Writing.io Jobs

Find the best remote jobs. Answer a few questions and we'll deploy a powerful assistant to help you search, create alerts, and more.

1 What roles are you open to?

2 Experience level

3 Work style

Did you know? If memory is enabled, Writing.io can remember your job search preferences and help you to improve your resume, craft customized outreach and more.

Security Sr Security Operations Engineer, Detection and Response

Detects, investigates, and responds to security threats and incidents across the organization's systems and networks.

Senior Posted about 13 hours ago Jobicy AI
What this role involves
Who we are At Fortis Games we aspire to make great games that bring people together while redefining how game companies work. We believe in building a sense of belonging...
Read the full description
Security Security Analyst 3rd Level

Investigates complex security incidents, performs deep analysis, escalates critical issues, and coordinates communication between customers and internal teams.

Senior Posted about 16 hours ago Himalayas
What this role involves
deine mission • Komplexe Security Incidents landen bei dir - du gehst in die Tiefe, analysierst sauber und triffst fundierte Entscheidungen • Als Eskalationsinstanz bringst du Ruhe in kritische Situationen und hältst die Kommunikation zwischen Kund:innen und internen Teams klar und strukturiert • In Kundenterminen (z.
Read the full description
Security Senior Cybersecurity Engineer at Mize CPAs Inc.

Senior engineer who owns cybersecurity control domains, deploys and tunes security tools, and mentors junior engineers across identity, network, cloud, and endpoint security.

Senior Posted about 22 hours ago RemoteFirstJobs Product
What this role involves

Work with a Top 20 CPA and advisory firm that Accounts for Anything.  Aprio has 40 U.S. office locations, as well as international office locations and more than 3,200 team members that speak 60+ languages across the globe.  By bringing together proven expertise, deep understanding, and strategic foresight for fast-growing industries, Aprio ensures clients are prepared for wherever life or business may take them. Discover a top-rated culture, vast growth opportunities and your next big career move with Aprio.

Join Aprio’s Information Technology team and you will help clients maximize their opportunities. Aprio is a progressive, fast-growing firm looking for a Senior Cybersecurity Engineer to join their dynamic team.

Aprio’s Cybersecurity Engineering team builds and operates the controls that make the firm defensible: identity, network segmentation, cloud security baselines, endpoint, monitoring, encryption, and vulnerability management. The Senior Cybersecurity Engineer is the senior individual contributor on that team — the engineer who takes a control domain from “documented” to “running cleanly in production,” sets the standard for how it’s done, and pulls the Mid and Associate engineers up with them. This is a hands-on engineering role that also leads cross-team initiatives.

This position supports U.S. Government engagements that may involve Controlled Unclassified Information (CUI) and requires access to export‑controlled technical data. In accordance with CUI and U.S. export control regulations, this position is limited to ‘U.S. persons’ (including U.S. citizens, lawful permanent residents, and certain protected individuals) as defined in 22 C.F.R. § 120.62. These requirements are only tied to this specific job posting. We are an equal opportunity employer and all Aprio employment decisions are made in accordance with applicable laws.

What You’ll Do:

  • You will own the operational health of one or two engineering domains, lead cross-team initiatives that touch multiple control areas, and design the patterns the rest of the team executes against.
  • You’re the engineer who can take a tool from “purchased” to “deployed, tuned, and instrumented,” the partner Cloud Ops and Identity call when they need a security pattern that actually works, and the senior who makes the Mid and Associate engineers better through pairing, code review, and clear standards.
  • You’ll also be a senior voice in architecture and decision conversations alongside the Principal Engineer and the Manager.

Key Responsibilities:

  • Domain ownership: Own the operational health of one or two engineering domains (identity, network/segmentation, cloud security baselines, monitoring/logging, encryption/key management, endpoint, vulnerability management, configuration management). Keep them measurably healthy and improving.
  • Cross-team initiatives: Lead initiatives that span Security, IT, Identity, Cloud Operations, and delivery teams — controlled rollouts, control set hardening, tool migrations. Land them without breaking production.
  • Architecture and standards: Design new control patterns and reference architectures. Write the decision records, runbooks, and standards the team executes against and the auditors review.
  • Controlled rollouts: Lead the end-to-end deployment of new control sets (e.g., bringing a new EDR online, hardening a new cloud account, standing up new logging pipelines) — pilot, measure, expand, document.
  • Mentorship: Pair with Mid and Associate engineers, run design reviews, give substantive code/config review, and grow the next tier. Quality of output from less senior engineers is part of your scope.
  • Operational partnership: Be the senior partner Cloud Ops, Identity, IT Service Management, GRC, and the SOC call when they need security engineering input. Solve problems with them, not at them.
  • Detection/response engineering support: Partner with Detection Engineering and the SOC on logging coverage, telemetry quality, and the engineering pieces of response (privileged access tooling, isolation capabilities, evidence capture).
  • Evidence and audit readiness: Produce control evidence and architecture documentation that holds up under audit and peer review. Keep your domains’ evidence map current.
  • Automation: Push toward repeatable, codified controls (IaC, policy-as-code, automated evidence collection) instead of one-off manual work.

What Success Looks Like:

First 30–60 days: You can operate your priority domains safely on Aprio’s tooling, you’ve assessed current control posture, and you’ve published a prioritized remediation backlog for at least one domain.

By 90 days: You’re leading at least one cross-team initiative, you’ve published or substantially revised at least one architecture pattern or decision record, and you’re an active mentor to the Mid and Associate engineers.

By 6–12 months: Your domains have measurably improved control health (less drift, cleaner evidence, faster remediation, fewer escalations). At least one controlled rollout has landed cleanly. Less senior engineers on the team are visibly better because of how you work with them.

Required Qualifications:

  • 5+ years in security engineering, with hands-on responsibility for implementing controls across identity, network, cloud, endpoint, and/or monitoring.
  • Strong fundamentals in IAM, network segmentation, encryption / key management, and centralized logging / monitoring.
  • Experience with at least one major cloud platform (Azure, AWS, GCP) in a security-engineering capacity.
  • Ability to produce clear architecture documentation, runbooks, and decision records that hold up under audit and peer review.
  • Excellent written and verbal communication; able to explain tradeoffs across Security, IT, and delivery audiences in plain language.
  • Comfortable mentoring less senior engineers and owning quality-of-output for one or more domains.

Preferred Qualifications

  • Regulated-environment experience (CMMC, NIST 800-171, NIST 800-53, FedRAMP-aligned, SOC 2, ISO 27001, HIPAA, PCI).
  • Infrastructure-as-code experience (Terraform, Bicep, Pulumi) and policy-as-code (Sentinel, OPA).
  • Security tooling integration experience (SIEM, EDR, vulnerability scanning, IAM, secrets management).
  • Industry certifications (one or more): CISSP, CCSP, GIAC (e.g., GCED, GPEN, GCWN), AZ-500, AWS Security Specialty.
  • Experience supporting a SOC’s detection/response engineering needs.
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field — or equivalent applicable years of experience

$100,000 - $125,000 a year

The salary range for this opportunity is stated above. As such, an actual salary may fall closer to one or the other end of the range, and in certain circumstances, may wind up being outside of the listed salary range.

The application window is anticipated to close on July 27th and may be extended as needed.

Why work for Aprio:

Whether you are just starting out, looking to advance into management or searching for your next leadership role, Aprio offers an opportunity to grow with a future-focused, innovative firm.

Perks/Benefits we offer for full-time team members:

- Medical, Dental, and Vision Insurance on the first day of employment

- Flexible Spending Account and Dependent Care Account

- 401k with Profit Sharing

- 9+ holidays and discretionary time off structure

- Parental Leave – coverage for both primary and secondary caregivers

- Tuition Assistance Program and CPA support program with cash incentive upon completion

- Discretionary incentive compensation based on firm, group and individual performance

- Incentive compensation related to origination of new client sales

- Top rated wellness program

- Flexible working environment including remote and hybrid options

What’s in it for you:

- Working with an industry leader: Be part of a high-growth firm that is passionate for what’s next.

- An awesome culture: Thirty-one fundamental behaviors guide our culture every day ensuring we always deliver an exceptional team-member and client experience.  We call it the Aprio Way.  This shared mindset creates lasting relationships between team members and with clients.

- A great team: Work with a high-energy, passionate, caring and ambitious team of professionals in a collaborative culture.

- Entrepreneurship: Have the freedom to innovate and bring your ideas to help us grow to become the CPA firm of choice nationally.

- Growth opportunities: Grow professionally in an environment that fosters continuous learning and advancement.

- Competitive compensation: You will be rewarded with competitive compensation, industry-leading benefits and a flexible work environment to enjoy work/life balance.

EQUAL OPPORTUNITY EMPLOYER

Aprio is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race; color; religion; national origin; sex; pregnancy; sexual orientation; gender identity and/or expression; age; disability; genetic information, citizenship status; military service obligations or any other category protected by applicable federal, state, or local law.

Aprio, LLP and Aprio Advisory Group, LLC, operate in an alternative business structure, with Aprio Advisory Group, LLC providing non-attest tax and consulting services, and Aprio, LLP providing CPA firm services.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description
Security Senior Cybersecurity Engineer at Mize CPAs Inc.

Senior cybersecurity engineer who builds and operates security controls including identity, network segmentation, cloud security, and endpoint management while mentoring junior engineers.

Senior Posted about 22 hours ago RemoteFirstJobs Product
What this role involves

Work with a Top 20 CPA and advisory firm that Accounts for Anything.  Aprio has 40 U.S. office locations, as well as international office locations and more than 3,200 team members that speak 60+ languages across the globe.  By bringing together proven expertise, deep understanding, and strategic foresight for fast-growing industries, Aprio ensures clients are prepared for wherever life or business may take them. Discover a top-rated culture, vast growth opportunities and your next big career move with Aprio.

Join Aprio’s Information Technology team and you will help clients maximize their opportunities. Aprio is a progressive, fast-growing firm looking for a Senior Cybersecurity Engineer to join their dynamic team.

Aprio’s Cybersecurity Engineering team builds and operates the controls that make the firm defensible: identity, network segmentation, cloud security baselines, endpoint, monitoring, encryption, and vulnerability management. The Senior Cybersecurity Engineer is the senior individual contributor on that team — the engineer who takes a control domain from “documented” to “running cleanly in production,” sets the standard for how it’s done, and pulls the Mid and Associate engineers up with them. This is a hands-on engineering role that also leads cross-team initiatives.

This position supports U.S. Government engagements that may involve Controlled Unclassified Information (CUI) and requires access to export‑controlled technical data. In accordance with CUI and U.S. export control regulations, this position is limited to ‘U.S. persons’ (including U.S. citizens, lawful permanent residents, and certain protected individuals) as defined in 22 C.F.R. § 120.62. These requirements are only tied to this specific job posting. We are an equal opportunity employer and all Aprio employment decisions are made in accordance with applicable laws.

What You’ll Do:

  • You will own the operational health of one or two engineering domains, lead cross-team initiatives that touch multiple control areas, and design the patterns the rest of the team executes against.
  • You’re the engineer who can take a tool from “purchased” to “deployed, tuned, and instrumented,” the partner Cloud Ops and Identity call when they need a security pattern that actually works, and the senior who makes the Mid and Associate engineers better through pairing, code review, and clear standards.
  • You’ll also be a senior voice in architecture and decision conversations alongside the Principal Engineer and the Manager.

Key Responsibilities:

  • Domain ownership: Own the operational health of one or two engineering domains (identity, network/segmentation, cloud security baselines, monitoring/logging, encryption/key management, endpoint, vulnerability management, configuration management). Keep them measurably healthy and improving.
  • Cross-team initiatives: Lead initiatives that span Security, IT, Identity, Cloud Operations, and delivery teams — controlled rollouts, control set hardening, tool migrations. Land them without breaking production.
  • Architecture and standards: Design new control patterns and reference architectures. Write the decision records, runbooks, and standards the team executes against and the auditors review.
  • Controlled rollouts: Lead the end-to-end deployment of new control sets (e.g., bringing a new EDR online, hardening a new cloud account, standing up new logging pipelines) — pilot, measure, expand, document.
  • Mentorship: Pair with Mid and Associate engineers, run design reviews, give substantive code/config review, and grow the next tier. Quality of output from less senior engineers is part of your scope.
  • Operational partnership: Be the senior partner Cloud Ops, Identity, IT Service Management, GRC, and the SOC call when they need security engineering input. Solve problems with them, not at them.
  • Detection/response engineering support: Partner with Detection Engineering and the SOC on logging coverage, telemetry quality, and the engineering pieces of response (privileged access tooling, isolation capabilities, evidence capture).
  • Evidence and audit readiness: Produce control evidence and architecture documentation that holds up under audit and peer review. Keep your domains’ evidence map current.
  • Automation: Push toward repeatable, codified controls (IaC, policy-as-code, automated evidence collection) instead of one-off manual work.

What Success Looks Like:

First 30–60 days: You can operate your priority domains safely on Aprio’s tooling, you’ve assessed current control posture, and you’ve published a prioritized remediation backlog for at least one domain.

By 90 days: You’re leading at least one cross-team initiative, you’ve published or substantially revised at least one architecture pattern or decision record, and you’re an active mentor to the Mid and Associate engineers.

By 6–12 months: Your domains have measurably improved control health (less drift, cleaner evidence, faster remediation, fewer escalations). At least one controlled rollout has landed cleanly. Less senior engineers on the team are visibly better because of how you work with them.

Required Qualifications:

  • 5+ years in security engineering, with hands-on responsibility for implementing controls across identity, network, cloud, endpoint, and/or monitoring.
  • Strong fundamentals in IAM, network segmentation, encryption / key management, and centralized logging / monitoring.
  • Experience with at least one major cloud platform (Azure, AWS, GCP) in a security-engineering capacity.
  • Ability to produce clear architecture documentation, runbooks, and decision records that hold up under audit and peer review.
  • Excellent written and verbal communication; able to explain tradeoffs across Security, IT, and delivery audiences in plain language.
  • Comfortable mentoring less senior engineers and owning quality-of-output for one or more domains.

Preferred Qualifications

  • Regulated-environment experience (CMMC, NIST 800-171, NIST 800-53, FedRAMP-aligned, SOC 2, ISO 27001, HIPAA, PCI).
  • Infrastructure-as-code experience (Terraform, Bicep, Pulumi) and policy-as-code (Sentinel, OPA).
  • Security tooling integration experience (SIEM, EDR, vulnerability scanning, IAM, secrets management).
  • Industry certifications (one or more): CISSP, CCSP, GIAC (e.g., GCED, GPEN, GCWN), AZ-500, AWS Security Specialty.
  • Experience supporting a SOC’s detection/response engineering needs.
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field — or equivalent applicable years of experience

$100,000 - $125,000 a year

The salary range for this opportunity is stated above. As such, an actual salary may fall closer to one or the other end of the range, and in certain circumstances, may wind up being outside of the listed salary range.

The application window is anticipated to close on July 27th and may be extended as needed.

Why work for Aprio:

Whether you are just starting out, looking to advance into management or searching for your next leadership role, Aprio offers an opportunity to grow with a future-focused, innovative firm.

Perks/Benefits we offer for full-time team members:

- Medical, Dental, and Vision Insurance on the first day of employment

- Flexible Spending Account and Dependent Care Account

- 401k with Profit Sharing

- 9+ holidays and discretionary time off structure

- Parental Leave – coverage for both primary and secondary caregivers

- Tuition Assistance Program and CPA support program with cash incentive upon completion

- Discretionary incentive compensation based on firm, group and individual performance

- Incentive compensation related to origination of new client sales

- Top rated wellness program

- Flexible working environment including remote and hybrid options

What’s in it for you:

- Working with an industry leader: Be part of a high-growth firm that is passionate for what’s next.

- An awesome culture: Thirty-one fundamental behaviors guide our culture every day ensuring we always deliver an exceptional team-member and client experience.  We call it the Aprio Way.  This shared mindset creates lasting relationships between team members and with clients.

- A great team: Work with a high-energy, passionate, caring and ambitious team of professionals in a collaborative culture.

- Entrepreneurship: Have the freedom to innovate and bring your ideas to help us grow to become the CPA firm of choice nationally.

- Growth opportunities: Grow professionally in an environment that fosters continuous learning and advancement.

- Competitive compensation: You will be rewarded with competitive compensation, industry-leading benefits and a flexible work environment to enjoy work/life balance.

EQUAL OPPORTUNITY EMPLOYER

Aprio is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race; color; religion; national origin; sex; pregnancy; sexual orientation; gender identity and/or expression; age; disability; genetic information, citizenship status; military service obligations or any other category protected by applicable federal, state, or local law.

Aprio, LLP and Aprio Advisory Group, LLC, operate in an alternative business structure, with Aprio Advisory Group, LLC providing non-attest tax and consulting services, and Aprio, LLP providing CPA firm services.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description
Security Senior Cybersecurity Engineer at Mize CPAs Inc.

Senior Cybersecurity Engineer designs, deploys, and operates security controls including identity, network segmentation, cloud security, and vulnerability management while mentoring junior engineers.

Senior Posted about 22 hours ago RemoteFirstJobs Product
What this role involves

Work with a Top 20 CPA and advisory firm that Accounts for Anything.  Aprio has 40 U.S. office locations, as well as international office locations and more than 3,200 team members that speak 60+ languages across the globe.  By bringing together proven expertise, deep understanding, and strategic foresight for fast-growing industries, Aprio ensures clients are prepared for wherever life or business may take them. Discover a top-rated culture, vast growth opportunities and your next big career move with Aprio.

Join Aprio’s Information Technology team and you will help clients maximize their opportunities. Aprio is a progressive, fast-growing firm looking for a Senior Cybersecurity Engineer to join their dynamic team.

Aprio’s Cybersecurity Engineering team builds and operates the controls that make the firm defensible: identity, network segmentation, cloud security baselines, endpoint, monitoring, encryption, and vulnerability management. The Senior Cybersecurity Engineer is the senior individual contributor on that team — the engineer who takes a control domain from “documented” to “running cleanly in production,” sets the standard for how it’s done, and pulls the Mid and Associate engineers up with them. This is a hands-on engineering role that also leads cross-team initiatives.

This position supports U.S. Government engagements that may involve Controlled Unclassified Information (CUI) and requires access to export‑controlled technical data. In accordance with CUI and U.S. export control regulations, this position is limited to ‘U.S. persons’ (including U.S. citizens, lawful permanent residents, and certain protected individuals) as defined in 22 C.F.R. § 120.62. These requirements are only tied to this specific job posting. We are an equal opportunity employer and all Aprio employment decisions are made in accordance with applicable laws.

What You’ll Do:

  • You will own the operational health of one or two engineering domains, lead cross-team initiatives that touch multiple control areas, and design the patterns the rest of the team executes against.
  • You’re the engineer who can take a tool from “purchased” to “deployed, tuned, and instrumented,” the partner Cloud Ops and Identity call when they need a security pattern that actually works, and the senior who makes the Mid and Associate engineers better through pairing, code review, and clear standards.
  • You’ll also be a senior voice in architecture and decision conversations alongside the Principal Engineer and the Manager.

Key Responsibilities:

  • Domain ownership: Own the operational health of one or two engineering domains (identity, network/segmentation, cloud security baselines, monitoring/logging, encryption/key management, endpoint, vulnerability management, configuration management). Keep them measurably healthy and improving.
  • Cross-team initiatives: Lead initiatives that span Security, IT, Identity, Cloud Operations, and delivery teams — controlled rollouts, control set hardening, tool migrations. Land them without breaking production.
  • Architecture and standards: Design new control patterns and reference architectures. Write the decision records, runbooks, and standards the team executes against and the auditors review.
  • Controlled rollouts: Lead the end-to-end deployment of new control sets (e.g., bringing a new EDR online, hardening a new cloud account, standing up new logging pipelines) — pilot, measure, expand, document.
  • Mentorship: Pair with Mid and Associate engineers, run design reviews, give substantive code/config review, and grow the next tier. Quality of output from less senior engineers is part of your scope.
  • Operational partnership: Be the senior partner Cloud Ops, Identity, IT Service Management, GRC, and the SOC call when they need security engineering input. Solve problems with them, not at them.
  • Detection/response engineering support: Partner with Detection Engineering and the SOC on logging coverage, telemetry quality, and the engineering pieces of response (privileged access tooling, isolation capabilities, evidence capture).
  • Evidence and audit readiness: Produce control evidence and architecture documentation that holds up under audit and peer review. Keep your domains’ evidence map current.
  • Automation: Push toward repeatable, codified controls (IaC, policy-as-code, automated evidence collection) instead of one-off manual work.

What Success Looks Like:

First 30–60 days: You can operate your priority domains safely on Aprio’s tooling, you’ve assessed current control posture, and you’ve published a prioritized remediation backlog for at least one domain.

By 90 days: You’re leading at least one cross-team initiative, you’ve published or substantially revised at least one architecture pattern or decision record, and you’re an active mentor to the Mid and Associate engineers.

By 6–12 months: Your domains have measurably improved control health (less drift, cleaner evidence, faster remediation, fewer escalations). At least one controlled rollout has landed cleanly. Less senior engineers on the team are visibly better because of how you work with them.

Required Qualifications:

  • 5+ years in security engineering, with hands-on responsibility for implementing controls across identity, network, cloud, endpoint, and/or monitoring.
  • Strong fundamentals in IAM, network segmentation, encryption / key management, and centralized logging / monitoring.
  • Experience with at least one major cloud platform (Azure, AWS, GCP) in a security-engineering capacity.
  • Ability to produce clear architecture documentation, runbooks, and decision records that hold up under audit and peer review.
  • Excellent written and verbal communication; able to explain tradeoffs across Security, IT, and delivery audiences in plain language.
  • Comfortable mentoring less senior engineers and owning quality-of-output for one or more domains.

Preferred Qualifications

  • Regulated-environment experience (CMMC, NIST 800-171, NIST 800-53, FedRAMP-aligned, SOC 2, ISO 27001, HIPAA, PCI).
  • Infrastructure-as-code experience (Terraform, Bicep, Pulumi) and policy-as-code (Sentinel, OPA).
  • Security tooling integration experience (SIEM, EDR, vulnerability scanning, IAM, secrets management).
  • Industry certifications (one or more): CISSP, CCSP, GIAC (e.g., GCED, GPEN, GCWN), AZ-500, AWS Security Specialty.
  • Experience supporting a SOC’s detection/response engineering needs.
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field — or equivalent applicable years of experience

$100,000 - $125,000 a year

The salary range for this opportunity is stated above. As such, an actual salary may fall closer to one or the other end of the range, and in certain circumstances, may wind up being outside of the listed salary range.

The application window is anticipated to close on July 27th and may be extended as needed.

Why work for Aprio:

Whether you are just starting out, looking to advance into management or searching for your next leadership role, Aprio offers an opportunity to grow with a future-focused, innovative firm.

Perks/Benefits we offer for full-time team members:

- Medical, Dental, and Vision Insurance on the first day of employment

- Flexible Spending Account and Dependent Care Account

- 401k with Profit Sharing

- 9+ holidays and discretionary time off structure

- Parental Leave – coverage for both primary and secondary caregivers

- Tuition Assistance Program and CPA support program with cash incentive upon completion

- Discretionary incentive compensation based on firm, group and individual performance

- Incentive compensation related to origination of new client sales

- Top rated wellness program

- Flexible working environment including remote and hybrid options

What’s in it for you:

- Working with an industry leader: Be part of a high-growth firm that is passionate for what’s next.

- An awesome culture: Thirty-one fundamental behaviors guide our culture every day ensuring we always deliver an exceptional team-member and client experience.  We call it the Aprio Way.  This shared mindset creates lasting relationships between team members and with clients.

- A great team: Work with a high-energy, passionate, caring and ambitious team of professionals in a collaborative culture.

- Entrepreneurship: Have the freedom to innovate and bring your ideas to help us grow to become the CPA firm of choice nationally.

- Growth opportunities: Grow professionally in an environment that fosters continuous learning and advancement.

- Competitive compensation: You will be rewarded with competitive compensation, industry-leading benefits and a flexible work environment to enjoy work/life balance.

EQUAL OPPORTUNITY EMPLOYER

Aprio is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race; color; religion; national origin; sex; pregnancy; sexual orientation; gender identity and/or expression; age; disability; genetic information, citizenship status; military service obligations or any other category protected by applicable federal, state, or local law.

Aprio, LLP and Aprio Advisory Group, LLC, operate in an alternative business structure, with Aprio Advisory Group, LLC providing non-attest tax and consulting services, and Aprio, LLP providing CPA firm services.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description
Security Senior Escalation Engineer

Handles escalated security incidents and complex technical issues for an identity security platform.

Senior Posted 1 day ago Jobicy AI
What this role involves
We are looking for a Senior Escalation Engineer to join our client — the worldwide frontrunner in identity security. By emphasising intelligent privilege controls, they deliver the most extensive security...
Read the full description
Security Senior Financial Crime Investigator – Business Banking

Investigates financial crime and fraud cases within business banking operations to ensure compliance and protect institutional integrity.

Senior Remote Posted 1 day ago Jobicy AI
What this role involves
UK Remote | 💰 £31,100 – £39,350 + Incentive Awards tied to your performance +Benefits | Hear from the team ✨Start Date: We have start dates for Tuesday 1st September,...
Read the full description
Security Senior Analyst, Information Security (R14050) at Oportun

Develops and maintains information security policies, governance documentation, and security awareness programs while ensuring compliance with regulatory frameworks.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

ABOUT OPORTUN

Oportun (Nasdaq: OPRT) is a mission-driven financial services company that puts its members’ financial goals within reach. With intelligent borrowing, savings, and budgeting capabilities, Oportun empowers members with the confidence to build a better financial future. Since inception, Oportun has provided more than $21.3 billion in responsible and affordable credit, saved its members more than $2.5 billion in interest and fees, and helped its members set aside an average of more than $1,800 annually.

WORKING AT OPORTUN

Working at Oportun means enjoying a differentiated experience of being part of a team that fosters a diverse, equitable and inclusive culture where we all feel a sense of belonging and are encouraged to share our perspectives. This inclusive culture is directly connected to our organization’s performance and ability to fulfill our mission of delivering affordable credit to those left out of the financial mainstream. We celebrate and nurture our inclusive culture through our employee resource groups.

POSITION SUMMARY

The Information Security Governance & Awareness Senior Analyst supports and advances the organization’s information security governance and security awareness programs through policy lifecycle management, governance analysis, regulatory mapping, metrics reporting, and targeted security education initiatives.

This role is responsible for coordinating and contributing to the development, maintenance, review, approval, and publication of information security policies, standards, procedures, and related governance documentation. The Senior Analyst applies critical thinking and sound judgment to assess governance documentation against regulatory and framework requirements and helps identify potential gaps, inconsistencies, or improvement opportunities.

The ideal candidate possesses strong technical writing and analytical skills, excellent English language comprehension, attention to detail, and the ability to translate complex security and regulatory concepts into clear, actionable governance documentation and awareness communications.

This role also supports organizational security culture initiatives through audience-appropriate awareness content, phishing simulation activities, and security education support aligned to organizational risks and business objectives.

RESPONSIBILITIES

Security Governance & Policy Management

  • Manage and support the lifecycle of information security policies, standards, procedures, and related governance documentation.
  • Coordinate document reviews, stakeholder collaboration, approvals, renewals, attestations, and publication timelines.
  • Track policy review schedules, exceptions, approvals, versioning, and governance workflow activities.
  • Interpret and map regulatory and framework requirements to organizational governance documents and controls.
  • Support governance alignment efforts related to:
    • PCI-DSS v4.0.1
    • NIST Cybersecurity Framework (CSF) 2.0
    • SOC 2
    • SOX
    • FTC Safeguards Rule and related FTC requirements
  • Review governance documentation for clarity, consistency, completeness, enforceability, and alignment with regulatory and organizational requirements.
  • Identify potential governance gaps, conflicting requirements, outdated language, or process inconsistencies and recommend improvements.
  • Ensure governance documentation appropriately distinguishes between policies, standards, procedures, guidelines, and supporting controls.
  • Draft, edit, and maintain governance documentation using concise, professional, and active-voice writing principles.
  • Support audit, assessment, and compliance activities through governance documentation review and evidence coordination.
  • Maintain governance repositories, templates, and document management systems.

Security Awareness & Education

  • Support the organization’s security awareness and education initiatives for technical and non-technical audiences.
  • Develop and maintain targeted awareness communications, training materials, and educational content aligned to organizational risks and emerging threats.
  • Apply adult learning and communication principles to tailor awareness messaging to intended audiences and business contexts.
  • Coordinate and support phishing simulation campaigns, including reporting, trend analysis, and user follow-up activities.
  • Assist with measuring awareness participation, phishing resilience, and program effectiveness metrics.
  • Collaborate with stakeholders to identify awareness gaps and support awareness improvement initiatives.

Metrics, Reporting & Program Support

  • Develop and maintain governance and awareness program dashboards, recurring reports, and operational metrics.
  • Produce reporting related to:
    • Policy lifecycle compliance
    • Review and approval timeliness
    • Governance exceptions
    • Security awareness participation
    • Phishing simulation trends
    • Governance process effectiveness
  • Analyze governance and awareness trends to identify operational risks, recurring issues, or process improvement opportunities.
  • Build and maintain reusable governance templates, reporting assets, and process documentation.
  • Support governance committee preparation, leadership reporting, and cross-functional governance initiatives.
  • Contribute to governance process improvement and operational efficiency efforts.

REQUIREMENTS

  • Bachelor’s degree in Information Security, Cybersecurity, Information Systems, Risk Management, English, Communications, or related field; or equivalent practical experience.
  • 3–5 years of experience in information security governance, compliance, policy management, technical writing, security awareness, or related areas.
  • Strong working knowledge of security and regulatory frameworks including PCI-DSS, NIST CSF, SOC 2, SOX, and FTC requirements.
  • Demonstrated ability to read, interpret, and map regulatory requirements to governance documentation and organizational controls.
  • Excellent technical writing, editing, and English language comprehension skills.
  • Strong critical thinking and analytical skills, including the ability to identify governance gaps, inconsistencies, or improvement opportunities.
  • Strong understanding of the distinctions between policies, standards, procedures, guidelines, and controls.
  • Experience developing metrics, dashboards, and recurring governance or compliance reporting.
  • Familiarity with phishing simulation platforms and security awareness practices.
  • Strong organizational, stakeholder coordination, and project management skills.
  • Ability to manage multiple priorities and deadlines in a cross-functional environment.

Preferred Qualifications

  • Experience supporting governance, risk, and compliance (GRC) programs in regulated industries.
  • Understanding of adult learning principles and audience-based communication strategies.
  • Experience supporting audits, assessments, and evidence collection activities.
  • Familiarity with GRC platforms, workflow management tools, or document management systems.
  • Experience in financial services, fintech, or highly regulated environments preferred.
  • Relevant certifications such as:
    • Security+
    • CISSP
    • CISA
    • CRISC
    • PCI ISA

#LI-REMOTE

#LI-SS1

We are proud to be an Equal Opportunity Employer and consider all qualified applicants for employment opportunities without regard to race, age, color, religion, gender, national origin, disability, sexual orientation, veteran status or any other category protected by the laws or regulations in the locations where we operate.

California applicants can find a copy of Oportun’s CCPA Notice here:  https://oportun.com/privacy/california-privacy-notice/.

We will never request personal identifiable information (bank, credit card, etc.) before you are hired. We do not charge you for pre-employment fees such as background checks, training, or equipment. If you think you have been a victim of fraud by someone posing as us, please report your experience to the FBI’s Internet Crime Complaint Center (IC3).

Read the full description
Security Sr IT Security Analyst at Mattel, Inc.

Engineers and optimizes endpoint detection and response (EDR) and identity threat protection platforms to detect, prevent, and respond to security threats across enterprise environments.

Senior Posted 2 days ago RemoteFirstJobs Product
What this role involves

Company Description

CREATIVITY IS OUR SUPERPOWER. It’s our heritage and it’s also our future. Because we don’t just make toys. We create innovative products and experiences that inspire fans, entertain audiences and develop children through play. Mattel is at its best when every member of our team feels respected, included, and heard—when everyone can show up as themselves and do their best work every day. We value and share an infinite range of ideas and voices that evolve and broaden our perspectives with a reach that extends into all our brands, partners, and suppliers.

The Team:

Job Description

About the Role

The Sr Security Engineer – Endpoint & Identity Threat Protection (EDR / ITP) is responsible for engineering, deploying, and optimizing advanced detection and response technologies that safeguard Mattel’s global enterprise. This senior technical role focuses on proactive endpoint detection, response automation, and identity threat protection, helping to strengthen the organization’s cyber defense posture. The position requires deep technical expertise across endpoint and identity protection technologies, strong collaboration skills, and a commitment to continuous improvement through automation, analytics, and security modernization initiatives.

Roles and Responsibilities

  • Engineer, deploy, and maintain enterprise Endpoint Detection and Response (EDR) and Identity Threat Protection (ITP) platforms across Mattel’s environments.
  • Develop, tune, and optimize behavioral analytics and detection logic to identify, prevent, and respond to malicious activity targeting endpoints and identities.
  • Collaborate with Security Operations and Incident Response teams to investigate, contain, and remediate security incidents effectively and efficiently.
  • Integrate EDR and ITP technologies with SIEM, SOAR, and threat intelligence platforms to improve visibility, automation, and response capabilities.
  • Contribute to the architecture, implementation, and continuous enhancement of endpoint and identity threat protection strategies in alignment with Mattel’s cybersecurity goals.
  • Partner with IT, Infrastructure, and Security Architecture teams to support secure configuration management, policy enforcement, and system hardening across all endpoints.
  • Ensure endpoint and identity protection controls align with corporate security policies, compliance mandates, and global regulatory standards.
  • Perform advanced telemetry analysis, detection validation, and post-incident investigations to improve detection fidelity and reduce false positives.
  • Collaborate with Engineering, Cloud, and Infrastructure teams to ensure endpoint tools operate effectively across hybrid and cloud environments.
  • Develop and maintain documentation, operational standards, and playbooks for endpoint and identity threat protection workflows.
  • Participate in post-incident reviews to identify gaps, lessons learned, and opportunities to enhance security processes.
  • Evaluate emerging endpoint and identity threat protection technologies and contribute to technical proof-of-concept initiatives to support security modernization.

Qualifications

Required:

  • 5–7+ years of experience in cybersecurity engineering, with a focus on endpoint and identity threat protection in enterprise environments.
  • Demonstrated expertise managing enterprise-grade EDR and ITP platforms such as CrowdStrike, SentinelOne, Defender for Endpoint, or similar solutions.
  • Strong technical knowledge of endpoint operating systems (Windows, macOS, Linux) and adversary tactics, techniques, and procedures (TTPs).
  • Experience designing and optimizing detection logic, behavioral rules, and custom correlation within EDR and identity systems.
  • Proficiency in integrating endpoint and identity threat protection solutions with SIEM, SOAR, and automation platforms.
  • In-depth understanding of identity and access management (IAM) frameworks such as Azure AD, Okta, SSO, and MFA.
  • Experience in IOC and IOA analysis, enrichment, and use of threat intelligence for proactive defense and detection tuning.
  • Hands-on experience in scripting or automation using PowerShell, Python, or equivalent languages for workflow orchestration and data enrichment.
  • Strong understanding of endpoint configuration, policy management, application allowlisting, and device control.
  • Excellent communication and collaboration skills with the ability to work effectively across global and cross-functional teams.

Preferred:

  • Bachelor’s degree in computer science, Information Security, or a related field (or equivalent experience).
  • Certifications such as GSEC, SSCP, GCED, GCIA, or CompTIA CySA+.
  • Experience supporting hybrid endpoint environments across on-premises, cloud (AWS, Azure, GCP), and virtualized systems.
  • Familiarity with the MITRE ATT&CK framework for mapping detections, validating coverage, and improving response maturity.
  • Hands-on experience with SOAR or orchestration platforms to enhance threat detection and response workflows.
  • Knowledge of modern endpoint protection trends, AI/ML-based detection models, and zero-trust security principles.

Shift Timings:

This position operates during 05:00 – 14:00 PST (17:30 – 02:30 IST), Monday through Friday, with emergency on-call duties as required.

Additional Information

Don’t meet every single requirement? At Mattel, we are dedicated to an inclusive workplace and a culture of belonging. If you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we still encourage you to apply. You may be just the right candidate for this or other roles.

How We Work:

We are a purpose driven company aiming to empower generations to explore the wonder of childhood and reach their full potential. We live up to our purpose employing the following behaviors:

  • We collaborate: Being a part of Mattel means being part of one team with shared values and common goals. Every person counts and working closely together always brings better results. Partnership is our process and our collective capabilities is our superpower.
  • We innovate: At Mattel we always aim to find new and better ways to create innovative products and experiences. No matter where you work in the organization, you can always make a difference and have real impact. We welcome new ideas and value new initiatives that challenge conventional thinking.
  • We execute: We are a performance-driven company. We strive for excellence and are focused on pursuing best-in-class outcomes. We believe in accountability and ownership and know that our people are at their best when they are empowered to create and deliver results.

Our Approach to Flexible Work:

We embrace a flexible work model designed to empower a culture of growth, optimism, and wellbeing, where every employee can reach their full potential. Combining purposeful in-person collaboration with flexibility, our focus is to optimize performance and drive connection for moments that matter.

Who We Are:

Mattel is a leading global toy and family entertainment company and owner of one of the most iconic brand portfolios in the world. We engage consumers and fans through our franchise brands, including Barbie, Hot Wheels, Fisher-Price, American Girl, Thomas & Friends, UNO, Masters of the Universe, Matchbox, Monster High, MEGA and Polly Pocket, as well as other popular properties that we own or license in partnership with global entertainment companies. Our offerings include toys, content, consumer products, digital and live experiences. Our products are sold in collaboration with the world’s leading retail and ecommerce companies. Since its founding in 1945, Mattel is proud to be a trusted partner in empowering generations to explore the wonder of childhood and reach their full potential.

Mattel’s award-winning workplace culture has been recognized by Forbes, Fast Company, Newsweek, Great Place to Work, TIME, and more.

Visit us at https://jobs.mattel.com/ and www.instagram.com/MattelCareers.

Mattel is an Equal Opportunity Employer where we want you to bring your authentic self to work every day. We welcome all job seekers, and all applicants will receive consideration for employment.

Videos to watch:

The Culture at Mattel

Corporate Philanthropy

Read the full description
Security Senior Consultant - FedRAMP Assessment at Coalfire

Leads FedRAMP security assessments and audits for clients, develops compliance reports, and mentors junior team members on cybersecurity frameworks and best practices.

Senior Posted 3 days ago RemoteFirstJobs Product
What this role involves

About Coalfire

Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.

But that’s not who we are – that’s just what we do.

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.

Position Summary

The Security Consultant will work as part of a team assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. This role will have a strong understanding of framework requirements, perform audit/assessments, and develop reports for clients. They will work closely with Project Managers, Senior Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.

What You’ll Do

  • Provides advice to customers on issues affecting the scope of work in a manner that provides additional value
  • Develop documentation and author recommendations associate with your findings on how to improve the customer’s security posture in accordance with appropriate controls
  • Leads audits/assessments including audit plan preparation, review of documentation and evidence, evaluation of procedures, and client interviews.
  • Maintains strong depth of knowledge in one or more cybersecurity frameworks.
  • Prepare, review and approve  assessment reports.
  • Manage priorities, tasks and hours on projects in conjunction with the project manager to achieve delivery utilization targets.
  • Ensures quality products and services are delivered on time.
  • Escalates client and project issues to management in a timely manner to inform and engage the necessary resources to address the issue
  • Provide mentorship to team members in areas of audit, assessment, technical review and writing.
  • Interfaces with clients through entire engagement, interacting with all levels of client organizations
  • Establish and maintain positive collaborative relationships with clients and stakeholders
  • Continuous professional development in maintaining industry specific certifications. Maintains strong depth of knowledge in the practice area.
  • Collaborates with project managers, quality management, sales and other delivery team members to drive customer satisfaction and meet project deliverables.
  • Establishes account relationships and identifies upsell and cross sell opportunities and escalates to sales.
  • Draft audit programs that sufficiently address both the required objectives of the regulatory body and the complexity of the client environment
  • Leads interview and inquiry walkthroughs with clients to determine the conformity of environments against stated requirements
  • Assess security vulnerabilities against the appropriate security frameworks
  • Pursues and corroborates conclusions derived from inquiry procedures with client while ensuring diligent interview notes are captured
  • Offline and remote evidence inspection of client provided documentation; appropriately mark artifacts requiring follow-up or additional clarification
  • Educate and interpret compliance activities for clients
  • Understands how to apply quality standards and adheres to a minimum benchmark for quality assurance throughout the documentation of each work product or deliverable
  • Remote work environment
  • Travel 20%

What You’ll Bring

  • Bachelor’s degree (four-year college or university) in IT or business, or equivalent combination of education and work experience
  • Five to ten (5-10) years of experience as a consultant within professional IT services
  • Deep experience with government compliance, including FISMA, FedRAMP, and DoD RMF
  • Strong knowledge of NIST Special Publications 800-30, 800-37, 800-53
  • Experience with every step within the delivery of Certification and Accreditation (C&A) / Assessment and Authorization (A&A) packages that have obtained and maintained full authorization to operate (ATO)
  • Experience with virtualization or cloud technologies
  • Familiarity with statutes and regulations across multiple industries relevant to IT (e.g. SOX 404, HIPAA, FedRAMP, GLB, Patriot Act)
  • Knowledge of information security related solutions, tools, and utilities
  • Excellent verbal and written skills
  • Willing to travel up to 20%

Must have an active CISSP and one of the following certifications:

  • Cisco Certified Network Associate Security (CCNA Security)
  • Cisco Certified Network Associate Cyber Security Operations (CCNA Cyber Ops)
  • Cybersecurity Analyst (CySA+)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Systems and Network Auditor (GSNA)
  • GIAC Certified Intrusion Analyst (GCIA)
  • Certified Information Systems Auditor (CISA)
  • Certified Information System Security Professional or Associate (CISSP or Associate)
  • Certified Secure Software Lifecycle Professional (CSSLP)
  • Certified Information Systems Security Officer (CISSO)
  • CyberSec First Responder (CFR)
  • CompTIA Advanced Security Practitioner Continuing Education (CASP+) Continuing Education (CE)
  • CompTIA Cloud+ (Cloud+)
  • Global Industrial Cyber Security Professional (GICSP)
  • Securing CiscoÂŽ Networks with Threat Detection Analysis (SCYBER)
  • BCR Cyber Technical Proficiency Testing Activity

Bonus Points

  • Hold Cloud Security focused certifications (AWS, Azure, CCSK, etc.)

$86,000 - $148,000 a year

The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.

Why You’ll Want to Join Us

At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.

Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.

At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at [email protected].

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description
Security Senior Consultant - FedRAMP Assessment at Coalfire

Leads FedRAMP and cybersecurity compliance assessments for clients, develops audit reports, and mentors junior consultants on security frameworks and best practices.

Senior Posted 3 days ago RemoteFirstJobs Product
What this role involves

About Coalfire

Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.

But that’s not who we are – that’s just what we do.

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.

Position Summary

The Security Consultant will work as part of a team assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. This role will have a strong understanding of framework requirements, perform audit/assessments, and develop reports for clients. They will work closely with Project Managers, Senior Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.

What You’ll Do

  • Provides advice to customers on issues affecting the scope of work in a manner that provides additional value
  • Develop documentation and author recommendations associate with your findings on how to improve the customer’s security posture in accordance with appropriate controls
  • Leads audits/assessments including audit plan preparation, review of documentation and evidence, evaluation of procedures, and client interviews.
  • Maintains strong depth of knowledge in one or more cybersecurity frameworks.
  • Prepare, review and approve  assessment reports.
  • Manage priorities, tasks and hours on projects in conjunction with the project manager to achieve delivery utilization targets.
  • Ensures quality products and services are delivered on time.
  • Escalates client and project issues to management in a timely manner to inform and engage the necessary resources to address the issue
  • Provide mentorship to team members in areas of audit, assessment, technical review and writing.
  • Interfaces with clients through entire engagement, interacting with all levels of client organizations
  • Establish and maintain positive collaborative relationships with clients and stakeholders
  • Continuous professional development in maintaining industry specific certifications. Maintains strong depth of knowledge in the practice area.
  • Collaborates with project managers, quality management, sales and other delivery team members to drive customer satisfaction and meet project deliverables.
  • Establishes account relationships and identifies upsell and cross sell opportunities and escalates to sales.
  • Draft audit programs that sufficiently address both the required objectives of the regulatory body and the complexity of the client environment
  • Leads interview and inquiry walkthroughs with clients to determine the conformity of environments against stated requirements
  • Assess security vulnerabilities against the appropriate security frameworks
  • Pursues and corroborates conclusions derived from inquiry procedures with client while ensuring diligent interview notes are captured
  • Offline and remote evidence inspection of client provided documentation; appropriately mark artifacts requiring follow-up or additional clarification
  • Educate and interpret compliance activities for clients
  • Understands how to apply quality standards and adheres to a minimum benchmark for quality assurance throughout the documentation of each work product or deliverable
  • Remote work environment
  • Travel 20%

What You’ll Bring

  • Bachelor’s degree (four-year college or university) in IT or business, or equivalent combination of education and work experience
  • Five to ten (5-10) years of experience as a consultant within professional IT services
  • Deep experience with government compliance, including FISMA, FedRAMP, and DoD RMF
  • Strong knowledge of NIST Special Publications 800-30, 800-37, 800-53
  • Experience with every step within the delivery of Certification and Accreditation (C&A) / Assessment and Authorization (A&A) packages that have obtained and maintained full authorization to operate (ATO)
  • Experience with virtualization or cloud technologies
  • Familiarity with statutes and regulations across multiple industries relevant to IT (e.g. SOX 404, HIPAA, FedRAMP, GLB, Patriot Act)
  • Knowledge of information security related solutions, tools, and utilities
  • Excellent verbal and written skills
  • Willing to travel up to 20%

Must have an active CISSP and one of the following certifications:

  • Cisco Certified Network Associate Security (CCNA Security)
  • Cisco Certified Network Associate Cyber Security Operations (CCNA Cyber Ops)
  • Cybersecurity Analyst (CySA+)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Systems and Network Auditor (GSNA)
  • GIAC Certified Intrusion Analyst (GCIA)
  • Certified Information Systems Auditor (CISA)
  • Certified Information System Security Professional or Associate (CISSP or Associate)
  • Certified Secure Software Lifecycle Professional (CSSLP)
  • Certified Information Systems Security Officer (CISSO)
  • CyberSec First Responder (CFR)
  • CompTIA Advanced Security Practitioner Continuing Education (CASP+) Continuing Education (CE)
  • CompTIA Cloud+ (Cloud+)
  • Global Industrial Cyber Security Professional (GICSP)
  • Securing CiscoÂŽ Networks with Threat Detection Analysis (SCYBER)
  • BCR Cyber Technical Proficiency Testing Activity

Bonus Points

  • Hold Cloud Security focused certifications (AWS, Azure, CCSK, etc.)

$86,000 - $148,000 a year

The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.

Why You’ll Want to Join Us

At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.

Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.

At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at [email protected].

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description
Security Senior Consultant - FedRAMP Assessment at Coalfire

Senior consultant leads FedRAMP and security compliance assessments, performs audits against regulatory frameworks, and develops recommendations to improve client security posture.

Senior Posted 3 days ago RemoteFirstJobs Product
What this role involves

About Coalfire

Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.

But that’s not who we are – that’s just what we do.

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.

Position Summary

The Security Consultant will work as part of a team assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. This role will have a strong understanding of framework requirements, perform audit/assessments, and develop reports for clients. They will work closely with Project Managers, Senior Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.

What You’ll Do

  • Provides advice to customers on issues affecting the scope of work in a manner that provides additional value
  • Develop documentation and author recommendations associate with your findings on how to improve the customer’s security posture in accordance with appropriate controls
  • Leads audits/assessments including audit plan preparation, review of documentation and evidence, evaluation of procedures, and client interviews.
  • Maintains strong depth of knowledge in one or more cybersecurity frameworks.
  • Prepare, review and approve  assessment reports.
  • Manage priorities, tasks and hours on projects in conjunction with the project manager to achieve delivery utilization targets.
  • Ensures quality products and services are delivered on time.
  • Escalates client and project issues to management in a timely manner to inform and engage the necessary resources to address the issue
  • Provide mentorship to team members in areas of audit, assessment, technical review and writing.
  • Interfaces with clients through entire engagement, interacting with all levels of client organizations
  • Establish and maintain positive collaborative relationships with clients and stakeholders
  • Continuous professional development in maintaining industry specific certifications. Maintains strong depth of knowledge in the practice area.
  • Collaborates with project managers, quality management, sales and other delivery team members to drive customer satisfaction and meet project deliverables.
  • Establishes account relationships and identifies upsell and cross sell opportunities and escalates to sales.
  • Draft audit programs that sufficiently address both the required objectives of the regulatory body and the complexity of the client environment
  • Leads interview and inquiry walkthroughs with clients to determine the conformity of environments against stated requirements
  • Assess security vulnerabilities against the appropriate security frameworks
  • Pursues and corroborates conclusions derived from inquiry procedures with client while ensuring diligent interview notes are captured
  • Offline and remote evidence inspection of client provided documentation; appropriately mark artifacts requiring follow-up or additional clarification
  • Educate and interpret compliance activities for clients
  • Understands how to apply quality standards and adheres to a minimum benchmark for quality assurance throughout the documentation of each work product or deliverable
  • Remote work environment
  • Travel 20%

What You’ll Bring

  • Bachelor’s degree (four-year college or university) in IT or business, or equivalent combination of education and work experience
  • Five to ten (5-10) years of experience as a consultant within professional IT services
  • Deep experience with government compliance, including FISMA, FedRAMP, and DoD RMF
  • Strong knowledge of NIST Special Publications 800-30, 800-37, 800-53
  • Experience with every step within the delivery of Certification and Accreditation (C&A) / Assessment and Authorization (A&A) packages that have obtained and maintained full authorization to operate (ATO)
  • Experience with virtualization or cloud technologies
  • Familiarity with statutes and regulations across multiple industries relevant to IT (e.g. SOX 404, HIPAA, FedRAMP, GLB, Patriot Act)
  • Knowledge of information security related solutions, tools, and utilities
  • Excellent verbal and written skills
  • Willing to travel up to 20%

Must have an active CISSP and one of the following certifications:

  • Cisco Certified Network Associate Security (CCNA Security)
  • Cisco Certified Network Associate Cyber Security Operations (CCNA Cyber Ops)
  • Cybersecurity Analyst (CySA+)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Systems and Network Auditor (GSNA)
  • GIAC Certified Intrusion Analyst (GCIA)
  • Certified Information Systems Auditor (CISA)
  • Certified Information System Security Professional or Associate (CISSP or Associate)
  • Certified Secure Software Lifecycle Professional (CSSLP)
  • Certified Information Systems Security Officer (CISSO)
  • CyberSec First Responder (CFR)
  • CompTIA Advanced Security Practitioner Continuing Education (CASP+) Continuing Education (CE)
  • CompTIA Cloud+ (Cloud+)
  • Global Industrial Cyber Security Professional (GICSP)
  • Securing CiscoÂŽ Networks with Threat Detection Analysis (SCYBER)
  • BCR Cyber Technical Proficiency Testing Activity

Bonus Points

  • Hold Cloud Security focused certifications (AWS, Azure, CCSK, etc.)

$86,000 - $148,000 a year

The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.

Why You’ll Want to Join Us

At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.

Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.

At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at [email protected].

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Read the full description
Security L3 SOC Analyst / Incident Response Analyst at ProArch

L3 SOC analyst leads incident detection, investigation, and response to complex cybersecurity threats while coordinating cross-functional teams.

Senior Posted 6 days ago RemoteFirstJobs Product
What this role involves

About ProArch:

At ProArch, we partner with businesses around the world to turn big ideas into better outcomes through IT services that span cybersecurity, cloud, data, AI, and app development.

We’re 400+ team members strong across 3 countries (we call ourselves ProArchians)—and here’s what connects us all:

  • A love for solving real business problems
  • A belief in doing what’s right

What’s it like to work here?

  • You’ll keep growing. You’ll work alongside domain experts who love to share what they know.
  • You’ll be supported, heard, and trusted to make an impact.
  • You’ll take on projects that touch industries, communities, and lives.
  • You’ll have the time to focus on what matters most in your life outside of work.

At ProArch, you’ll be part of teams that design and deliver technology solutions solving real business challenges for our clients. With services spanning AI, Data, Application Development, Cybersecurity, Cloud & Infrastructure, and Industry Solutions, your work may involve building intelligent applications, securing business‑critical systems, or supporting cloud migrations and infrastructure modernization.

Every role here contributes to shaping outcomes for global clients and driving meaningful impact. You’ll collaborate with experts across data, AI, engineering, cloud, cybersecurity, and infrastructure—solving complex problems with creativity, precision, and purpose. You’ll join a culture rooted in technology, curiosity, and continuous learning. A place where we move fast, trust you to make an impact, encourage innovation, and support your growth.

About Position:

At ProArch, a leader in IT security consulting with presence in the US, UK, and India, we are looking for a skilled L3 SOC Analyst / Incident Response Analyst to join our Security Operations Center (SOC) team. In this critical role, you will be responsible for advanced incident detection, investigation, and response to complex cybersecurity threats. Leveraging your extensive experience and expertise, you will lead incident response activities, perform deep-dive analysis, and coordinate with cross-functional teams to mitigate risks and strengthen our security posture. If you thrive in a dynamic, fast-paced environment and are passionate about defending organizations against sophisticated cyber threats, this position is ideal for you.Role Summary

ProArch are seeking a highly skilled and technically strong L3 SOC Analyst / Incident Response Analyst to operate within a Managed Security Services Provider (MSSP) environment, supporting multiple customer environments across diverse industries.

This role is heavily focused on:

  • Incident Response
  • Threat Investigation
  • Detection Engineering
  • DFIR Operations
  • SOC Automation
  • Threat Hunting
  • Security Platform Engineering
  • Response Workflow Optimization

The ideal candidate combines strong incident response expertise, deep Microsoft security platform knowledge, hands-on detection engineering capability, and SOC automation experience within a fast-paced MSSP environment.

This is not a traditional alert-monitoring SOC Analyst role. The position requires strong investigative, analytical, and response-oriented cybersecurity capabilities.

Key Responsibilities

1. Incident Response & Threat Investigation

• Lead and support advanced security incident investigations across multiple customer environments

Perform:

  • Threat triage and validation
  • IOC analysis and threat correlation
  • Endpoint and identity investigations
  • Email security investigations
  • Cloud security incident analysis
  • Root cause analysis

Investigate and respond to:

  • Account compromise incidents

  • Business Email Compromise (BEC)

  • Malware and ransomware activity

  • Privilege escalation

  • Lateral movement activity

  • Suspicious cloud and identity-based attacks

  • Advanced phishing and social engineering campaigns

  • Coordinate containment, remediation, and recovery activities with customer and internal teams

  • Support high-severity incident escalation handling and response coordination

  • Provide detailed investigation findings, timelines, impact assessments, and response recommendations

  • Conduct proactive threat hunting and threat validation activities where required

  • Support digital forensics and evidence collection activities when applicable

2. Detection Engineering & SIEM Operations

Design, develop, and maintain advanced detection rules across:

  • Microsoft Sentinel
  • Microsoft Defender XDR

Develop and optimize:

  • KQL queries
  • Analytics rules
  • Correlation logic
  • Detection use cases

Perform:

  • Detection tuning

  • False positive reduction

  • Behavioral baselining

  • Threat-based detection improvements

  • Build and maintain reusable detection content and query libraries

  • Support proactive detection engineering initiatives aligned with emerging threats and attacker techniques

  • Leverage threat intelligence and MITRE ATT&CK mapping to improve detection coverage

3. SOC Automation & SOAR Engineering

Design and implement SOC automation workflows using:

  • Microsoft Sentinel Playbooks
  • Logic Apps
  • SOAR platforms
  • API-driven integrations

Build workflows for:

  • Alert enrichment

  • Incident routing

  • Automated containment actions

  • Threat intelligence enrichment

  • Ticket synchronization

  • Investigation acceleration

  • Develop scalable automation frameworks to improve SOC operational efficiency

  • Support continuous optimization of SOC workflows and automation coverage

  • Create automation standards and reusable workflow templates across customer environments

4. Microsoft Security Platform Operations

Provide hands-on operational support, investigation, tuning, administration, and engineering for:

  • Microsoft Defender for Endpoint (MDE)
  • Microsoft Defender XDR
  • Microsoft Defender for Identity (MDI)
  • Microsoft Defender for Office 365 (MDO)
  • Microsoft Defender for Cloud Apps (MDCA)
  • Microsoft Purview
  • Microsoft Identity Protection / Entra ID
  • Microsoft Sentinel

5. AI Security & Modern Threat Operations

Support detection and response activities related to:

  • AI-orchestrated attacks

  • Identity-based attacks

  • Cloud-native threats

  • Advanced phishing and social engineering campaigns

  • Leverage AI-assisted SOC operations and automation capabilities where applicable

  • Support modern detection strategies aligned with evolving attacker techniques

  • Evaluate opportunities to integrate AI-driven efficiencies into detection, investigation, and response workflows

6. Client & Operational Support

  • Participate in customer incident discussions and escalation calls when required

  • Support onboarding of new customer environments and security integrations

  • Maintain:

  • Investigation playbooks

  • SOPs

  • Workflow documentation

  • Operational runbooks

  • Detection documentation

Collaborate closely with:

  • SOC Operations

  • Security Engineering

  • Vendors

  • Consulting teams

  • Customer stakeholders

  • Support operational improvement initiatives across SOC and DFIR functions

Required Qualifications

Education

  • Bachelor’s Degree / Graduation in: Computer Science/Information Technology/Cybersecurity or related technical field is mandatory
  • Relevant cybersecurity and automation-focused certifications will be considered an added advantage.

Experience

  • 6-9 years of overall cybersecurity experience

Strong hands-on experience in:

  • Incident Response

  • Threat Investigation

  • SOC Operations

  • Detection Engineering

  • DFIR activities

  • Prior Incident Response Analyst experience is highly preferred

  • Experience working within MSSP environments preferred

  • Experience supporting or collaborating with US-based teams/vendors preferred

  • Proven hands-on experience with SOAR platforms in enterprise or MSSP environments

  • Strong experience designing and implementing SOC automation workflows from scratch

  • Experience supporting enterprise Security Operations Center (SOC) environments

  • Experience with detection engineering and SIEM rule development

Required Technical Skills

Security Platforms & Technologies

Strong hands-on experience with:

  • Microsoft Defender for Endpoint (MDE)
  • Microsoft Defender XDR
  • Microsoft Defender for Identity (MDI)
  • Microsoft Defender for Office 365 (MDO)
  • Microsoft Defender for Cloud Apps (MDCA)
  • Microsoft Purview
  • Microsoft Identity Protection / Entra ID
  • CrowdStrike Falcon
  • Threat Intelligence platforms
  • Microsoft Sentinel (Mandatory)
  • Defender XDR SIEM operations (Mandatory)
  • Graph API
  • Datto Autotask or equivalent ticketing systems
  • Email security solutions
  • Endpoint Detection & Response (EDR) platforms
  • Identity and authentication platforms
  • Cloud security technologies
  • Detection Engineering & Automation

Strong experience creating:

  • Detection rules
  • Analytics rules
  • KQL queries
  • Detection tuning and fine-tuning

Experience with:

  • SOC workflow design
  • SOC automation
  • SOAR engineering
  • API integrations
  • Workflow orchestration

Understanding of:

MITRE ATT&CK

  • Threat detection methodologies
  • Threat hunting methodologies
  • AI-driven attack techniques
  • AI use cases in SOC operations

Scripting & Technical Skills

Preferred experience with:

  • PowerShell
  • Python
  • REST APIs
  • Logic Apps
  • KQL (Mandatory)

Preferred Certifications

  • Microsoft SC-200
  • Microsoft SC-401
  • Microsoft AZ-500
  • Microsoft SC-900
  • Microsoft SC-100
  • CISSP
  • Security Automation / SOAR Automation / SOAR Certifications

Soft Skills & Work Style

  • Strong verbal and written communication skills with the ability to work effectively across technical and non-technical teams
  • Excellent collaboration and stakeholder coordination skills across SOC Operations, Engineering, Consulting, Vendors, and Leadership teams
  • Strong documentation and technical writing capabilities for investigations, workflows, SOPs, and operational procedures
  • Ability to work independently in a remote-first, multicultural, and fast-paced MSSP environment
  • Self-driven, proactive, and highly organized with strong ownership and accountability
  • Strong analytical, troubleshooting, and problem-solving skills
  • Comfortable managing multiple projects, priorities, and operational initiatives simultaneously
  • Team-oriented mindset with the ability to operate effectively as an individual contributor
  • Professional communication and coordination skills for working with US-based teams and vendors
  • Adaptable and flexible to evolving operational and business requirements

Working Model

  • Rotational Shift (US Business Hours or After Hours)
  • Remote-first operational model
  • Participation in on-call escalation rotation for critical incidents when required

What Success Looks Like

  • High-quality incident investigations and response handling
  • Improved detection fidelity and reduced false positives
  • Increased SOC automation coverage and operational efficiency
  • Faster containment and response coordination
  • Consistent and high-quality incident response across customer environments
  • Strong collaboration across SOC, Engineering, and Customer teams
  • Continuous improvement of detection, automation, and DFIR capabilities

Life @ ProArch

  • At ProArch, we believe our people are the key to our success. That’s why we foster an environment where every employee—known proudly as a ProArchian—can grow, thrive, and make a meaningful impact.
  • We empower employees to develop at their own pace through Career Pathways, a clear and supportive guide to professional progression.
  • Our culture is one of positivity, inclusivity, and respect. Titles don’t define how we treat each other— every ProArchian is valued equally, and collaboration across roles and teams is the norm.
  • We understand that great work starts with balance. That’s why we prioritize work-life harmony, offering flexible work schedules and encouraging time for what matters most.
  • Beyond the workplace, ProArchians actively give back—organizing volunteer efforts and charitable initiatives that empower the communities we call home.
  • And because we know that extraordinary efforts deserve recognition, we celebrate those who go above and beyond with appreciation programs.
  • At ProArch, we’re not just using technology to transform businesses— we’re using it to create a better experience for our people, our clients, and our communities.
Read the full description
Security Senior Network Security Engineer at GuidePoint Security

Design, implement, and maintain Comply-to-Connect deployment infrastructure while monitoring performance and supporting cybersecurity system accreditation for federal government agencies.

Senior Posted 6 days ago RemoteFirstJobs Product
What this role involves

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

About GuidePoint Security

GuidePoint Security is a leading cybersecurity solutions and services firm enabling federal government organizations to make smarter security decisions that minimize risk. With more than 800 vetted technology vendor partnerships and deep practitioner expertise across every major cybersecurity domain, GuidePoint serves more than half of the U.S. Government’s cabinet-level agencies across Civilian, DoD, and Intelligence Community segments, as well as Federal System Integrators and major defense prime contractors. We are growing our federal presales engineering team and looking for technically exceptional engineers who thrive at the intersection of federal mission and cybersecurity technology.

The Senior Network Security Engineer will engineer, design, and sustain Comply-to-Connect (C2C) deployment support to migrate and maintain critical services across unclassified and classified environments.

Key Responsibilities

  • Engineering, designing, and implementing C2C deployment support while managing the appliances, servers, and supporting infrastructure.
  • Coordinating with the network service provider to develop and maintain comprehensive network architecture diagrams.
  • Evaluating and recommending technology upgrades to address performance, standardization, and industry best practices.
  • Monitoring and investigating C2C performance and faults to recommend and implement necessary improvements.
  • Interacting with team members and customers at multiple levels to gather and coordinate vital technical information.
  • Supporting Assessment and Authorization (A&A) activities related to cybersecurity technologies and system accreditation.

Requirements

  • An active TS/SCI with Polygraph is required.
  • Bachelor’s degree or 4+ years of additional experience in lieu of a degree.
  • 5+ years of experience in Information Systems Security and/or Cyber Engineering.
  • Experience with technologies involved in large-scale enterprise deployments and data center environments.
  • Experience deploying enterprise security software products such as firewalls, IPS, Anti-Virus, and network management systems.
  • Knowledge of Windows and Linux systems, TCP/IP networking, 802.1x, and general network security concepts.
  • IAT Level II (GSEC, Security+, SSCP, or CCNA-Security) certification or the ability to obtain it within 6 months of hire.

Preferred Qualifications

  • Certified Information Systems Security Professional (CISSP) certification.
  • Experience implementing vendor-agnostic C2C capabilities and services within DoD engineering and sustainment environments.
  • Proficiency with Cisco Identity Services Engine (ISE) and tools such as Nmap, Nessus, and tcpdump.
  • Knowledge of Shell, Perl, and XML Scripting to automate security tasks.

Physical Qualifications

  • Must be able to remain in a stationary position 50%.
  • Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
  • Frequently communicates with co-workers, management, and customers, which may involve delivering presentations.
  • Must be able to exchange accurate information in these situations.

“ Applicants selected will be subject to a security investigation and must meet eligibility requirements for access to classified information.”

We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don’t miss updates on your application.

Why GuidePoint? GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,200 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.

Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.

This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.

Some added perks….

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option
Read the full description
Security Senior Information Security Engineer at NiCE

Designs, implements, and maintains security measures to protect systems, networks, and SaaS products through vulnerability management, incident response, and security operations.

Senior Posted 7 days ago RemoteFirstJobs Product
What this role involves

At NiCE, we don’t limit our challenges. We challenge our limits. Always. We’re ambitious. We’re game changers. And we play to win. We set the highest standards and execute beyond them. And if you’re like us, we can offer you the ultimate career opportunity that will light a fire within you.

At NICE, we don’t limit our challenges. We challenge our limits. Always. We’re ambitious. We’re game changers. And we play to win. We set the highest standards and execute beyond them. And if you’re like us, we can offer you the ultimate career opportunity that will light a fire within you.

So, what’s the role all about?

The ideal candidate will be responsible for designing, implementing, and maintaining security measures to protect our organization’s computer systems, networks, and SaaS products. This role requires a hands-on approach to identifying vulnerabilities, implementing solutions, and staying abreast of the latest security trends and technologies. The Senior Information Security Engineer will collaborate closely with cross-functional teams to ensure the confidentiality, integrity, and availability of our systems and data.

How will you make an impact?

  • Security Tooling: Deploy, maintain, integrate, and perform initial configuration of security tools.
  • Vulnerability Management: Coordinate and conduct regular security assessments, penetration testing, and vulnerability scans to identify and address security weaknesses proactively.
  • Incident Response: Lead incident response efforts to promptly detect, analyze, and mitigate security incidents and breaches. Develop and maintain incident response plans and procedures.
  • Security Operations: Monitor security logs and alerts, investigate suspicious activities, and respond to security events in real-time. Implement and maintain security tools and technologies to enhance our security posture.
  • Identity and Access Management: Manage user access controls, authentication mechanisms, and identity management systems to ensure appropriate levels of access and privilege.

Have you got what it takes?

  • At least 5 years of experience in information security, with a focus on hands-on security engineering and operations.
  • In-depth knowledge of networking protocols, operating systems, and cloud technologies.
  • Strong understanding of security principles, practices, and frameworks (e.g., PCI, NIST, ISO 27001).
  • Experience with security tools such as SIEM, IDS/IPS, endpoint protection, and penetration testing tools.
  • Experience with public cloud security, specifically AWS, Azure, and Google Cloud Platform (GCP).

You will have an advantage if you also have:

  • Relevant certifications such as CISSP, CISM, CEH, or cloud-specific certifications (e.g., AWS Certified Security – Specialty, Microsoft Certified: Azure Security Engineer Associate, Google Professional Cloud Security Engineer) are highly desirable.

What’s in it for you?

Join an ever-growing, market disrupting, global company where the teams – comprised of the best of the best – work in a fast-paced, collaborative, and creative environment! As the market leader, every day at NICE is a chance to learn and grow, and there are endless internal career opportunities across multiple roles, disciplines, domains, and locations. If you are passionate, innovative, and excited to constantly raise the bar, you may just be our next NICEr!

Enjoy NICE-FLEX!

At NICE, we work according to the NICE-FLEX hybrid model, which enables maximum flexibility: 2 days working from the office and 3 days of remote work, each week. Naturally, office days focus on face-to-face meetings, where teamwork and collaborative thinking generate innovation, new ideas, and a vibrant, interactive atmosphere.

About NICE

NICE Ltd. (NASDAQ: NICE) software products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences, fight financial crime and ensure public safety. Every day, NICE software manages more than 120 million customer interactions and monitors 3+ billion financial transactions.

Known as an innovation powerhouse that excels in AI, cloud and digital, NICE is consistently recognized as the market leader in its domains, with over 8,500 employees across 30+ countries.

NICE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation or any other category protected by law.

Requisition ID: 10996

Reporting into: Damon Hefner, Manager Information Security

Role Type: Individual Contributor

About NiCE

NICE Ltd. (NASDAQ: NICE) software products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences, fight financial crime and ensure public safety. Every day, NiCE software manages more than 120 million customer interactions and monitors 3+ billion financial transactions.

Known as an innovation powerhouse that excels in AI, cloud and digital, NiCE is consistently recognized as the market leader in its domains, with over 8,500 employees across 30+ countries.

NiCE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation or any other category protected by law.

Read the full description
Security Senior Security Engineer - SecOps (x,f,m) at Doctolib

Senior Security Engineer designs and deploys security infrastructure changes, builds SIEM detections, investigates incidents, and leads corporate IT security programs across identity, endpoint, and cloud systems.

Senior Posted 7 days ago RemoteFirstJobs Product
What this role involves

Set a new pulse for healthcare!

We are looking for a Senior Security Engineer to join the SecOps team at Doctolib.

Your mission will be to protect the infrastructure, identities, devices and platform that millions of patients and hundreds of thousands of health professionals rely on every day. You will work hands-on across the full corporate IT security perimeter (identity, endpoint, SaaS, network and cloud) in a highly regulated environment (HDS, ISO 27001, C5) where security directly impacts patient safety and trust in the healthcare system.

Working in the tech team at Doctolib means building innovative products and features to improve the daily lives of care teams and patients.

What you’ll do

Your responsibilities include but are not limited to:

  • Design and ship security changes as code, reviewed in pull requests like any production change, across our identity, endpoint, SaaS and network security stack
  • Build detections, dashboards and automated responses on top of our SIEM (Elastic), writing queries and continuously tuning alert quality
  • Drive corporate IT security programs from architecture to enforcement spanning Entra ID, CrowdStrike, Wiz, and Cloudflare
  • Investigate security incidents end-to-end and iterate on playbooks with each resolution cycle
  • Write proposals and run cross-team change management on major security initiatives, ensuring robust communication with stakeholders
  • Mentor junior engineers and contribute to platform security topics when initiatives span both the corporate and product perimeters

Who you are

Before you read on: if you don’t have the exact profile described below, but you feel this job description matches your skill set, we still encourage you to apply.

You’ll be a great fit if you:

  • Have 5+ years of hands-on experience in corporate, including at least 2 years at a senior level, with end-to-end ownership of multiple security domains (identity, endpoint, SaaS, network or detection) in production
  • Have strong daily mastery of GitHub, Terraform and AI coding assistants (Claude or equivalent) — you ship security work as code reviewed in PRs, and you use AI agents as a structural part of your workflow, not as an occasional helper
  • Have a solid detection engineering and SIEM background, and are comfortable writing queries and tuning alerts independently
  • Bring a pragmatic mindset and strong written communication skills, with the ability to make decisions under uncertainty and follow through on complex, cross-team initiatives
  • Are fluent in English (primary written working language); daily team conversations happen mostly in French, so being a French speaker or willing to learn is a strong plus

It would be fantastic if you:

  • Have curiosity for platform security topics (cloud, Kubernetes, supply chain) and a willingness to contribute beyond your core corporate IT perimeter
  • Bring prior experience in a regulated industry such as healthcare, fintech or the public sector

Life at Doctolib Tech

  • Our solutions are built on a single fully cloud-native platform that supports web and mobile app interfaces, multiple languages, and is adapted to country and healthcare specialty requirements.
  • Our stack is composed of Rails, TypeScript, Java, Python, Kotlin, Swift, and React Native.
  • We leverage AI ethically across our products to empower patients and health professionals. Discover our AI vision here.

Want to learn more about our tech culture and environment? Visit the Doctolib Tech site .

What we offer

  • Free comprehensive health insurance (basic package) for you and your children
  • 25 days of paid vacation per year, plus up to 14 days of RTT
  • Free mental health and coaching services through our partner Moka.care
  • Work from abroad for up to 10 days per year thanks to our flexibility days policy
  • Lunch vouchers (Swile card) worth €8.50 per working day, with €4.50 covered by Doctolib
  • A subsidy from the work council to refund part of the membership to a sport club or a creative class
  • 50% reimbursement of your public transport subscription
  • Parent Care Program: receive one additional month of leave on top of the legal parental leave
  • Enrollment in Doctolib’s long-term employee value sharing plan called DoctoGrowth
  • For caregivers and workers with disabilities, a package including an adaptation of the remote policy, extra days off for medical reasons, and psychological support
  • Relocation support in case of international mobility
  • Access to the best AI tools for coding, development and dedicated training

Our interview process

  • TA Screening
  • Technical Deep Dive with a take-home case study and debrief session
  • Behavioral Interview
  • Final Conversation with the Head of SecOps
  • At least one reference check

We want your experience to be clear, respectful, and transparent. Learn more about our hiring process on our candidate experience page.

Job details

  • Permanent position
  • Tech stack: Elastic, Entra ID, CrowdStrike, Wiz, Cloudflare, GitHub, Terraform
  • Full-time
  • Paris, France
  • Hybrid work setup (up to 2 remote days per week)
  • Start date: as soon as possible

We welcome everyone

At Doctolib, we are committed to improving access to healthcare for everyone. This translates into our recruitment process. We evaluate candidates based solely on qualifications and motivation, without any form of discrimination.

The more diverse ideas are heard, the more our product will truly improve healthcare for all. You are welcome to apply to Doctolib, regardless of your gender, religion, age, sexual orientation, ethnicity, or disability.

To ensure equal opportunities, we invite you to exclude personal information (e.g., pictures, age) from your applications. If you require any accommodation, please let us know for support during the hiring process.

Join us in building the healthcare we all dream of!

Your data privacy

All information provided is processed by Doctolib for application management. For data processing details, click here: France . Please contact hr.dataprivacy(at)doctolib.com for inquiries or to exercise your rights.

Read the full description
Security Senior Security Engineer- UK

Senior Security Engineer owns security initiatives and infrastructure protection for the organization's systems and data.

Senior Posted 8 days ago Jobicy AI
What this role involves
About the RoleHopper’s Security team is small by design and consequential by impact- and this role sits at the centre of it. As a Senior Security Engineer, you’ll own the...
Read the full description
Security Senior Security Engineer- Spain

Senior Security Engineer who owns security initiatives and drives impact within a specialized security team.

Senior Posted 8 days ago Jobicy AI
What this role involves
About the RoleHopper’s Security team is small by design and consequential by impact- and this role sits at the centre of it. As a Senior Security Engineer, you’ll own the...
Read the full description
Security Senior Application Security Engineer at GuidePoint Security

Implements and operationalizes application security testing tools within CI/CD pipelines, writes SAST rules, and helps secure the software development lifecycle.

Senior Posted 9 days ago RemoteFirstJobs Product
What this role involves

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

Required Experience:

  • Proficiency with the implementation, operationalization, and troubleshooting of Static Application Security Testing (SAST) tools such as Semgrep, Snyk, CodeQL, Checkmarx, Veracode, etc.
  • Understanding of Continuous Integration / Continuous Delivery (CI/CD) pipeline tools and processes (e.g. GitHub Actions, GitLab Runners, Azure DevOps, Jenkins, CircleCI, etc.)
  • Experience in software engineering, ideally full stack software development, including modern technologies and application architectures
  • Strong scripting and automation experience using one or more programming languages
  • Solid working knowledge of application security fundamentals including the OWASP Top 10, threat modeling, and implementing secure coding practices throughout the Software Development Lifecycle (SDLC)
  • Excellent written and verbal communication skills

Preferred:

  • Experience writing or adapting custom SAST rules (Semgrep or CodeQL)

  • Familiarity with additional Application Security tools (e.g. Interactive (IAST), Dynamic (DAST) and API security, SCA, etc.)

  • Familiarity with API Security tools (e.g., NoName, Traceable, Salt, Cequence)

  • Practical hands-on experience validating vulnerabilities and proficiency with Burp Suite

  • Strong working knowledge of Secure Development Lifecycles and experience triaging and remediating technical vulnerabilities identified by web application scanning tools

    • Understanding of automated security testing approaches and tools
    • Experience in building and operating security tools within CI/CD pipelines
    • Experience with proactive integration of security into the development process
  • Past experience as an application security practitioner or software engineer

Educational & Professional Credentials:

  • Bachelor’s degree in a relevant discipline or equivalent experience
  • 5-7 years of security engineering experience in the Information Security industry

We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don’t miss updates on your application.

Why GuidePoint? GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,200 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers.

Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity.

This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation.

Some added perks….

  • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions)
  • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options)
  • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans
  • 12 corporate holidays and a Flexible Time Off (FTO) program
  • Healthy mobile phone and home internet allowance
  • Eligibility for retirement plan after 2 months at open enrollment
  • Pet Benefit Option
Read the full description
Security Senior Security Engineer, Cloud, AI, Product Security

Senior security engineer who designs and implements cloud security, AI security, and product security measures to protect Instacart's infrastructure and systems.

Senior Posted 11 days ago Himalayas
What this role involves
We're transforming the grocery industryAt Instacart, we invite the world to share love through food because we believe everyone should have access to the food they love and more time to enjoy it together.
Read the full description