Job Closed
This listing is no longer active.
SecOps Engineer
Location
United States
Posted
85 days ago
Salary
$190K - $230K / year
Seniority
Mid Level
Job Description
SecOps Engineer
Altium
⚡️ Why Altium? Altium is transforming the way electronics are designed and built. From startups to world’s technology giants, our digital platforms give more power to PCB designers, supply chain, and manufacturing, letting them collaborate as never before. - Constant innovation has created a transformative technology, unique in its space - More than 30,000 companies and 100,000 electronics engineers worldwide use Altium - We are growing, debt-free, and financially strong, with the resources to become #1 in the EDA industry Why Duro? Duro is building the GitHub for Hardware teams. As now a part of the Altium product portfolio, we’re revolutionizing Product Lifecycle Management (PLM) for companies in space tech, robotics, IoT, and commercial manufacturing. Our platform empowers hardware teams to move with agility, make timely decisions, and build disruptive products. Our culture is built on: Trust, Autonomy, Experimentation, and Empathy. We deploy daily. We run 3-week cycles (2 weeks building + 1 week polish). We’re Linear stans, leveraging their AI agents to automate bug discovery and fixes. We measure everything through PostHog—feature flags, session replays, and product analytics all in one. About the role: Duro’s customers build satellites, drones, defense systems, and critical infrastructure. They operate under some of the most demanding security and compliance frameworks in the world—and they expect their PLM platform to meet them where they are. This role exists to make sure we do. As SecOps, you’ll be the single point of authority for security and compliance across Duro. This is not a back-office compliance role. You’ll be customer-facing—fielding tough questions from security teams at defense contractors, government agencies, and aerospace companies who believe they know the standards as well as you do. Your job is to know them better. To understand not just what the controls require, but why they exist, how they’ve evolved, and how Duro’s architecture satisfies them. You’ll own our compliance posture across SOC 2, NIST 800-171, NIST 800-53, CMMC, FedRAMP, ITAR, and GDPR. You’ll manage our evidence locker in SecureFrame, work with DevOps on infrastructure security in AWS GovCloud, coordinate with vendors, and represent Duro and Altium as a trusted security authority in every customer conversation. A day in the life of our SecOps Engineer: - Review and respond to customer security questionnaires, vendor assessments, and RFP security sections—often from defense, aerospace, and government customers with deep domain knowledge and high expectations - Join customer calls as Duro’s security authority—fielding technical questions on data handling, encryption, access controls, and compliance posture, and confidently addressing pushback with precise knowledge of the standards - Maintain and evolve our compliance programs across SOC 2 Type II, NIST 800-171, NIST 800-53, CMMC, FedRAMP, ITAR, and GDPR—not as a checkbox exercise, but as a living practice that adapts as frameworks evolve - Manage our evidence locker in SecureFrame—ensuring continuous readiness for audits, mapping controls to evidence, and keeping documentation current as our product and infrastructure change - Collaborate with DevOps on infrastructure security decisions: encryption at rest and in transit, network segmentation, access management, logging, and monitoring across AWS and GovCloud environments - Own the classification and handling of sensitive data—PII, CUI, ITAR-controlled technical data—ensuring our policies, systems, and team practices align with regulatory requirements - Evaluate and manage security vendors and third-party tools, reviewing SOC 2 reports, conducting risk assessments, and ensuring our supply chain meets the same standards we hold ourselves to - Drive security awareness across the organization—training engineering teams on secure development practices, data handling policies, and incident response procedures - Lead incident response planning and execution, including tabletop exercises, post-incident reviews, and continuous improvement of our response playbooks - Delegate and coordinate across teams—you’re not doing everything yourself, but you’re accountable for ensuring it gets done right, whether that’s a DevOps engineer implementing a control or a product manager understanding an ITAR restriction Who We’re Looking For: - 10+ years of experience in information security, security operations, or compliance—with direct experience in defense, aerospace, or government-adjacent industries - Deep, expert-level knowledge of SOC 2, NIST 800-171/800-53, CMMC, FedRAMP, ITAR, and GDPR—not just the controls, but the intent behind them and how they’ve evolved - Hands-on experience with compliance platforms like SecureFrame, Vanta, or Drata—including evidence management, continuous monitoring, and audit preparation - Strong understanding of cloud infrastructure security—particularly AWS and GovCloud environments, encryption at rest and in transit, IAM, VPC design, and logging/monitoring - Experience with data classification and handling—PII, CUI, ITAR-controlled data—and the ability to translate regulatory requirements into practical engineering guidance - Exceptional communication skills—you can explain a NIST control to a C-suite executive, defend your compliance posture to a DoD security auditor, and help an engineer understand why a particular data flow needs to change - A customer-facing presence—you’re comfortable in high-stakes conversations where customers challenge your security posture, and you respond with authority, precision, and patience - Ability to delegate and coordinate across engineering, DevOps, product, and external vendors—you own the outcomes, but you build through others How We Think About Security Security at Duro isn’t a department—it’s a commitment that runs through everything we build. Our customers trust us with their most sensitive product data: designs for defense systems, satellite components, and critical infrastructure. That trust is earned through competence, transparency, and rigor. We use AI extensively in how we build software—every engineer runs Claude Code as their primary development environment. As our security leader, you’ll help define the guardrails for how AI is used responsibly within our development workflows, ensuring that our velocity never comes at the expense of our security posture. We don’t want someone who recites frameworks. We want someone who understands the threat landscape our customers operate in, can anticipate where the standards are headed, and builds a security practice that stays ahead of both. Nice to Have - Relevant certifications: CISSP, CISM, CISA, CompTIA Security+, or CMMC Registered Practitioner (RP) - Experience with PLM, PDM, or hardware/manufacturing industry software - Background in achieving or maintaining FedRAMP authorization - Experience building a security program from the ground up at a startup or mid-size company - Familiarity with secure software development lifecycle (SSDLC) practices - Experience with penetration testing coordination and remediation management - Knowledge of export control regulations beyond ITAR (EAR, OFAC) The salary range for this role is $190,000 to $230,000 annually. Actual compensation packages within this range are based on a wide array of factors unique to each candidate and role requirements, including but not limited to skill set, years and depth of experience, certifications, and specific location. Our Benefits - 🏥 Medical, Dental, Vision Plans and HSA and FSA accounts - ❤️ Basic Life and AD&D insurance; disability coverage where applicable - 🌅 Retirement 401(k) Plan Option with Altium match - 🧘 Employee Assistance Program - 🏖 Paid holidays plus a “Choice Day” off per quarter - ✈️ Paid time-off on arising schedule upon key milestones - 🤒 Sick time for Dr. appointments or family health needs - 👶 Family medical, maternity, paternity, and military leave - 🏡 Flexible working arrangements available based on role and location - 🥳 Employee referral program - 🌍 Remote working abroad program - 📚 Professional development support and resources - 🥪 Free lunch, snacks, and drinks in the office - 🚗 Free parking 🌍 Also, we would like you to know We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, or veteran status. We are proud to be an equal opportunity workplace. 💡 Learn more about why a career at Altium is an opportunity like no other: https://www.youtube.com/watch?v=cAYCOLpPLPE ✈️ Altium Benefits: https://careers.altium.com/#s-benefits 👏 Are you already an Altium employee? Please apply directly through our internal Greenhouse job board. If you have questions, please contact HR.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
AI & Automation Engineer, Endpoint Systems
BeyondTrustProtect identities, stop threats, and deliver dynamic access to empower and secure a work-from-anywhere world.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We’re looking for an Endpoint Systems Engineer with a passion for AI & automation, within modern device management. In this role, you’ll design, deploy, and continuously improve endpoint solutions that are intelligent, scalable, and secure. You’ll move beyond reactive support by leveraging automation, data, and AI-driven tools to enhance user experience and operational efficiency across the enterprise. This is a hands-on engineering role for someone who enjoys building smart systems, eliminating repetitive work, and shaping the future of endpoint management. - Design, deploy, and manage modern endpoint environments across Windows & macOS. - Implement and maintain endpoint management platforms (e.g., Intune, Jamf) with a strong automation-first mindset. - Develop automation workflows using scripting, APIs, and orchestration tools to reduce manual effort and improve reliability. - Integrate AI-powered tools for endpoint analytics, remediation, security, and user experience optimization. - Build self-healing and self-service solutions for common endpoint issues. - Collaborate with security teams to enforce compliance, patching, and endpoint protection strategies. - Monitor endpoint health, performance, and telemetry to proactively identify and resolve issues. - Evaluate emerging AI and automation technologies and recommend improvements to endpoint strategy. - Create and maintain technical documentation, standards, and best practices. - Act as a technical escalation point. Qualifications - 4+ years of experience in endpoint engineering, desktop engineering, or EUC roles. - Strong experience with modern endpoint management and MDM/MAM platforms. - Proficiency in scripting and automation (PowerShell required; Python, Bash, or similar a plus). - Experience integrating systems via APIs and automating workflows. - Experience in working with Claude AI. - Solid understanding of endpoint security, identity, and device compliance. - Comfortable working in cloud-first and zero-trust environments. - Strong troubleshooting skills with the ability to think systemically. Requirements - Experience with AI-driven IT operations (AIOps), endpoint analytics, or autonomous remediation tools (Nice to Have). - Familiarity with tools such as Microsoft Copilot, Defender, Autopilot, Jamf Pro, or similar (Nice to Have). - Relevant certifications (Microsoft, Apple, Jamf, or cloud certifications) (Nice to Have). Who You Are - A builder’s mindset: you love automating yourself out of repetitive work. - Curiosity about how AI can improve IT operations and user experience. - Strong communication skills and the ability to explain complex ideas clearly. - A proactive, improvement-focused approach rather than reactive firefighting. - Comfort working in fast-changing, modern IT environments. Better Together Diversity. Inclusion. They’re more than just words for us. They are the guiding values of how we build our teams, cultivate leaders, and create a culture where people feel connected. We take care of our employees so they can take care of our customers. Customers who come from all walks of life just like us. We hire incredible people from diverse backgrounds because when we are different together, we are stronger together.
Health Information Specialist I
DatavantConnecting the world’s health data to improve patient outcomes.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description This role involves processing medical records and providing status updates to patients, insurance companies, and attorneys. - Receive and process requests for patient health information in accordance with Company and Facility policies and procedures. - Maintain confidentiality and security with all privileged information. - Maintain working knowledge of Company and facility software. - Adhere to the Company's and Customer facilities Code of Conduct and policies. - Inform manager of work, site difficulties, and/or fluctuating volumes. - Assist with additional work duties or responsibilities as evident or required. - Consistent application of medical privacy regulations to guard against unauthorized disclosure. - Responsible for managing patient health records. - Responsible for safeguarding patient records and ensuring compliance with HIPAA standards. - Prepares new patient charts, gathering documents and information from paper sources and/or electronic health record. - Ensures medical records are assembled in standard order and are accurate and complete. - Creates digital images of paperwork to be stored in the electronic medical record. - Responds to requests for patient records, both within the facility and by external sources, retrieving them and transmitting them appropriately. - Answering of inbound/outbound calls. - May assist with patient walk-ins. - May assist with administrative duties such as handling faxes, opening mail, and data entry. - Must meet productivity expectations as outlined at specific site. - May schedule pick-ups. - Other duties as assigned. Qualifications - High School Diploma or GED - Must be at least 18 years old. - Ability to commute between locations as needed. - Able to work overtime during peak seasons when required. - Basic computer proficiency. - Comfortable utilizing phones, fax machine, printers, and other general office equipment on a regular basis. - Professional verbal and written communication skills in the English language. Requirements - Preferred Customer Service and Data Entry and Release of Information experience. Benefits - Full Benefits: PTO, Health, Vision, and Dental Insurance - 401k Savings Plan with matching contributions - Tuition Reimbursement
Information Security Engineer - Incident Response
Lumen TechnologiesLumen Technologies is self-described as a global company of 40,000+ professionals empowering businesses, government, and communities to “produce amazing things.” Driven by the
About Lumen Lumen connects the world. We are igniting business growth by connecting people, data and applications – quickly, securely, and effortlessly. Together, we are building a culture and company from the people up – committed to teamwork, trust and transparency. People power progress. We’re looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future. The Role Cybersecurity Incident Response Team (CIRT) Engineers are expected to respond to and mitigate/remediate cybersecurity alerts from Lumen assets. CIRT Engineers research and recommend preventative measures in conjunction with managing reactive alerts. In addition, CIRT Engineers are responsible for evaluating current capabilities and predict future needs, then work with internal stakeholders, vendors, and peers to anticipate, define, and pursue these capabilities. Location This is a remote position open to candidates based anywhere in the US The Main Responsibilities - This position hours are Sunday through Wednesday, 2PM – 12AM Central - Respond to, remediate, and document information security incidents not limited to dashboard (Advanced Threat Appliance & SIEM) alerts, tickets, emails, or phone calls. - Actively hunt the enterprise for insecure, suspicious, or malicious activity. - Review data that is processed within the SIEM to find incident evidence and suspicious events as well as out of scope events. - Verify and validate security notifications from both internal and external sources. - Identify and resolve incidents that are not defined by (or deviate from) an existing incident response guide. - Assist with significant incidents as needed or assigned. - Provide feedback for development and consistency of automated threat detection mechanisms. - Update and maintain response guides for accuracy. - Support Security projects to improve Cyber Defense Team or Lumen's security posture. - Demonstrate effective communication skills, both verbal and written What We Look For in a Candidate Minimum Qualifications: - Undergraduate degree in computer science, engineering, or related field, or equivalent experience. - Solid understanding of information security fundamentals, host and network security hardening and requirements; networking protocols; common intrusion techniques; and common risk management concepts. - Analytical and problem-solving skills related to networking, operating systems, and malware analysis. - Candidate must possess, or be willing to pursue, applicable professional/technical certifications, such as Security +, C|EH, OSCP, - GCIH, CISSP, GPEN, GWAPT, GISEC, CISM or CISA. - Candidate must be US based and able to obtain government suitability. - Strong oral and written communication skills and comfort with presenting technical issues to all levels of management, as well as non-technical staff. - Experience with cloud security and cloud service providers (e.g., AWS, Azure, Google Cloud Platform). - Broad technical knowledge of current and emerging technologies. Preferred Qualifications: - 4+ years of experience in incident response, computer forensics security, risk assessments, application security or network security. - Experience in network and/or firewall engineering, administration, design and implementation including experience in applying methodologies and principles for all levels of security. - Understanding of the following tools: SIEM, IDS / IPS, host based anti-virus, or similar products. - Experience in network monitoring tools to monitor attacks/threats and doing the initial triage of findings. - Microsoft or UNIX (including Linux or other UNIX derivatives) operating system administration/support experience. - Experience with technologies, tools, and process controls to minimize risk and data exposure. - Development experience in scripting languages such as Python or Perl. - Experience in large enterprise or carrier data centers and/or networks. Compensation This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors. Location Based Pay Ranges: $67,703 - $90,270 in these states: AL, AR, AZ, FL, GA, IA, ID, IN, KS, KY, LA, ME, MO, MS, MT, ND, NE, NM, OH, OK, PA, SC, SD, TN, UT, VT, WI, WV, and WY. $71,088 - $94,784 in these states: CO, HI, MI, MN, NC, NH, NV, OR, and RI. $74,474 - $99,297 in these states: AK, CA, CT, DC, DE, IL, MA, MD, NJ, NY, TX, VA, and WA. Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process. Learn more about Lumen's: - Benefits - Bonus Structure `#LI-Remote Requisition #: 341490 Background Screening If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our FAQ page. Job-related concerns identified during the background screening may disqualify you from the new position or your current role. Background results will be evaluated on a case-by-case basis. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. Equal Employment Opportunities We are committed to providing equal employment opportunities to all persons regardless of race, color, ancestry, citizenship, national origin, religion, veteran status, disability, genetic characteristic or information, age, gender, sexual orientation, gender identity, gender expression, marital status, family status, pregnancy, or other legally protected status (collectively, “protected statuses”). We do not tolerate unlawful discrimination in any employment decisions, including recruiting, hiring, compensation, promotion, benefits, discipline, termination, job assignments or training. Privacy Notice Lumen is committed to protecting the privacy and security of personal information collected during the recruitment and hiring process. Our Privacy Notice explains how we collect, use, disclose, and protect applicant information, as well as how individuals may request access to or deletion of their personal data. To review Lumen’s Privacy Notice, please visit: https://jobs.lumen.com/global/en/privacy-notice Disclaimer The job responsibilities described above indicate the general nature and level of work performed by employees within this classification. It is not intended to include a comprehensive inventory of all duties and responsibilities for this job. Job duties and responsibilities are subject to change based on evolving business needs and conditions. In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information. Please be advised that Lumen does not require any form of payment from job applicants during the recruitment process. All legitimate job openings will be posted on our official website or communicated through official company email addresses. If you encounter any job offers that request payment in exchange for employment at Lumen, they are not for employment with us, but may relate to another company with a similar name.
Network Security Engineer III – Zscaler
Rackspace TechnologyWhere enterprise AI runs and outcomes scale
• Provide a high level of technical expertise to ensure the uptime and maintenance of critical networking systems • Take ownership of complex network issues and ensures they are resolved and/or successfully documented • Accept and take ownership through to resolution of issues escalated by other Network Operations Engineers • Create training and mentoring opportunities for other engineers • Identify and resolve technical issues including troubleshooting latency, packet loss, and poor performance • Respond to DDoS attacks • Identify and resolve switch and router hardware and software failures • Identify and escalate problems with networking platforms or technologies • Plan and conduct complex maintenances to ensure standardization and uptime • Manage Internet providers and connectivity



