Job Closed

This listing is no longer active.

Manpower/itec logo
Manpower/itec

Since 1999, ITEC has delivered mission-critical support to the DoD and Intelligence Community. Now part of ManpowerGroup Public Sector (MGPS), we continue that work with expanded capabilities.

CIRT Detection Engineer

Location

United States

Posted

70 days ago

Salary

0

Seniority

Mid Level

Job Description

CIRT Detection Engineer

Manpower/itec

Role Description We are seeking a CIRT Detection Engineer who will be responsible for identifying and developing audit logging and monitoring detections for systems/applications. - Confirm stakeholder requirements. - Collaborate with IT project team and CIRT to design, engineer and implement security initiatives for audit logging and monitoring. - Develop Detection Logic: Create, implement, and maintain custom detection rules and signatures in the Security Information and Event Management (SIEM) Sentinel Solution. - Collaborate with project and operations teams to provide recommendations to increase the organization's security posture and ensure industry and government standard(s) compliance. - Work with project team to tune detections to raise security-relevant events to the triage and response team. - Conduct risk assessments and validate solutions confirming functionality and tools comply with security controls. - Document solutions, recommendations, test results as needed. - Identify issues as they arise and provide potential solutions. Qualifications - SIEM/Sentinel – Advanced - Cloud Security – Advanced - NIST-800-171 – Advanced - Python Scripting – Intermediate - Deep knowledge of operating systems (Windows, Linux, macOS), cloud infrastructure, network protocols, and the location of critical logs - Advanced Requirements - Information Security – Advanced - Application Security – Intermediate - Data Loss Prevention (DLP) – Intermediate - Agile methodologies - Intermediate Benefits - Comprehensive benefits package - Competitive pay Company Description Since 1999, ITEC has delivered mission-critical support to the DoD and Intelligence Community. Now part of ManpowerGroup Public Sector (MGPS), we continue that work with expanded capabilities.

Job Requirements

  • SIEM/Sentinel – Advanced
  • Cloud Security – Advanced
  • NIST-800-171 – Advanced
  • Python Scripting – Intermediate
  • Deep knowledge of operating systems (Windows, Linux, macOS), cloud infrastructure, network protocols, and the location of critical logs - Advanced
  • Information Security – Advanced
  • Application Security – Intermediate
  • Data Loss Prevention (DLP) – Intermediate
  • Agile methodologies - Intermediate

Benefits

  • Comprehensive benefits package
  • Competitive pay

Related Categories

Related Job Pages

More Security Engineer Jobs

Livingston International logo

Systems Security Engineer

Livingston International

We provide clarity in a world of trade complexity so that businesses can grow further, faster, smarter.

OtherRemoteTeam 1,001-5,000Since 1945H1B No Sponsor

• Implement and maintain system hardening standards across servers, endpoints, and network appliances • Monitor and analyze logs for indicators of compromise and system vulnerabilities • Support vulnerability and patch management efforts, and remediation workflows • Assist in the deployment and tuning of security technologies across infrastructure • Develop and maintain secure configurations and perform regular audits for compliance with internal policies and frameworks • Participate in incident response activities and forensic investigations

United States
Job Closed
ServiceNow logo

Staff Security & Compliance Engineer- M365 GCCH/ CMMC

ServiceNow

As the AI platform for business transformation, we're putting AI to work across organizations — freeing people for work that matters. Making old tech work with new tech. Reaching across departments, from the front office to the back office and every office in between. Our ambition? To become the AI defining enterprise software company of the 21st century (or "AI DESCO21C," as we like to call it). With more than 8,100+ customers, we serve approximately 85% of the Fortune 500®, and we're proud to be a Fortune 100 Best Companies to Work For® and World's Most Admired Companies™. Explore your future career with us, visit www.servicenow.com/careers. From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license.

OtherRemoteTeam 10,001+Since 2004H1B Sponsor

Company Description It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today - ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone. Job Description About the team: We are the backbone of Microsoft-powered collaboration at ServiceNow. Our team owns and manages the organization's Microsoft infrastructure - spanning Outlook, SharePoint, OneDrive, Microsoft Teams, and the broader collaboration ecosystem - ensuring employees have the tools, access, and experience they need to work seamlessly. Beyond keeping the lights on, we take a strong stance on security and governance within the Microsoft environment. From access controls and data policies to compliance frameworks, we ensure our collaboration platforms are not just productive - but safe, compliant, and built to scale. Whether it's enabling the workforce through modern collaboration tools or safeguarding the integrity of our Microsoft ecosystem, the DT Collaboration team sits at the intersection of productivity and trust. About the role: We are seeking a senior individual contributor to lead the technical design, implementation, and ongoing security operations of a Microsoft 365 GCC High environment supporting Controlled Unclassified Information (CUI). This role is accountable for implementing and evidencing compliance with CMMC Level 2, DFARS 7012, and NIST 800-171 controls. The engineer will act as the technical owner of the GCC High enclave, partnering with Security, Legal, and IT to ensure audit readiness and successful certification by May 2026. This role requires independent execution, deep security expertise, and the ability to translate regulatory requirements into enforceable technical controls. The impact you'll make: Architecture & Tenant Build - Lead GCC High tenant design and deployment - Define secure architecture for: - Entra ID (Azure AD) - Exchange Online - SharePoint/OneDrive - Teams - Intune - Defender Suite - Purview Compliance - Establish Zero Trust and least-privilege administrative model - Design CUI boundary protections and data segmentation Compliance Implementation (CMMC/NIST 800-171) - Map CMMC practices to technical controls and configurations - Develop and maintain: - System Security Plan (SSP) - Control narratives - Evidence repository - POA&M - Implement: - MFA/Conditional Access - Device compliance & endpoint hardening - Logging/monitoring/SIEM integration - DLP & data classification - Incident response workflows - Lead readiness reviews and assessment preparation with C3PAOs Security Operations - Own security baselines and tenant hardening - Manage vulnerability remediation lifecycle - Oversee incident investigations and root cause analysis - Establish monitoring, alerting, and audit logging standards - Drive continuous improvement of controls Cross-Functional Leadership (IC4 Scope) - Serve as technical authority for GCC High security decisions - Provide guidance to operations engineers and offshore support - Partner with Legal/Compliance on regulatory interpretation - Present risk posture and compliance metrics to leadership - Mentor junior engineers (without direct management responsibility) Qualifications - U.S. Person (citizen or permanent resident) - required for GCC High/CUI access. - 6-10+ years Microsoft 365/Azure security engineering experience. - Hands-on implementation of GCC High or FedRAMP/DoD environments. - Direct experience with: - CMMC or NIST 800-171 control implementation - Intune & endpoint security - Entra ID Conditional Access/PIM - Defender suite - Purview (DLP/eDiscovery/Insider Risk) - Experience preparing for security audits or assessments. - Strong technical documentation skills. Extras: - CISSP, CISM, or Security+ - Microsoft SC-100, SC-200, SC-300, MS-102 - Gov/DoD contracting environment experience For positions in this location, we offer a base pay of $131,600 - $230,300, plus equity (when applicable), variable/incentive compensation and benefits. Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. Please note that the base pay shown is a guideline, and individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. We also offer health plans, including flexible spending accounts, a 401(k) Plan with company match, ESPP, matching donations, a flexible time away plan and family leave programs. Compensation is based on the geographic location in which the role is located and is subject to change based on work location. Additional Information Work Personas We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here . To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service. Equal Opportunity Employer ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. Accommodations We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact globaltalentss@servicenow.com for assistance. Export Control Regulations For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license.

California
$131.6K - $230.3K / year
Job Closed
ServiceNow logo

Staff Security & Compliance Engineer- M365 GCCH/ CMMC

ServiceNow

As the AI platform for business transformation, we're putting AI to work across organizations — freeing people for work that matters. Making old tech work with new tech. Reaching across departments, from the front office to the back office and every office in between. Our ambition? To become the AI defining enterprise software company of the 21st century (or "AI DESCO21C," as we like to call it). With more than 8,100+ customers, we serve approximately 85% of the Fortune 500®, and we're proud to be a Fortune 100 Best Companies to Work For® and World's Most Admired Companies™. Explore your future career with us, visit www.servicenow.com/careers. From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license.

OtherRemoteTeam 10,001+Since 2004H1B Sponsor

Company Description It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today - ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone. Job Description About the team: We are the backbone of Microsoft-powered collaboration at ServiceNow. Our team owns and manages the organization's Microsoft infrastructure - spanning Outlook, SharePoint, OneDrive, Microsoft Teams, and the broader collaboration ecosystem - ensuring employees have the tools, access, and experience they need to work seamlessly. Beyond keeping the lights on, we take a strong stance on security and governance within the Microsoft environment. From access controls and data policies to compliance frameworks, we ensure our collaboration platforms are not just productive - but safe, compliant, and built to scale. Whether it's enabling the workforce through modern collaboration tools or safeguarding the integrity of our Microsoft ecosystem, the DT Collaboration team sits at the intersection of productivity and trust. About the role: We are seeking a senior individual contributor to lead the technical design, implementation, and ongoing security operations of a Microsoft 365 GCC High environment supporting Controlled Unclassified Information (CUI). This role is accountable for implementing and evidencing compliance with CMMC Level 2, DFARS 7012, and NIST 800-171 controls. The engineer will act as the technical owner of the GCC High enclave, partnering with Security, Legal, and IT to ensure audit readiness and successful certification by May 2026. This role requires independent execution, deep security expertise, and the ability to translate regulatory requirements into enforceable technical controls. The impact you'll make: Architecture & Tenant Build - Lead GCC High tenant design and deployment - Define secure architecture for: - Entra ID (Azure AD) - Exchange Online - SharePoint/OneDrive - Teams - Intune - Defender Suite - Purview Compliance - Establish Zero Trust and least-privilege administrative model - Design CUI boundary protections and data segmentation Compliance Implementation (CMMC/NIST 800-171) - Map CMMC practices to technical controls and configurations - Develop and maintain: - System Security Plan (SSP) - Control narratives - Evidence repository - POA&M - Implement: - MFA/Conditional Access - Device compliance & endpoint hardening - Logging/monitoring/SIEM integration - DLP & data classification - Incident response workflows - Lead readiness reviews and assessment preparation with C3PAOs Security Operations - Own security baselines and tenant hardening - Manage vulnerability remediation lifecycle - Oversee incident investigations and root cause analysis - Establish monitoring, alerting, and audit logging standards - Drive continuous improvement of controls Cross-Functional Leadership (IC4 Scope) - Serve as technical authority for GCC High security decisions - Provide guidance to operations engineers and offshore support - Partner with Legal/Compliance on regulatory interpretation - Present risk posture and compliance metrics to leadership - Mentor junior engineers (without direct management responsibility) Qualifications - U.S. Person (citizen or permanent resident) - required for GCC High/CUI access. - 6-10+ years Microsoft 365/Azure security engineering experience. - Hands-on implementation of GCC High or FedRAMP/DoD environments. - Direct experience with: - CMMC or NIST 800-171 control implementation - Intune & endpoint security - Entra ID Conditional Access/PIM - Defender suite - Purview (DLP/eDiscovery/Insider Risk) - Experience preparing for security audits or assessments. - Strong technical documentation skills. Extras: - CISSP, CISM, or Security+ - Microsoft SC-100, SC-200, SC-300, MS-102 - Gov/DoD contracting environment experience Additional Information Work Personas We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here . To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service. Equal Opportunity Employer ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. Accommodations We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact globaltalentss@servicenow.com for assistance. Export Control Regulations For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license.

Alabama
$171 - $800
Job Closed
IGT - International Game Technology logo

Product Architect - Security

IGT - International Game Technology

IGT - International Game Technology, an organization headquartered in London, England, United Kingdom, is a global leader in the design, development, and manufa

Title: Product Architect - Security Location: West Greenwich, RI, US, 02817 Requisition ID: 19092 Brightstar is an innovative, forward-thinking global leader in lottery that builds on our renowned expertise in delivering secure technology and producing reliable, comprehensive solutions for our customers. As a premier pure play global lottery company, our best-in-class lottery operations, retail and digital solutions, and award-winning lottery games enable our customers to achieve their goals, fulfill player needs and distribute meaningful benefits to communities. Brightstar has a well-established local presence and is a trusted partner to governments and regulators around the world, creating value by adhering to the highest standards of service, integrity, and responsibility. Brightstar has approximately 6,000 employees. For more information, please visit www.brightstarlottery.com. Overview The Product Architecture team provides architecture support to Product Management and Engineering, guiding good product design and integration in readiness for release and customer integration. Additionally, they provide customer site specific services such as technology stack evaluation and recommendations, bespoke customer integration guidance, and deep dive assistance on persistent problems.. The Security Architect will be a key member of the Product Architecture team, responsible for embedding security design and principles into our products. This role ensures that security is integrated across all architectural layers—application, infrastructure, and cloud—while aligning with organizational standards and compliance requirements. Responsibilities - Define and maintain security architecture standards for product solutions, including cloud-native and hybrid deployments. - Conduct architecture security reviews early in the development lifecycle to identify and mitigate risks. - Perform threat modelling for new features and products; recommend design and controls to address vulnerabilities. - Ensure design compliance with OWASP Top 10, NIST Cybersecurity Framework, and internal security benchmarks. - Align product security with regulatory requirements (e.g., GDPR, GovRAMP, ISO 27001). - Establish guardrails for identity management, encryption, and secure coding practices. - Work closely with Product Architects, Engineering, and DevOps teams to integrate security into CI/CD pipelines. - Provide guidance on secure API design, container security, and cloud security posture management. - Evaluate how security technologies and patterns (e.g., Zero Trust, federated identity, gatekeeper patterns) can be adopted into the architecture. - Drive adoption of automated security testing and monitoring tools. - When required by System Architecture, help define a particular security decision or solution for a customer deployment to guide development and customer technical leads. Qualifications - Bachelor’s or Master’s degree in Computer Science, Information Security, or related field. - 8+ years of experience in security architecture, preferably in product development environments. - Expertise in cloud security (Azure/AWS), container security, and microservices architecture. - Strong knowledge of cryptography, IAM, PKI, and secure API design. - Familiarity with SIEM, vulnerability management, and security automation tools. - A strong understanding of product management and agile software development methods, with familiarity in modern product design and management tools - Strong knowledge of Java and its ecosystem, including common frameworks and technologies such as Spring, JPA/Hibernate, RESTful APIs, Maven/Gradle, and unit/integration testing frameworks - Familiarity with frontend technologies (e.g., HTML, JavaScript, React/Angular) at a conceptual level to support end-to-end design discussions - Certifications (Preferred): CISSP, CCSP, or AWS/Azure Security Specialty. - Understanding of Infrastructure as Code (IaC) (e.g., Terraform, ARM/Bicep, or CloudFormation) and DevOps tools and practices, such as CI/CD pipelines (e.g., Azure DevOps, Jenkins, GitHub Actions), containerization and orchestration (Kubernetes) Success Profile • Leading Complexity • Leading People • Leading the Business • Leading Self #LI-KB1 #LI-HYBRID At Brightstar, we consider a wide range of factors in determining compensation, including background, skills, experience, and work location. These factors can cause your compensation to vary. The estimated starting compensation range is $74,961 - $164,800. The actual pay offered may end up being higher or lower. The Company will comply with all local pay requirements and collective bargaining agreements, where applicable. Base pay is only one part of our Total Rewards program. Sales roles may be eligible for commission payments, while other roles are eligible for discretionary bonuses. In addition, we offer employees a 401(k) Savings Plan with Company contributions, health, dental, and vision insurance, life, accident, and disability insurance, tuition reimbursement, paid time off, wellness programs, and identity theft insurance. Note: programs are subject to eligibility requirements. All Brightstar employees have a role in information security. Annual training will be assigned and required as appropriate.

Rhode Island