Job Closed

This listing is no longer active.

Cutsforth Inc. logo
Cutsforth Inc.

Truly innovative, quality products for the Power Generation Industry designed to solve problems like never before.

Product Security Engineer

Security EngineerSecurity EngineerOtherRemoteLeadTeam 11-50H1B No SponsorCompany SiteLinkedIn

Location

California + 2 moreAll locations: California | Illinois | New York

Posted

120 days ago

Salary

$133K - $172K / year

Seniority

Lead

Bachelor Degree7 yrs expEnglishAzureIoTJavaPythonSplunk

Job Description

Product Security Engineer

Cutsforth Inc.

• Embed security best practices, such as encryption and authentication, directly into new products as part of the architecture and design process. • Identify vulnerabilities and security gaps during the design phase to present exploitation. • Define and enforce secure device architecture, including secure boot, hardware root of trust, device identity, and certificate-based authentication. • Own firmware security, including signing, update mechanisms, rollback protection, and vulnerability remediation. • Design and govern end-to-end encryption strategies spanning device, edge, and cloud. • Establish security requirements for low-cost hardware, balancing risk, cost, and operational constraints. • Conduct threat modeling for embedded systems, IoT protocols, and physical attack surfaces. • Partner with hardware, firmware, and manufacturing vendors to ensure supply-chain security controls. • Own product security incident response, including vulnerability triage, remediation coordination, customer communication, and post-incident reviews. • Manage coordinated vulnerability disclosure and CVE processes where applicable. • Lead Product Lifecycle Management security initiatives from concept throughout development, release, and maintenance. • Conduct product security testing and oversee penetration testing, vulnerability scans, and code reviews. • Define the product security strategic roadmap, goals, priorities, features and align product security with business objectives.

Job Requirements

  • Successfully pass background check for cybersecurity site access.
  • 7-15 years of hands-on cyber security experience within the software development lifecycle, including implementation of security controls, vulnerability management, or cloud security
  • Hands on experience with programming languages like Python, Java, C++, or Go.
  • Mastery of security tools like Burp Suite, Checkmarx, or SonarQube.
  • Security Frameworks – solid understanding of OWASP Top 10, NIST and SOC2 compliance
  • Specific familiarity with the NIST SSDF (SP 800-218) standard and experience developing products to meet requirements in this standard
  • Experience with Azure
  • 7+ years of experience with scripting automation for security tasks using Python
  • Practical experience with at least one major SIEM – Splunk
  • Strong analytical and problem-solving skills
  • Ability to clearly communicate technical risks and recommendations to both technical and non-technical stakeholders.
  • Detail oriented with good documentation habits.
  • Bachelor’s degree in computer science or cyber security or related field

Benefits

  • Medical, Vision, Dental Insurance
  • Health Savings Account with Employer contributions
  • 401(k) with Employer match
  • Short-term & Long-term Disability Coverage
  • Accidental Death & Dismemberment Coverage
  • Life Insurance Coverage
  • 80 hours of Paid-Time-Off annually
  • Eight paid holidays per year

Related Categories

Related Job Pages

More Security Engineer Jobs

World Cocoa Foundation logo

Senior Information Security Consultant

World Cocoa Foundation

Collaborating for a thriving cocoa sector: improving farmer income, reversing deforestation & combatting child labour.

Security Engineer120 days ago
Full TimeRemoteTeam 11-50Since 2000H1B No Sponsor

• Work with protocol, engineering, and privacy teams to provide guidance on security best practices and solutions • Lead cybersecurity and IT risk assessments, support the development, and provide recommendations on risk mitigations and control plans • Perform threat modelling and advise on solutions regarding crypto-related products • Develop and improve security standards and frameworks to meet future needs • Monitor and analyze emerging security trends • Deliver security training and awareness sessions tailored to various technical audiences

Germany
CrossVue logo

Workday HCM Consultant

CrossVue

CrossVue, a leading boutique consulting firm, connects the dots between technology, transformation, operations, and data analytics. Our team combines innovation with deep technical and industry expertise to solve complex business challenges. Leveraging our mastery of the Workday platform, we go beyond providing insights – we transform how enterprises view their operations. From human capital to financials, we deliver unparalleled transparency, empowering leaders with a clear, comprehensive view of their organization. Discover how we’re reshaping the future of business intelligence and how you can see clear across your enterprise at crossvue.com

Security Engineer120 days ago
OtherRemoteTeam 239

Imagine advising renowned clients across the country and implementing one of the world’s most innovative and leading cloud technologies. At CrossVue, that’s exactly what you’ll do – you’ll take part in a quickly growing Workday practice. As a Workday Services Partner, we offer full-suite services and provide our consultants with hands-on training and certification in Workday. We believe that happy employees deliver better results, so we strive to provide our employees with a meaningful work-life balance and invest in their professional development. By joining CrossVue you’ll be making a direct impact on our growing Workday practice, regularly taking part in: Advising key stakeholders through selection, transformation, implementation, and configuration of Workday. Our consultants are hands-on involved in full-scale implementation, project management, change management, requirements and design, process improvement, testing, integration enablement support, overseeing supplier enablement, and best practices competitive compensation packages that align with industry standards, ensuring that talented employees are fairly rewarded for their contributions We provide abundant opportunities for career development and growth, such as training programs, mentorship initiatives, and clear pathways for advancement We aim to cultivate a positive work environment that values collaboration, diversity, and open communication We promote work-life balance by offering flexible arrangements and encouraging our team to prioritize their well-being We offer continuous learning and skill development opportunities to keep employees engaged and equipped with the latest industry knowledge We have a strong leadership team that supports and empowers employees. Our leadership team strives to have transparent communication about organizational goals and decision Are you a Workday HCM expert ready to revolutionize how organizations manage their human capital? At CrossVue, we're not just another Workday partner – we're a specialized team of Workday enthusiasts dedicated to delivering exceptional results for our clients. As a boutique Workday Consulting firm, we offer our consultants the unique opportunity to work closely with a diverse range of clients, from Fortune 500 companies to innovative start-ups, all while enjoying the benefits of a close-knit, agile team! As a Workday HCM Consultant, you'll have the opportunity to: Drive success in full-cycle and phase X implementation projects across the Workday HCM product suite Deliver top-tier post-production support and innovative enhancement services to a diverse client base, from Fortune 500 companies to high-growth startups Guide clients through the intricate journey of selecting, transforming, implementing, and configuring the HCM module, working in synergy with our expert team Spearhead legacy data conversion initiatives, expertly scoping requirements, executing complex data transformations, and supporting end-user validation activities Orchestrate the advisory, planning, and implementation of HCM applications, translating client needs into robust solutions through meticulous documentation, process mapping, and data integration Cultivate strong client relationships through effective communication, delivering project updates and strategic recommendations with clarity and confidence Elevate client satisfaction by prioritizing their interests and proactively addressing needs, consistently exceeding expectations Foster a culture of knowledge sharing within our team, mentoring fellow consultants and contributing to the growth of our practice We're looking for someone with: 3+ years of recent Workday experience implementing HCM, including 1-2 large or 3-4 small end-to-end projects, demonstrating deep configuration knowledge Current Workday Pro HCM Services certification and at least one more Pro Services (implementer) certification Willingness to be certified in two or more Workday areas (e.g., Recruiting, Compensation, Talent), demonstrating a broad understanding of the Workday ecosystem and its interconnected modules Leadership experience on Workday HCM projects and ability to manage multiple implementations simultaneously (preferred) Strong attention to detail balanced with big-picture thinking, coupled with the ability to build client relationships and drive meaningful conversations Excellent communication and leadership skills, fostering collaboration and delivering complex concepts with clarity Aptitude for quick technology adoption, creativity in problem-solving, and flexibility in approach A blend of confidence, adaptability, and a great sense of humor to thrive in our dynamic environment Eligibility to work within the United States without sponsorship Pay Transparency: The salary range for this position is $80,000 - $185,000 per year. The salary range reflects the target pay range for this role. However, individual compensation will be determined based on several factors when extending an offer of employment, which include, but are not limited to work experience, qualifications, skills and location. Compensation ranges may be modified in the future, at the sole discretion of CrossVue. This role is also eligible for a performance-based incentive opportunity as well as the following benefits: Medical, Dental, and Vision Insurance Health Savings Account (HSA) Flexible Spending Accounts (FSA) Life & AD&D Insurance Short-Term & Long-Term Disability Insurance 401(k) Retirement Plan Employee Assistance Program (EAP) Telehealth Services Accident, Critical Illness, and Hospital Indemnity Insurance Pet Insurance & Discounts Please Note: We believe in finding the right fit for both the consultant and our team. Leveling is assessed throughout the interview process, and we're open to a variety of experience levels, backgrounds, and unique skillsets! A Note on Travel: Our approach to travel is different. Instead of the traditional Monday-Thursday grind, we thoughtfully schedule on-site client visits based on project needs and team well-being. Expect travel for this position to range from 25-30%, occasionally reaching up to 50% for critical project phases. #LI-REMOTE CrossVue is a contemporary consulting firm providing the blueprint for modernizing client operations and processes through Workday. As a leading Workday advisory, deployment, and post-production support firm, we drive critical results for our clients and help them reach their transformation goals through the Workday platform. For more information, visit www.crossvue.com.

United States
$80K - $185K / year
Job Closed
OtherRemoteTeam 1-10Since 2023H1B No Sponsor

• Deploy HIPAA aligned best practice security architecture across Microsoft 365 environment and Meraki based WAN. • Define, implement, and maintain administrative, technical, and physical security controls appropriate for a PACE organization. • Own security design decisions and control selection, balancing risk, regulatory requirements, and operational realities. • Security monitoring and incident response: configure and monitor tools, logs, and alerts, analyze activity, and investigate potential security incidents. • Serve as primary security escalation point for internal teams and external partners. • Lead incident response planning, tabletop exercises, post-incident reviews, and remediation tracking. • Perform vulnerability management activities, based on internal and external scans, and coordinate remediation activities. • Maintain an enterprise security risk register, including risk scoring, mitigation plans, and executive-level reporting. • Support business continuity and disaster recovery security requirements in partnership with IT and Operations. • Lead Access and Identify management, developing best practice procedures, and enabling others to work within these processes. • Oversee privileged access, role-based access controls, joiner/mover/leaver processes, and periodic access reviews. • Ensure appropriate data protection controls for PHI, including encryption, logging, and monitoring. • Draft, maintain, and enforce security policies, standards, and procedures aligned to HIPAA, NIST, and partner requirement. • Design and operate recurring security oversight and audit processes, including evidence collection and remediation tracking. • Lead and coordinate internal and external security audits, assessments, and partner security reviews. • Establish and manage a third-party security and risk management program, including vendor risk assessments and ongoing monitoring. • Partner closely with IT, Compliance, Legal, Clinical, and Operations teams to embed security into daily workflows.

California
$133K - $157K / year
Job Closed
Tenable logo

Senior Security Consultant

Tenable

Cloud Security | Operational Technology | Identity Security | and more

Security Engineer120 days ago
Full TimeRemoteTeam 1,001-5,000Since 2002H1B Sponsor

• The Senior Security Consultant brings advanced expertise in the design, implementation, and optimization of Tenable’s Exposure Management solutions. • The role involves leveraging Tenable technologies and applying deep industry knowledge and strategic insight to help organizations effectively manage and significantly reduce cyber risks. • The role will be responsible for crafting and delivering sophisticated, tailored solutions that address vulnerabilities across a client’s entire attack surface. • The Senior Consultant will also mentor junior consultants/contractors and contribute to the development of best practices, utilizing extensive experience to drive the success of client engagements. • Additionally, the role will further refine your skills across the complete Tenable portfolio through advanced hands-on experience, strategic shadowing, and high-level enablement initiatives provided by the Professional Services Organization. • Develop a deep understanding of the client’s business and unique security needs to deliver tailored engagements that exceed expectations. • Build and maintain positive relationships with clients, ensuring ongoing satisfaction and partnership. • Provide clients with continual insights and consultative advice based on experience with Tenable products, their industry, established standards, and best practices. • Provide expert guidance in designing, installing, configuring, and optimizing Tenable solutions, ensuring seamless integration with client's business and security objectives. • Lead upgrades and migrations, ensuring optimized performance with minimal disruption to operations. • Advise on best practices to streamline and enhance security workflows through Tenable solution optimization. • Support clients in developing, refining, and maintaining security policies and procedures, ensuring alignment with industry standards and regulatory requirements for optimal performance. • Share thought leadership on effective deployment and utilization of Tenable One solutions. • Guide clients in implementing best practices and developing Exposure Management Programs. • Assess user needs and customer requirements to advance the maturity of their Exposure Management program • Deliver additional value through continual insights and consultative advice based on Tenable products, client needs, industry standards, and best practices. • Provide thought leadership on methods and best practices for deploying and using Tenable One solutions. • Advise clients on process best practices and assist in developing Exposure Management Programs. • Research user needs and assess customer requirements to enhance the maturity of their Exposure Management program. • Ensure overall customer satisfaction while supporting delivery revenue objectives. • Execute large customer engagements, understanding client business and unique needs to exceed expectations. • Independently manage client escalations on assigned projects, coordinating with the delivery team and other Tenable departments as needed. • Develop and maintain positive client relationships and train client staff on the implementation, configuration, and best practices of the Tenable suite. • Support pre- and post-sale business development activities, including needs analysis, and assist the Services Account Management Team in identifying further revenue opportunities. • Collaborate with PS Portfolio, Principal Consultancy and Professional Services Domain Specialists to improve service offerings and product enhancements. • Perform other duties as assigned to support the success of the Professional Services team and the overall organisation.

India