Job Closed
This listing is no longer active.
Forescout delivers enterprise security solutions that address threats across the diverse spectrum of traditional, emerging, and Internet-of-Things (IoT) devices
Sr. Cloud Information Security Engineer
Location
United States
Posted
64 days ago
Salary
0
Seniority
Senior
Job Description
Sr. Cloud Information Security Engineer
Forescout
Shape the Future of Cybersecurity at Forescout Every day cyberattacks threaten to disrupt hospitals, power grids, financial systems, and the infrastructure we all depend on. At Forescout, we build the defenses that keep civilization running smoothly in an increasingly connected world. For more than 25 years, Fortune 100 organizations, government agencies, and large enterprises have trusted Forescout as their foundation to manage cyber risk, ensure compliance, and mitigate threats. From power grids and healthcare systems to financial networks and transportation hubs, Forescout protects the critical infrastructure of our modern world. What You Will Do Forescout is looking for a Sr. Cloud Information Security Engineer who will be primarily responsible for the day-to-day cloud security operations on our Information Security operations team. The Sr. Cloud Information Security Engineer will work closely with the Information Security Operations and Compliance, Information Technology, Product Engineering, and DevOps teams. You will build and maintain strong rapport with these teams to identify and mitigate risks within the commercial and IT cloud environments. NOTE: This role requires strong, hands-on experience with securing and building Microsoft Azure Cloud environments. Additional AWS and GCP knowledge is a plus but not required. Azure GovCloud experience a Plus You will also be responsible for ensuring access and configurations remain consistent and secure, and ensuring changes are scoped correctly. You will also act as a participant in internal security control testing for these environments and take part in threat modeling exercises. Additionally, you will also be responsible for the following: - Monitor the environment against specified security frameworks. - Triage and respond to incidents according to the Incident Response Cycle. - Work closely with global Information Security teammates through video conference and messaging technology. - Work with various tools such as: - Cloud Security Posture Monitoring tools. - Vulnerability Scanners. - Security Incident and Event Managers. - Testing tools (Burp Suite and the like). - Firewalls. - Compile and present monthly operational metrics. - Build process and environment documentation. - Assist with compiling evidence for compliance audits. - Assist with projects as assigned. - Be the Subject Matter Expert on assigned tools. This is a Remote work assignment for individuals within the United States with limited travel (2-3 weeks yearly) What You Bring to Forescout We encourage you to apply if you meet most but not all the requirements listed below. We value competency, aptitude, effort, and a great attitude as a supplement to experience. - Bachelor's degree in the field of Information Security, Information Assurance, Computer Science, Information Technology, or similar, OR 10+ years of experience with Cloud Computing technologies will be considered. - A current and active Microsoft Azure Security Engineer Associate Certification (Required), Microsoft Cybersecurity Architect Expert, or demonstratable direct hands-on experience within Microsoft Azure at the relevant level for this role. - 5+ years of experience in a Cloud Information Security role supporting a corporate Information Security Program. - A passionate, team-focused, but independently driven work ethic. - In-depth, hands-on knowledge and skills with Azure, Infrastructure as Code, and CI/CD pipelines. - In depth knowledge and experience with cloud-based vulnerabilities and exploits, as well as their remediations. - Knowledge and exposure to cybersecurity frameworks. - Experience working in or with cloud application development teams. - Cybersecurity incident response (Cloud experience preferred). - A strong understanding of Network support and architecture (On premise and cloud). - Cloud based threat modeling. - Ability to work with all levels of the business to obtain information related to existing controls, configurations, and processes. - Ability to communicate complex information security risks and scenarios to a general audience. - Ability to work with minimal supervision. Preferred Skills / Experience: - Experience with Vulnerability management tools (WIZ, Rapid7, Nessus, etc) (Expert). - Experience/Exposure to Security frameworks (CMMC and SOC2 preferred) (Novice). - Information Security Incident Triage and Handling (Intermediate). - Ticket/Case Management (Expert). - Gitlab/Terraform/IAC (Intermediate/Expert). - Ability to create and maintain documentation (Intermediate). What Forescout Offers You - Competitive compensation and benefits–we cover 85% of employee and dependents’ health care premiums, 100% company paid employee life and disability insurance premiums, 401K match, generous FTO policy (U.S. only), option to purchase voluntary life, accident and critical illness insurance, employee assistance program, maternity and parental bonding leave and much more. - Collaborative and innovative environment –make an impact on worldwide security while working on the hottest technology. - Leadership that supports and encourages professional growth and development. - Want a glimpse of Life @ Forescout? Check us out on Facebook and Instagram. - Learn more @ www.forescout.com . Our Mission - Continuously identify, protect, and ensure the compliance of all cyber assets across the modern organization. Our Values - One Team – We all work together, and we all win together. - Cyber Obsessed – We are curious about technology, and we are innovative and passionate about solving big programs. - Customer Driven – We listen, we learn, and we make it right. - Relentless – We're smart, determined, and find a way. We figure stuff out. - Collaborative, without Ego – No one succeeds alone. We strive to be the humble person that people want to work with. Thank you for taking the time to learn more about us. If this opportunity intrigues you, we would love for you to apply! NOTE TO EMPLOYMENT AGENCIES: We value the partnerships we have built with our preferred vendors. Forescout does not accept unsolicited resumes from employment agencies. All resumes submitted by employment agencies directly to any Forescout employee or hiring manager in any form without a signed Employment Placement Agreement on file and search engagement for that position will be deemed unsolicited in nature. No fee will be paid in the event the candidate is subsequently hired because of the referral or through other means.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
About Us Data Analysis Incorporated (DAI) is the controlling entity of the O’Neil family of businesses. DAI and its subsidiaries operate in diverse industries worldwide, including global equity markets, health care, financial services, digital news, and insurance. Our global footprint allows our teams to be responsive to customer needs in a timely and efficient manner. We are dedicated to using technology and innovation to bring change and growth to our businesses. We believe in a dynamic workplace, creating engaging, informative products and services that help our customers succeed. Integrity is an essential characteristic for our firms and our associates; if this describes you, please apply! Summary The Lead Identity and Access Management Engineer is responsible for designing, implementing, and continuously improving enterprise IAM platforms while providing technical leadership across authentication, authorization, identity governance, and lifecycle management. This role serves as the IAM technical lead, defining and enforcing the operating model, including oversight of offshore administration processes to ensure secure, consistent, and auditable execution. The position owns identity security across both human and non-human identities, including workforce, service, application, and API identities. It also governs authentication mechanisms, token-based access, and service-to-service interactions across cloud and enterprise environments. Strong ownership of platforms such as PingID, Auth0, Duo, and Microsoft Entra ID is required, with a focus on modern authentication, MFA, SSO, and scalable identity governance. This includes governance of identity and access within AWS environments, including IAM roles, policies, and federated access. Duties and Responsibilities - Design, implement, and maintain IAM solutions across PingID, Auth0, Duo, Microsoft Entra ID, and AWS IAM environments. - Serve as the technical lead for IAM, defining architecture, standards, and the overall operating model. - Develop and enforce IAM processes and governance frameworks, including oversight of offshore operations, SLAs, and quality controls. - Own identity lifecycle management (joiner, mover, leaver), including automation of provisioning and deprovisioning. - Lead identity governance efforts, including access reviews, RBAC/ABAC models, and compliance with regulatory requirements. - Manage authentication and access controls, including SSO, MFA, conditional access, privileged access, and non-human identities (APIs, service accounts). - Design, implement, and govern AWS IAM including roles, policies, permission boundaries, and identity federation. - Manage AWS IAM roles for human and non-human identities, including service roles, cross-account access, and workload identities. - Implement and enforce least privilege access within AWS through policy design and role scoping. - Integrate AWS IAM with enterprise identity providers (Entra ID, Auth0) for federated access and SSO. - Govern access to AWS resources including management of access keys, role assumption, and temporary credentials. - Define and enforce controls for AWS service identities, including Lambda, EC2, and container-based workloads. - API / Token / Secrets - Align AWS IAM roles and temporary credential usage with token lifecycle and secrets management strategies. - Priviledged Access Management - The role includes ownership of cloud identity platforms, including AWS IAM, with responsibility for managing identities, roles, and access controls across multi-cloud environments. - Partner cross-functionally to integrate modern authentication protocols (SAML, OAuth, OIDC, SCIM), drive automation, support audits, and mentor IAM team members. Qualifications & Requirements Required Education, Experience, Certification/Licensure - Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or related technical field, or equivalent practical experience. - 7+ years of experience in cybersecurity or IT, with at least 5 years focused on Identity and Access Management. - Demonstrated hands on experience with PingID, Auth0, Duo, and Microsoft Entra ID. - Proven experience designing and operating IAM programs, including governance, lifecycle management, and offshore operating models. - Experience managing both human and non-human identities including service accounts, API identities, and application identities. - Strong understanding of authentication and authorization protocols including SAML, OAuth 2.0, OIDC, LDAP, and Kerberos. - Experience implementing identity lifecycle automation and provisioning frameworks. - Experience with privileged access management concepts and technologies. - Experience supporting hybrid environments integrating on premises Active Directory with Entra ID. Preferred Education, Experience, Certification/Licensure - Industry certifications such as CISSP, CISM, Microsoft Identity and Access Administrator, or relevant IAM certifications. - Experience with identity governance and administration platforms. - Experience in regulated environments aligned to SOX, HIPAA, PCI DSS, or NIST frameworks. - Experience with secrets management and vault technologies. - Experience with scripting or automation using PowerShell, Python, or similar tools. KNOWLEDGE, SKILLS AND ABILITIES (KSAs) - Deep expertise in identity security, zero trust architecture, and access governance frameworks. - Strong understanding of AWS IAM concepts including roles, policies, trust relationships, and cross-account access. - Knowledge of cloud identity patterns including federated access and workload identity in AWS. - Strong knowledge of modern authentication and access controls, including MFA, passwordless, API security, and service-to-service authentication. - Ability to design scalable IAM architectures and operating models supporting both human and non-human identities across distributed environments. - Strong analytical, problem-solving, and process design skills, with the ability to translate complex requirements into standardized procedures and runbooks. - Effective communication, documentation, and stakeholder management skills, with the ability to drive accountability and consistency across teams. Working Conditions Must be able to perform essential job duties. Work is performed primarily in an office environment. Typically requires the ability to sit for extended periods of time (66%+ each workday), hear the telephone, and enter data on a computer and may also require the ability to lift up to 10 pounds. Equal Opportunity Employer Data Analysis Inc is an equal opportunity employer. All aspects of employment, including the decision to hire, promote, discipline, or discharge, will be based on merit, competence, performance, and business needs. We do not discriminate on the basis of race, color, religion, marital status, age, national origin, ancestry, physical or mental disability, medical condition, pregnancy, genetic information, gender, sexual orientation, gender identity or expression, veteran status, or any other status protected under federal, state, or local law.
IT Vendor Management Lead – Cybersecurity, Identity Platforms, Resellers
HumanaLouisville, Kentucky-based Humana is a leading healthcare company that offers a variety of health, wellness, and insurance products and services designed to offer an integrated app
• Serve as the primary strategic owner for assigned supplier relationships • Lead and mature supplier governance including quarterly business reviews (QBRs), executive business reviews, steering committees, and strategic roadmaps • Oversee contract strategy, including renewals, enterprise licensing, SaaS agreements, consumption models, pricing optimization, and SLA development • Partner closely with IT, Security, Finance, Legal, Architecture, and business leaders to drive alignment between business requirements and vendor capabilities • Lead escalations, risk mitigation, service remediation, and performance correction plans to ensure vendor accountability • Manage enterprise financials for assigned suppliers including cost optimization, forecasting, ROI, and long-term investment planning • Maintain deep awareness of market trends, supplier risk, and competitive landscapes within portfolio • Influence executive stakeholders using strong communication, storytelling, and analytical reasoning • Contribute to vendor management maturation including frameworks, dashboards, and governance tools
Network Security Engineer (L1) - English Speaker
NTT Ltd.NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. As a Global Top Employer, we have experts in more than 50 countries and offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners.
Make an impact with NTT DATA Join a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it’s a place where you can grow, belong and thrive. Your day at NTT DATA As a Network Security Engineer (L1) at NTT DATA, you will be the first point of contact for our clients, ensuring their IT infrastructure and systems remain operational. You will proactively identify, investigate, and resolve technical incidents and problems, focusing on first-line support for standard and low-complexity incidents and service requests. Your aim? To ensure zero missed service level agreement conditions. Every day, you will monitor client infrastructure and solutions, identifying problems and errors before or as they occur. You will dive deep into first-line incidents assigned to you, pinpointing the root causes, and providing telephonic, ITSM ticket or chat support to our clients when they need it most. Maintenance activities, such as patching and configuration changes, will be part of your routine, ensuring the smooth operation of client systems. You will work across two or more technology domains, such as Cloud, Security, Networking, Applications, or Collaboration. Your day may include updating existing knowledge articles or creating new ones, seeking opportunities for work optimization, and supporting project work as needed. Additionally, you will contribute to disaster recovery functions and tests, ensuring our clients' DATA is safe and sound. This role requires to be available to work on shifts and during public holidays and/or weekends. Shift changes are made seamless with your careful handovers, ensuring service continuity. You will report and escalate incidents when necessary and strive for efficient, comprehensive resolutions of incidents and requests. With each interaction, you will aim to provide a positive client experience, placing their needs at the forefront of all you do. To thrive in this role, you need to have: - Entry-level experience with troubleshooting and support in security, network, DATA centre, systems, or storage within a medium to large ICT organization. - Basic knowledge of management agents, redundancy concepts, and ITIL processes. - Highly disciplined in handling of tickets on day-to-day basis. Act promptly as per defined Sop’s. - Try to resolve as many tickets as possible using available Knowledge articles or provided Sop’s. - Good understanding of using ITSM tools. - Skill in planning activities and projects in advance and adapting to changing circumstances. - A client-centric approach, understanding their requirements and ensuring a positive experience throughout their journey. - Ability to communicate and work across different cultures and social groups. - Proficiency in active listening techniques and refraining from interrupting. - A positive outlook at work, even in pressurized environments. Key Responsibilities: - Monitors client infrastructure and solutions, mainly with CISCO but also Juniper, Palo Alto, Aruba and Fortinet. - Identifies problems and errors prior to or when they occur. - Routinely identifies common incidents and opportunities for avoidance as well as general opportunities for incident reduction. - Investigates first line incidents assigned and identifies the root cause of incidents and problems. - Provides telephonic or chat support to clients when required. - Schedules maintenance activity windows for patching and configuration changes. - Follows the required handover procedures for shift changes to ensure service continuity. - Reports and escalates incidents where necessary. - Ensures the efficient and comprehensive resolutions of incidents and requests. - Updates existing knowledge articles or create new ones. - Identifies opportunities for work optimization including opportunities for automation of work, request fulfilment, incident resolution, and other general process improvement opportunities. - May also contribute to / support on project work as and when required. - May work on implementing and delivering disaster recovery functions and tests. - Performs any other related task as required. Knowledge and Attributes: - Ability to communicate and work across different cultures and social groups. - Ability to plan activities and projects well in advance and takes into account possible changing circumstances. - Ability to maintain a positive outlook at work. - Ability to work well in a pressurized environment. - Ability to work hard and put in longer hours when it is necessary. - Ability to apply active listening techniques such as paraphrasing the message to confirm understanding, probing for further relevant information, and refraining from interrupting. - Ability to adapt to changing circumstances. - Ability to place clients at the forefront of all interactions, understanding their requirements, and creating a positive client experience throughout the total client journey. Academic Qualifications and Certifications: - Bachelor's degree or equivalent qualification in IT/Computing (or demonstrated equivalent work experience) - Nice to have: CCNA and/or CCNA Security. - Nice to have: experience with Service Now and/or Logic Monitor. - English: Fluent (Mandatory). Required experience: - Entry-level experience with troubleshooting and providing the support required in security / network/ DATA center/ systems/ storage administration and monitoring Services within a medium to large ICT organization. - Basic knowledge of management agents, redundancy concepts, and products within the supported technical domain (i.e. Security, Network, DATA Centre, Telephony, etc.). - Basic knowledge of ITIL processes. Workplace type: Remote Working About NTT DATA NTT DATA is a $30+ billion business and technology services leader, serving 75% of the Fortune Global 100. We are committed to accelerating client success and positively impacting society through responsible innovation. We are one of the world’s leading AI and digital infrastructure providers, with unmatched capabilities in enterprise-scale AI, cloud, security, connectivity, data centers and application services. Our consulting and industry solutions help organizations and society move confidently and sustainably into the digital future. As a Global Top Employer, we have experts in more than 50 countries. We also offer clients access to a robust ecosystem of innovation centers as well as established and start-up partners. NTT DATA is part of NTT Group, which invests over $3 billion each year in R&D. Equal Opportunity Employer NTT DATA is proud to be an Equal Opportunity Employer with a global culture that embraces diversity. We are committed to providing an environment free of unfair discrimination and harassment. We do not discriminate based on age, race, colour, gender, sexual orientation, religion, nationality, disability, pregnancy, marital status, veteran status, or any other protected category. Join our growing global team and accelerate your career with us. Apply today. Third parties fraudulently posing as NTT DATA recruiters NTT DATA recruiters will never ask job seekers or candidates for payment or banking information during the recruitment process, for any reason. Please remain vigilant of third parties who may attempt to impersonate NTT DATA recruiters—whether in writing or by phone—in order to deceptively obtain personal data or money from you. All email communications from an NTT DATA recruiter will come from an @nttdata.com email address. If you suspect any fraudulent activity, please contact us.
Senior Security & Risk Management Specialist
Reinsurance Group of America, IncorporatedTrusted Partner. Proven Results.
You desire impactful work. You’re RGA ready RGA is a purpose-driven organization working to solve today’s challenges through innovation and collaboration. A Fortune 200 Company and listed among its World’s Most Admired Companies, we’re the only global reinsurance company to focus primarily on life- and health-related solutions. Join our multinational team of intelligent, motivated, and collaborative people, and help us make financial protection accessible to all. Under limited supervision, this position in the Global Security Office (GSO) will require excellent analytical and problem-solving skills, with the ability to communicate complex IRM topics, solutions and capabilities to architects and stakeholders around ServiceNow Enterprise IRM Applications. The position monitors, evaluates, and makes recommendations regarding the security, privacy, and integrity of the global systems, to provide assurances that systems and data are properly safeguarded for security and privacy purposes, utilizing a strong understanding of GRC foundations/best practices/principles for Policy, Compliance, Risk, Audit, Regulatory Change Management, Risk/Advance Risk, Advance Audit(Enterprise IRM Applications), CMDB fundamentals, and Entities. Principle Duties - Work with functional and technical requirements to design and implement work within ServiceNow Enterprise IRM Applications. - Support and maintain ongoing processes, for Enterprise IRM Applications. scope, product, and operational changes/maintenance. - Support, validate requirements to developers and deployment including user acceptance testing and agile testing- assuring alignment between stories and stakeholders and take processes into features/requirements for implementations. - Understands and works with ServiceNow architectural requirements and dependencies - Collaborate with compliance, security and technology professionals on projects related to compliance with global data protection laws. - Facilitates incoming audits and assessments, coordinating discussions with appropriate owners and business stakeholders, and follows up on any remediation activities identified to meet associated due dates to ensure timely completion. - Participates in the development of policies, standards, controls, procedures, and security audits and assessments. - The scope of routine activities and tasks in this role will be in support of one or more functional areas, the department or division. - Performs other duties as assigned Education - Bachelor’s Degree in Arts/Sciences (BA/BS) or equivalent experience - Required - ServiceNow Certification as GRC Admin or GRC/IRM implementation analyst, OR ServiceNow University GRC: Integrated Risk Management (IRM) Implementer - Required - Master’s degree in Arts/Sciences (MA/MS) or professional industry certification - Preferred Work Experience, Skills, and Abilities Required - 4+ years' relevant experience in IT security, privacy, audit, controls and regulatory compliance, or related experience. - Deep understanding of ServiceNow platform and its capabilities, dependencies with proficiency in ServiceNow administration and development and architectural requirements with experience in Versions of Xanadu or Yokohama - ServiceNow GRC framework and process administration (Regulatory Change Management a plus) - General knowledge of business and technology operations; ability to work well within a team setting and maintain a high level of confidentiality - Intermediate knowledge of global standards and regulations regarding security, privacy, and fraud. - Demonstrated ability to learn and stay current on data privacy, data security, and fraud threats and vulnerabilities. - Intermediate organizational, planning and task management skills with high attention to detail; ability to adjust to changing priorities and work under tight timelines - Investigative, analytical and problem-solving skills; ability to set goals, communicate expected outcomes and liaise with individuals across a variety of functions and levels - Excellent customer service skills; ability to balance multiple priorities, deadlines and deliverables while maintaining a positive attitude - Intermediate oral and written communication skills; ability to convey information in a clear and concise manner and provide regular proactive updates to team members, key stakeholders, and mid-level management - Quick to adapt to new methods; ability to be flexible when needed, take initiative and demonstrate accountability Preferred - Insurance/Reinsurance industry experience or certifications - Information security, privacy, compliance, risk or audit professional certifications, such as: SSCP, CIPP, CISA and Security+ - Intermediate understanding of domestic and global security & privacy regulations Technical Skills Required - ServiceNow Expertise as GRC Admin or GRC/IRM implementation analyst OR ServiceNow University GRC: Integrated Risk Management (IRM) Implementer - Strong understanding of GRC Lifecycles management (Policy, Controls, Audit, Risk, Regulatory Change Management, Advance Risk and Advance Audit) - Strong understanding of Reporting, Dashboards, and workspace within ServiceNow - Understanding of Regulatory tool integrations with ServiceNow - Strong understanding of Entities/CMDB within ServiceNow - Microsoft Office application experience (Excel, Word, Visio, Teams, SharePoint) - Familiarity with IT and security systems - Knowledge of applicable regulations such as Sarbanes-Oxley, DORA, NY DFS, GLBA, GDPR etc. Preferred - IT Control Frameworks including NIST CSF/P, NIST AI, COBIT, ITIL, ISO 27001/27002, CIS, etc. - Knowledge of risk assessment methods - Information security, privacy, compliance, risk or audit professional certifications, such as: SSCP and Security+ - Experience reviewing SOC1 and SOC2 attestations - Project management skills/experience - Power-BI Experience for reporting, queries and creating dashboards #LI-CW1 #LI-Remote What you can expect from RGA: - Gain valuable knowledge from and experience with diverse, caring colleagues around the world. - Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought. - Join the bright and creative minds of RGA, and experience vast, endless career potential. We’re excited to get to know you and connect your unique skills with our global opportunities. To create a modern and seamless experience, we use artificial intelligence (AI) in parts of our preliminary screening process. This technology helps us personalize job recommendations, automate interview scheduling, evaluate candidates based solely on experience—without considering name, gender, or other personal details—and provide real-time answers through our chatbot. AI is used only during early screening and never makes hiring decisions. Your RGA recruiter will work closely with you every step of the way to ensure the process feels personal, thoughtful, and focused on you. Compensation Range: $89,310.00 - $134,870.00 Annual Base pay varies depending on job-related knowledge, skills, experience and market location. In addition, RGA provides an annual bonus plan that includes all roles and some positions are eligible for participation in our long-term equity incentive plan. RGA also maintains a full range of health, retirement, and other employee benefits. RGA is an equal opportunity employer. Qualified applicants will be considered without regard to race, color, age, gender identity or expression, sex, disability, veteran status, religion, national origin, or any other characteristic protected by applicable equal employment opportunity laws.

