plan (SSP), Privacy Impact Assessment (PIA), Configuration Management Plan (CMP), Plan of Action and Milestones (POA&M), and Standard Operating Procedures (SOP) as necessary
+ Write stakeholder reports to explain the assessment, audit results, and recommendations. Create and provide metrics for cybersecurity leadership. Brief executive leadership on compliance matters
+ Participate in internal and external audit and provide executive leadership with briefings on compliance issues, assessment findings, audit results, and recommended actions.
Disclaimer:
**Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.**
**Range and benefit information provided in this posting are specific to the stated locations only**
US: Hiring Range in USD from: $109,200 to $223,400 per annum. May be eligible for bonus and equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
**About Us**
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
Security Engineer - Security Risk Management
Cyber Security Analyst job in Springfield, IL
The Meta Security team is responsible for improving the security posture of the software and services used throughout our company. Our work spans Facebook, Instagram, WhatsApp, Oculus, and all of the underlying systems and infrastructure that power these products behind the scenes.We are seeking a committed and experienced security engineer to join our Security Risk Management (SRM) team to help design and build solutions to:* Drive better understanding of security risk and enable investment decisions through automation, monitoring, and tracking of Meta's security tools, systems, and controls* Enable security and software engineers to seamlessly respond to requests to prove effective design and operation of security capabilities* Increase maturity of security capabilities through control improvements and redesign
**Required Skills:**
Security Engineer - Security Risk Management Responsibilities:
1. Work with a team of software, data, and security engineers that design, build, and own software solutions that scale high fidelity security risk contextualization, tracking, and reporting
2. Understand and influence evolution of security capabilities across various domains to scale and automate: a) monitoring the effectiveness, and b) increasing the maturity of those capabilities
3. Design and build solutions to scale managing and responding to risk management & compliance related requests
**Minimum Qualifications:**
Minimum Qualifications:
4. Bachelor's degree or equivalent experience in information security
5. 5+ years work experience securing enterprise-scale infrastructure software and services
6. 3-5+ years programming experience with at least one of the following languages: Python, PHP, Ruby, or similar scripting languages
7. Experience remediating infrastructure security gaps across broad corporate boundaries using influence and relationships
8. Experience with security control automation/monitoring or "compliance as code" implementations
9. Experience thinking critically and defending solutions with solid communications skills in a cross-functional setting to influence decision makers across all levels of technical background
**Preferred Qualifications:**
Preferred Qualifications:
10. Networking and system administration experience of server (Linux, Windows) and client (Windows, mac OS, Linux) operating systems
11. Experience influencing software engineers to build products meant to scale security solutions
12. Experience generating automated metrics to measure service and program effectiveness and consistency
13. Experience with common risk & compliance program activities (e.g., controls, risk, policy management)
**Public Compensation:**
$147,000/year to $208,000/year + bonus + equity + benefits
**Industry:** Internet
**Equal Opportunity:**
Meta is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Meta participates in the E-Verify program in certain locations, as required by law. Please note that Meta may leverage artificial intelligence and machine learning technologies in connection with applications for employment.
Meta is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance or accommodations due to a disability, please let us know at accommodations-ext@fb.com.
Security Engineer (Safety) - Nashville, TN
Cyber Security Analyst job in Springfield, IL
We offer unique opportunities for smart, hands-on Security Engineer with the expertise and passion to solve difficult architecture, engineering, and process problems. Our customers run their businesses on our cloud, and our mission is to provide them with the most secure cloud services. Our ideal candidate is a security engineer with expertise and passion in finding and improving areas of weakness, while developing new standards in the security and safe operation of distributed systems, multi-tenant services and large-scale infrastructures. If this is you, joining Oracle Cloud Infrastructure (OCI) will enable you to design and build innovative new security models & systems from the ground up. These are exciting times in our space - we are growing fast and working on ambitious new initiatives. A security-focused engineer at any level can make significant technical and business impact
You can learn more about us by visiting ********************************************* .
**Responsibilities**
Responsibilities:
+ Prototype, design, and implement security solutions for new and challenging problems
+ Drive and champion security tool development (e.g. scanning tools)
+ Consult software development teams in design and architecture of safe and secure systems through Threat Modeling and modeling exercises
+ Champion and consult on secure development lifecycle practices
+ Design and integrate verification and posture reporting mechanisms
+ Define security configuration and implementation best practices
Qualifications:
+ Bachelor's or Master's degree in Computer Science or related field
+ 5+ years of experience in security engineering or related field or equivalent experience
+ Experience building automated security solutions
+ Strong security experience, particularly with focus in one of the following areas:
+ Defensive Security
+ Offensive Security
+ Service architecture and Design Patterns
+ Strong collaboration and communication skills
Preferred Skills
+ Experience scaling operational activities via Python, Bash, and other tools
+ DevOps or SRE experience operating large, distributed, continuously deployed services
+ Knowledge on bridging security engineering requirements into the software development life cycle.
+ Security training and mentoring experience
+ Experience with statistical/mathematical predictive modeling
+ Experience with machine learning / artificial intelligence
+ Experience designing resilient systems that support quick recovery
+ Experience with container orchestration and management
+ History of collaborating and integrating processes with software development teams, data scientists, business and other technical roles
Disclaimer:
**Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.**
**Range and benefit information provided in this posting are specific to the stated locations only**
US: Hiring Range in USD from: $120,100 to $251,600 per annum. May be eligible for bonus, equity, and compensation deferral.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC5
**About Us**
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
Principal Security Engineer
Cyber Security Analyst job in Springfield, IL
Do you thrive on the leading edge of cloud technology and security? At Oracle Cloud Infrastructure (OCI), we are building and operating a suite of massive scale, integrated cloud services in a broadly distributed, multi-tenant cloud environment. OCI is providing best-in-cloud products that meet the needs of customers who are tackling some of the world's biggest challenges.
The OCI Core Services organization is the engineering and operations backbone of Oracle Cloud Infrastructure. It's responsible for the design, build, and run-time delivery of the foundational IaaS building blocks-Compute, Networking, and Block Volume-that every higher-level OCI service depends on. This is a global footprint, with hundreds of thousands of network devices supporting millions of servers, connected over a mix of dedicated backbone infrastructure and the Internet.
**Why OCI Core Services?**
OCI Core Services powers millions of customer workloads with enterprise-grade performance, isolation, and security. Our solutions range in size from small, embedded clouds to some of the most massive cloud infrastructures in the world. You'll join a fast-paced, cross-functional organization, work with proven technical leaders, take on bleeding-edge infrastructure challenges, and have the opportunity to shape the security posture of Oracle's next-generation public cloud.
**Responsibilities**
**What are we looking for?**
The OCI Core Services organization is looking for a Senior Principal Security Engineer that will be the technical security leader for OCI's foundational components. You will advise our engineering organizations on secure design, threat modeling, and security architecture of new features; establish security guardrails; design new internal security processes and tooling; and partner closely with product, engineering, and operations organizations to embed security at every layer of our global cloud platform. You will clearly communicate your ideas to senior executive leadership. Your vision will help shape the future of OCI.
This is a full-time role based with room to be remote for the right candidate.
**Basic Qualifications**
+ Bachelor's or Master's degree in Computer Science, Engineering, or a related field (or equivalent).
+ 10+ years of hands-on security engineering experience.
+ Experience working in a large ISP or cloud provider environment.
+ Deep expertise in one or more areas: hypervisor security, network security (SDN, firewalls, zero-trust), or data encryption and integrity.
+ Proficient in threat modeling and conducting secure design reviews of complex systems.
+ Prior coding background (e.g. Java, Go, C/C++, Python), preferably with experience building and deploying security automation tools and libraries.
**Preferred Qualifications**
+ Prior role as a Principal or Senior Principal Security Engineer at a major cloud provider (OCI, AWS, Azure, GCP).
+ Hands-on experience building OCI or AWS services.
+ Experience with CI/CD pipelines, infrastructure as code (Terraform/Ansible), and embedding security checks in build/test workflows.
+ Demonstrated track record of collaborating with product and engineering teams to deliver secure cloud services at Internet scale.
+ Experience deploying security services within a major cloud provider.
+ Experience with using formalized threat modeling frameworks (e.g. STRIDE, PASTA) in large organizations.
+ Expert level knowledge of the following network protocols: IPv4, IPv6, TCP, BGP, OSPF, IS-IS, MPLS, RSVP-TE, VxLAN, EVPN, DNS, and DHCP
+ Experience in GPU/RDMA network environments, High Performance Compute (HPC), or InfiniBand technologies
+ Experience with network monitoring and telemetry solutions, network configuration management, linux systems administration
+ Experience leading security-related technical troubleshooting calls and performing post-mortem analysis
Disclaimer:
**Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.**
**Range and benefit information provided in this posting are specific to the stated locations only**
US: Hiring Range in USD from: $96,800 to $251,600 per annum. May be eligible for bonus, equity, and compensation deferral.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC5
**About Us**
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.