Job Closed
This listing is no longer active.
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies. All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Operations Security Engineer I
Location
United States
Posted
87 days ago
Salary
0
Seniority
Mid Level
Job Description
Operations Security Engineer I
ASM Research
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description Enforces application security in all phases of the software development life cycle. Works closely with team members to define application security best practices, performs software architecture and design reviews, and supports the identification, interpretation, and remediation of vulnerabilities across a variety of applications, programming languages, and platforms. - Develops security procedures and methods to ensure the safety of information systems and to protect the system from intentional (unauthorized) or accidental (inadvertent) access or destruction. - Engineers, implements and monitors security measures for the protection of computer systems, networks and information. - Documents and implements Standard Operating Procedures (SOPs). - Serves as a liaison between development teams and stakeholders to understand and formulate complex security requirements for project/program. - Defines, maintains, and enforces application security best practices. - Identifies opportunities for process improvements and leads efforts to implement. - Evaluates new technologies and processes that enhance security capabilities. - Writes comprehensive reports including assessment-based findings, outcomes and propositions for further system security enhancement. - Identifies additional application security related tools, conducts tool analysis, and provides recommendations on what tools will enhance security protocols. - Performs and conducts penetration tests and manual/automated code reviews. - Creates and delivers training for developers and other relevant team members on Secure Code Development as well as other security protocols. - Designs, develops or recommends integrated system solutions ensuring proprietary/confidential data and systems are protected. Qualifications - Bachelor’s Degree in Computer Science, Engineering, or other Engineering or Technical discipline or equivalent relevant experience. Master’s Degree preferred. - 8-15 years of experience as an Application Security Developer, Application Security Analyst, or equivalent. Requirements - Expertise with application server technologies such as Spring Framework, Spring Security, Web Services, REST, and Hibernate. - In-depth knowledge of and experience with security technologies, single-sign-on and identity management technologies. - Expertise with web system security concepts, including authentication, authorization (RBAC), encryption/hashing, SAML, and LDAP. - Advanced knowledge of web application vulnerabilities such as cross-site scripting (XSS), sessions hijacking, SQL injection, CSRF (Cross-Site Request Forgery), OWASP Top 10, and other attack vectors. - Hands-on experience with encryption, hashing, secure random number generation, key derivation, digital signatures, etc. - Advanced knowledge of network based, system level and application layer attacks and mitigation methods, and TCP/IP, HTTP/S, and related protocols. - Experience with static code analysis tools including HP Fortify. - Familiarity with JavaScript, NodeJS, or other scripting languages and BurpSuite or other intercepting proxy tools. - Experience working with GIT source code management. - Must have solid working experience and knowledge of Unix/Linux operating system. - Experience with one or more of the following technologies: Vagrant, Chef, Rake, Gradle, Jenkins, and Cache DB. - Understanding of Agile/Scrum methodologies is preferred. - Experience with Axiomatics is preferred. Benefits - Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. - The compensation displayed for this role is a general guideline based on these factors and is unique to each role. - Monetary compensation is one component of ASM's overall compensation and benefits package for employees. EEO Requirements - It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. - We affirm our commitment to these fundamental policies. - All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. - All decisions on employment are made to abide by the principle of equal employment. Physical Requirements - The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. - Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions. Disclaimer The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
Job Requirements
- Bachelor’s Degree in Computer Science, Engineering, or other Engineering or Technical discipline or equivalent relevant experience. Master’s Degree preferred.
- 8-15 years of experience as an Application Security Developer, Application Security Analyst, or equivalent.
- Expertise with application server technologies such as Spring Framework, Spring Security, Web Services, REST, and Hibernate.
- In-depth knowledge of and experience with security technologies, single-sign-on and identity management technologies.
- Expertise with web system security concepts, including authentication, authorization (RBAC), encryption/hashing, SAML, and LDAP.
- Advanced knowledge of web application vulnerabilities such as cross-site scripting (XSS), sessions hijacking, SQL injection, CSRF (Cross-Site Request Forgery), OWASP Top 10, and other attack vectors.
- Hands-on experience with encryption, hashing, secure random number generation, key derivation, digital signatures, etc.
- Advanced knowledge of network based, system level and application layer attacks and mitigation methods, and TCP/IP, HTTP/S, and related protocols.
- Experience with static code analysis tools including HP Fortify.
- Familiarity with JavaScript, NodeJS, or other scripting languages and BurpSuite or other intercepting proxy tools.
- Experience working with GIT source code management.
- Must have solid working experience and knowledge of Unix/Linux operating system.
- Experience with one or more of the following technologies: Vagrant, Chef, Rake, Gradle, Jenkins, and Cache DB.
- Understanding of Agile/Scrum methodologies is preferred.
- Experience with Axiomatics is preferred.
Benefits
- Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience.
- The compensation displayed for this role is a general guideline based on these factors and is unique to each role.
- Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
- EEO Requirements
- It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions.
- We affirm our commitment to these fundamental policies.
- All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age.
- All decisions on employment are made to abide by the principle of equal employment.
- Physical Requirements
- The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job.
- Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
- Disclaimer
- The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Solutions Principal Consultant
World Wide Technology Healthcare SolutionsFounded in 1990, World Wide Technology (WWT) is a global systems integrator with $13.4 billion in annual revenue that provides digital strategy, innovative technology and supply chain solutions to large public and private organizations.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description The Principal Security Consultant – Palo Alto Networks is a senior technical and strategic role responsible for leading complex cybersecurity consulting engagements for enterprise and government clients. This individual leverages deep expertise across Palo Alto Networks security platforms to design and implement security architectures, guide client security strategy, and deliver measurable security outcomes. In addition to leading consulting engagements, the Principal Security Consultant contributes to the development of new service offerings, mentors consulting team members, and collaborates with sales teams to scope and deliver high-impact cybersecurity solutions. This role requires a combination of technical depth, consulting experience, and the ability to communicate effectively with both technical teams and executive leadership. The ideal candidate is an experienced cybersecurity professional with strong consulting expertise, deep knowledge of Palo Alto Networks technologies, and a proven ability to translate complex security challenges into practical solutions. Qualifications - 10+ years of cybersecurity experience - Minimum of 5 years in cybersecurity consulting, security architecture, or advisory roles - Proven experience leading complex cybersecurity consulting engagements - Demonstrated experience scoping consulting engagements, including defining delivery approach and level of effort - Experience leading cross-functional teams in the delivery of security consulting services - Strong ability to build trusted relationships with technical and executive stakeholders - Bachelor’s degree in Computer Science, Information Security, Engineering, Information Systems, or related field (or equivalent professional experience) - Excellent written and verbal communication skills - Ability to clearly explain complex security concepts to both technical and executive audiences - Strong consulting, presentation, and facilitation skills - Ability to manage multiple priorities in complex environments - Strong organizational and leadership capabilities - Proven ability to operate effectively in client environments Requirements - Palo Alto Networks Certified Network Security Engineer (PCNSE) - Palo Alto Networks SSE Engineer Specialist - Palo Alto Networks SD-WAN Engineer Specialist - Preferred: Palo Alto Networks Certified Cloud Security Engineer (PCCSE) - Preferred: Cortex XSOAR Engineer (PCSAE) - Preferred: Cortex XSIAM Engineer Specialist Benefits - Health and Wellbeing: Health, Dental, and Vision Care, Onsite Health Centers, Employee Assistance Program, Wellness program - Financial Benefits: Competitive pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Tuition Reimbursement - Paid Time Off: PTO and Sick Leave (starting at 20 days per year) & Holidays (10 per year), Parental Leave, Military Leave, Bereavement - Additional Perks: Nursing Mothers Benefits, Voluntary Legal, Pet Insurance, Employee Discount Program
Director of Information Security
AmeriVet Veterinary PartnersFounded in 2017 and based in San Antonio, Texas, AmeriVet Veterinary Partners supports veterinary practices nationwide by providing expertise in operations, mar
• Develop and lead AmeriVet’s enterprise information security strategy and roadmap. • Establish and maintain security policies, standards, and governance frameworks. • Partner with IT and business leaders to integrate security best practices into operations and technology initiatives. • Provide regular security risk reporting and recommendations to executive leadership. • Lead the IT/Info Sec GRC program, including risk assessments and control frameworks. • Ensure compliance with PCI DSS requirements and other applicable regulatory standards. • Oversee internal and external security audits, vulnerability assessments, and remediation efforts. • Manage third-party risk management and vendor security assessments. • Oversee enterprise Identity and Access Management (IAM) strategies and processes. • Implement and maintain Single Sign-On (SSO) solutions to improve both security and user experience across veterinary practices and corporate teams. • Establish access governance, provisioning, and role-based access controls across systems. • Oversee security monitoring and endpoint protection platforms including CrowdStrike. • Manage incident response processes, investigations, and remediation. • Partner with infrastructure and cloud teams to implement secure architecture and endpoint protection standards across all AmeriVet locations. • Develop and maintain an enterprise cybersecurity risk management program. • Lead the organization’s security incident response and recovery procedures. • Identify emerging threats and implement proactive mitigation strategies. • Maintain a security awareness program to educate corporate and practice teams on cybersecurity best practices. • Promote a strong security culture across AmeriVet.
Senior Staff Security Architect
ClouderaAt Cloudera, we believe that data can make what is impossible today, possible tomorrow.
• Lead the design and evolution of security architecture across hybrid environments, ensuring security by design is embedded into on-prem, cloud, application, data, and AI-enabled systems. • Serve as the primary authority for Security Architecture Reviews, evaluating new platforms, services, vendors, and architectural changes to identify material risk and define secure design patterns aligned with enterprise standards. • Define and maintain a consistent security posture across AWS, Azure, and GCP, including identity architecture, network segmentation, workload isolation, logging, and secure integration with on-premises environments. • Assess application architectures and data flows to identify security risks related to access control, data protection, trust boundaries, and dependency management, including modern cloud-native and AI-enabled applications. • Define security guardrails for AI-enabled capabilities, including LLM integrations, coding assistants, and automation platforms. Conduct targeted risk assessments focused on data exposure, misuse, and model interaction risks as part of broader architecture reviews. • Lead identity and access architecture initiatives, including Zero Trust principles and lifecycle management for human and non-human identities, ensuring consistent enforcement across hybrid environments. • Drive threat modeling and architectural risk analysis for complex systems, identifying cross-domain risks spanning network, identity, application, cloud, and AI components. • Promote security-as-code approaches by defining and enforcing architectural guardrails through automation (e.g., Terraform, policy-as-code, Python) to ensure consistency and scalability. • Act as a senior technical leader and mentor, influencing engineering teams through expertise, design guidance, and risk-based decision-making rather than direct authority. • Translate regulatory and framework requirements (e.g., NIST AI RMF, ISO 27001) into clear security requirements and enforceable architectural standards.
Are you looking for a company who believes in world-class employee culture and focuses on growing YOU professionally? Welcome to National Fire Experts, a leader in the property insurance intelligence industry. We are currently seeking a Part-Time Fire Investigator to join our growing team in Kansas City , KS. The Fire Investigator is responsible for studying fire and explosion scenes. They will do all the required studies and all other work necessary to determine the cause and origin of fires and explosions. They will convey their findings and conclusions to others clearly and concisely, usually through a written report. If necessary, they will defend their opinions in a court of law. What Does National Fire Experts Offer You? - Remote Schedule - Competitive Compensation Package - Bonus Opportunity - Career Growth - A Diverse & Positive Work Environment - Professional Development - Employee Referral Bonus - Medical, Vision, and Dental Insurance Coverage - 401K with Match - HSA and HRA (Employer contributions) - Paid Parental Leave - Company Paid Life Insurance - Company Paid Short-Term and Long-Term Disability - Tuition Reimbursement - Paid Time Off and Holidays Duties and Responsibilities: - Timely field visits to loss sites to conduct cause and origin investigations. - Provides honest and unbiased analysis and consultation on various fires and explosions. - Field studies and research on a daily basis. - Must travel to perform investigations within a 100-mile radius (further when required) from the assigned office. Depending upon the workload and distance traveled, occasional overnight travel may be required. - Will have close client interaction, often dealing with sensitive and confidential information. - Writes and submits detailed and accurate reports on completed investigations in a timely manner in accordance with company guidelines. - Will communicate with National Fire Experts' customers to provide timelines and project updates on a consistent basis. - Must be willing and able to provide expert testimony and/or depositions on an as needed basis. - Must be willing to work a flexible schedule during periods of peak business demand. - Will provide excellent customer service to both the company’s internal and external customers. - Perform other duties as assigned by management. Minimum Qualifications: - Must have CFEI certification through NAFI, or CFI certification through IAAI (preferred). - Must hold or have the ability to obtain a Private Investigator License in the state(s) in which they are assigned within 60 days of employment (if applicable). - Must be familiar with NFPA 921. - Must meet all the requirements for qualification as a fire investigator per NFPA 1033. - Previous expert testimony or deposition experience highly preferred but not required. - Degree or some college coursework is preferred but not required. - Must have at least 2 years of hands on experience working in the public and/or private sectors performing fire origin and cause investigations on residential and commercial structures. - Must be well organized with the ability to deliver fast and accurate turnaround times. - Must be able to handle multiple project workload and periods of high stress, especially during times of peak business demand. - Must be hands-on and able to climb ladders and roofs, crawl in tight spaces, etc. as needed to perform investigations. - Will work projects that are assigned to them unless sufficient hazards are identified utilizing National Fire Experts' Safety Protocol guidelines and JSA’s. - Meet all standards for pre-employment physical examination. - Excellent written and verbal communication skills. - Must be team-oriented and service-oriented. - Must have a valid driver’s license with an acceptable driving record in accordance with the firm’s guidelines. - Must have superior customer service skills. - Must always conduct business in an honest and ethical fashion. - Experience with writing detailed investigation reports is highly preferred. - Must have excellent overall computer skills. - Must meet or exceed company aptitude standards regarding computer and technical proficiency. - Must have the ability to work efficiently with little or no supervision. - Must be willing to travel and/or work a flexible schedule during periods of peak demand. - Must have the willingness to work remotely and from home office. - Must have employee-provided, high-speed internet that is reliable and accessible at remote office Physical Requirements: - Frequently required to stand on one’s feet for prolonged periods of time. - Frequently required to lift and/or move objects weighing up to 100 lbs. - Frequently required to climb onto roofs, ascend/descend ladders, stairs, scaffolding, ramps, etc. - Frequently required to balance, stoop, kneel, crouch, climb, and crawl. - Frequently required to reach with hands and arms. - Frequently required to spend extended periods of time operating a motor vehicle. - Frequently required to use hands to finger, handle, or feel. To learn more about us visit https://nationalfireexperts.com/. National Fire Experts are committed to creating a diverse environment and is proud to be an equal opportunity employer. We are an E-Verify participating employer.

