Job Closed
This listing is no longer active.
z/OS Systems Security Administrator
Location
United States
Posted
86 days ago
Salary
0
Seniority
Senior
Job Description
z/OS Systems Security Administrator
NOVA Corporation
• Ensure that all information systems are managed, operated, and used IAW DISA STIGS and other applicable policies and procedures. • Support all ACPs (ACF2, RACF and CA TSS) utilized by the information systems. • Provide access control and account provisioning for all information systems. • Use DISA approved tools to plan, conduct, review, analyze, and correct findings in support of STIG reviews SRR. • Provide audit and inspection support for the government to include providing artifacts and evidence. • Support COOP exercises (Simulated and Table Top) exercises. • Grant and maintain access and account profiles for both individual and system resources. • Promptly report security violations IAW with specific security requirements for reporting incidents and violations. • Use DISA approved tools and follow policies for Change, Incident and Service Requests.
Job Requirements
- Must have an Active Secret clearance.
- Must currently possess one of the IAT Level 2 certifications: CCNA-Security CSA+ GICSP CompTIA Security+ CE SSCP
Benefits
- N/A
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior IT Security Engineer
EnsonoEnsono delivers complete Hybrid IT solutions, from mainframe to cloud, tailored to each client’s journey.
• Design, implement, and administer enterprise information security solutions. • Serve as a Tier‑3 escalation point for monitoring and responding to security incidents. • Implement controls and processes to meet internal and customer audit requirements. • Develop internal and customer‑facing security standards, policies, and procedures. • Execute incident response activities in accordance with the Ensono Incident Response Plan. • Evaluate, test, and deploy security application upgrades and patches. • Deliver consultative expertise on emerging threats, vulnerabilities, and risk mitigation strategies. • Document project plans, including timelines, milestones, and deliverables. • Mentor new and existing members of the security organization. • Provide recommendations and contribute to the development of security product roadmaps. • Partner with product owners to ensure alignment between solutions and security product offerings.
• Implement and maintain cloud security frameworks • Ensure compliance with NIST 800-53 Rev. 5, FedRAMP, and DoD IL-4/IL-5 security mandates • Configure and manage Identity and Access Management (IAM) solutions • Conduct vulnerability assessments, security monitoring, and incident response • Develop and maintain System Security Plans (SSP), Security Assessment Reports (SAR), and Plans of Action & Milestones (POA&M)
Role Overview NetBox Labs is hiring a Director of Security & IT to lead and scale security across our products, platform, AI initiatives, and corporate environment. Reporting to the CTO, this is a technical leadership role that owns DevSecOps, Product Security, AI Security & Risk, and Corporate IT / GRC. You will define how we build secure software, operate secure infrastructure, adopt AI responsibly, and run a mature internal IT and compliance function. This is not a governance-only CISO role; it is a leadership role embedded alongside engineering that shapes long-term security direction. What You’ll Do Security Architecture & Platform Strategy - Define and continuously evolve security architecture across our multi-tenant SaaS platform, on-prem product, and distributed agent systems. - Establish security design principles for multi-tenant isolation, IAM, secrets management, and cloud boundaries. - Embed security into engineering workflows through strong partnership with Engineering Directors and Principal Engineers. - Own governance, risk, and compliance strategy, including SOC 2 maturity and audit readiness. Own AI Security & Risk - Treat AI security as a first-class security domain and partner with our AI leaders to shape secure AI product strategy from inception. - Define guardrails for internal AI usage, including data access boundaries, vendor risk, model retention policies, and prompt leakage risks. - Anticipate how AI changes privilege models, data routing, and attack surface area. - Ensure AI adoption increases leverage without creating uncontrolled data exposure. Lead DevSecOps & Security Engineering - Define how security is embedded into CI/CD pipelines, infrastructure-as-code, identity systems, secrets management, and software supply chain workflows in partnership with platform and product engineering teams. - Guide the design of logging, detection, and response capabilities across our cloud and developer environments. - Oversee penetration testing programs and ensure findings translate into durable engineering improvements. - Build and grow the DevSecOps capability over time, including hiring dedicated engineers to own security tooling and automation. Lead Corporate IT & Governance, Risk & Compliance - Directly manage and coach the IT/InfoSec Manager and help mature the corporate IT, governance, risk, and compliance function. - Ensure endpoint security, vendor access, onboarding/offboarding, and internal systems meet strong security standards. - Align IT operations and compliance processes with engineering-driven security architecture. Required Experience - 10+ years in security, security engineering, or infrastructure/platform engineering roles. - Experience leading or building security programs in a high-growth B2B SaaS company. - Experience leading or mentoring security or infrastructure engineers. - Strong understanding of modern cloud and platform architectures and how security integrates into them. - Experience partnering closely with engineering teams to embed security into software development and infrastructure workflows. - Experience securing multi-tenant SaaS products and customer-facing platforms. - Experience operating within security and compliance frameworks such as SOC 2. - Ability to translate security risk into pragmatic engineering decisions and business tradeoffs. - Demonstrated hands-on use of modern AI tools internally or in product contexts, with a proactive and progressive approach to identifying and addressing emerging AI security risks. - Experience scaling security functions in a 50+ engineer organization. Nice to Have - Experience securing distributed agent-based or edge systems. - Experience with model vendor risk and data retention controls. - Familiarity with observability systems and telemetry pipelines. - Background in networking or infrastructure automation. - Experience scaling security functions in a 50+ engineer organization. Our culture and values: - We own and solve problems with high attention to detail. - Our open source contributors, users, customers & team are all part of our community. When our community wins, we win. - We prioritize simplicity and think twice before adding complexity - Clear communication helps keep our team aligned and collaborating smoothly. About NetBox Labs: NetBox Labs helps companies build and manage complex networks. We help customers accelerate network automation by delivering open, composable products and supporting the network automation community. NetBox Labs is the commercial steward of open source NetBox, the world’s most popular network source of truth, and Orb, the next-generation open source network observability platform. Our products include NetBox Enterprise, a fully supported self-managed NetBox with advanced features, and NetBox Cloud, a secure, scalable, and reliable SaaS edition of NetBox. NetBox powers thousands of companies, and NetBox Labs is backed by investment from Notable Capital (formerly GGV), Grafana Labs CEO Raj Dutt, Flybridge, IBM, Salesforce Ventures, and Mango Capital.
Cybersecurity Specialist - Insider Threat
Cleveland ClinicYour source for health news, tips and information from one of the nation’s top hospitals.
At Cleveland Clinic Health System, we believe in a better future for healthcare. And each of us is responsible for honoring our commitment to excellence, pushing the boundaries and transforming the patient experience, every day. We all have the power to help, heal and change lives — beginning with our own. That’s the power of the Cleveland Clinic Health System team, and The Power of Every One. Job Title Cybersecurity Specialist - Insider Threat Location Cleveland Facility Remote Location Department Cybersecurity Intelligence-Information Tech Div Job Code T98512 Shift Days + Call Schedule 8:00am-5:00pm Job Summary Job Details Join the Cleveland Clinic team, where you will work alongside passionate caregivers and provide patient-first healthcare. Cleveland Clinic is recognized as one of the top hospitals in the nation. At Cleveland Clinic, you will receive endless support and appreciation and build a rewarding career with one of the most respected healthcare organizations in the world. As a Cybersecurity Specialist, you will perform essential duties to safeguard digital assets and protect systems from intentional or inadvertent access. Under the supervision of the Manager of Cybersecurity Intelligence and support of your teammates, you will lead efforts to identify, investigate, and mitigate potential insider risks to protect Cleveland Clinic’s patients, assets, data, and reputation. This is a remote position, with caregivers working days + on-call shifts from 8:00 a.m. – 5:00 p.m. A caregiver who excels in this role will: - Independently conduct end-to-end insider risk investigations while working closely with Legal, Human Resources, Cybersecurity Operations, and other cross-functional teams. - Use monitoring and detection platforms to investigate anomalous activity for potential insider risk. - Conduct interviews with potential insiders. - Serve as the subject matter expert for insider risk and provide training to team members as needed. - Leverage AI tools to accelerate investigation workflows and data analysis. - Prepare investigation metrics, reports, and briefings. - Develop and maintain playbooks, standard operating procedures, and guideline documentation. - Support education and awareness programs to foster a strong security culture. Minimum qualifications for the ideal future caregiver include: - High School diploma/GED and seven years of Information, Clinical or Financial Systems experience required, including directing, planning and scheduling a major information system project, with three years of Cyber Security experience - OR Bachelor’s Degree and five years of Information, Clinical or Financial Systems experience required, including directing, planning and scheduling a major information system project, with three years of Cyber Security experience - Demonstrated ability to communicate technical concepts to non-technical stakeholders. - Experience leveraging DLP, UEBA, SIEM, EDR/XDR and SOAR platforms for complex investigations. - Familiarity with MITRE ATT&CK, NIST, HIPAA, GDPR, and ISO 27001. - Hands on scripting experience (Python, PowerShell, KQL, etc.) to collect artifacts, enrich detections and automate investigate workflows. - For Information Technology Division caregivers, ITIL Foundations certification is required within 6 months of position start date Preferred qualifications for the ideal future caregiver include: - Experience coordinating with internal and external counsel and eDiscovery providers. - Experience conducting OSINT investigations. - Industry certifications such as GCIH, GCFR, GCFA, GNFA, CEH, CFE, CCE, CFCE, CHFI, or equivalent advanced certifications. Physical Requirements: - Ability to perform work in a stationary position for extended periods. - Ability to travel throughout the hospital system. - Ability to operate a computer and other office equipment. - Ability to communicate and exchange accurate information. Personal Protective Equipment: - Follows standard precautions using personal protective equipment as required. The policy of Cleveland Clinic Health System and its system hospitals (Cleveland Clinic Health System) is to provide equal opportunity to all of our caregivers and applicants for employment in our drug free environment. All offers of employment are followed by testing for controlled substances. Cleveland Clinic Health System administers an influenza prevention program. You will be required to comply with this program, which will include obtaining an influenza vaccination on an annual basis or obtaining an approved exemption. Decisions concerning employment, transfers and promotions are made upon the basis of the best qualified candidate without regard to color, race, religion, national origin, age, sex, sexual orientation, marital status, ancestry, status as a disabled or Vietnam era veteran or any other characteristic protected by law. Information provided on this application may be shared with any Cleveland Clinic Health System facility. If applying for a Florida position, please see the following website for more information on the background screening requirements required by the Agency of Health Care Administration: https://info.flclearinghouse.com/ Please review the Equal Employment Opportunity poster. Cleveland Clinic is pleased to be an equal employment opportunity employer.




