Job Closed
This listing is no longer active.
IronArch Technology provides management consulting services with a focus on enterprise IT, financial management, audit readiness, and advisory services for government and commercia
Biomedical Cybersecurity Engineer
Location
United States
Posted
60 days ago
Salary
$105.8K - $119.6K / year
Seniority
Senior
Job Description
Biomedical Cybersecurity Engineer
IronArch Technology
• Support the Client program by contributing to cross-functional coordination, operational readiness, and technical execution. • Collaborate with stakeholders to ensure issues are identified early, risks are mitigated, and project activities remain aligned with program goals. • Help streamline processes, maintain accurate documentation, and promote consistent communication across teams. • Enable reliable, secure, and efficient modernization activities across the enterprise. • Develop and maintain a cyber tracker to provide clear communication on system status. • Provide leadership with live, automated cyber updates (e.g., JIRA dashboards) for ATCs, CRs, and connectivity timelines. • Perform gap analyses for future sites and support mitigation planning (e.g., upgrades, licensing, configuration requirements). • Assist in PPSM development efforts. • Support auditing and review of inventories, including creation of POA&M statements as needed. • Assist with firewall ruleset development and creation of standardized templates across deployment sites. • Provide onsite support for inventory analysis as required. • Assist in developing enterprise standard configuration guides aligned with cybersecurity best practices (e.g., Welch Allyn, SkyVue, CCE Admin Tool). • Collaborate with client HTM and biomedical leadership to review and validate documentation for medical system designs, including devices, ensuring alignment with timelines and existing infrastructure. • Support the review and validation of system design documentation to facilitate client timelines and integration with existing systems. • Provide technical guidance and support for implementation of the Risk Management Framework (RMF), including activities related to Authority to Operate (ATO) and Authority to Connect (ATC).
Job Requirements
- Bachelor’s degree or equivalent experience
- Understanding of federal cybersecurity guidance, particularly as it relates to healthcare technology
- Knowledge of VLANs and logical network segmentation based on risk characterization
- Familiarity with healthcare data standards (e.g., HL7 FHIR, CCDA) and interoperability concepts, including Health Information Exchange (HIE)
- Strong problem-solving and communication skills
- Ability to collaborate across diverse technical and functional teams
- Familiarity with enterprise IT environments or system modernization initiatives
- Experience with documentation, tracking, or reporting tools (e.g., JIRA)
- Ability to manage multiple priorities in a fast-paced, dynamic environment
Benefits
- Competitive compensation and market-leading bonus opportunities
- Medical, dental and vision benefits where a significant portion of the premium is subsidized by IronArch.
- For qualifying high deductible health plans, IronArch also contributes towards a Health Reimbursement Account to cover eligible medical expenses
- Company-provided healthcare concierge assistance to help explain your coverage in plain language
- 401(k) retirement plan where the company contributes dollar for dollar up to 3 percent, and 50 cents on the dollar for the 4th and 5th percent with immediate entry and immediate vesting
- 20 days of PTO accumulated per calendar year
- 11 paid holidays
- Bereavement, jury duty, parental (maternity/paternity/adoption), and military leaves
- Sabbatical programs
- Company-paid short- and long-term disability
- Company-paid life insurance
- Voluntary life, accidental and indemnity income replacement benefits
- Professional development reimbursement
- Health club reimbursement
- Matching donation program and annual philanthropic activities
- Pet insurance
- And more!
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Design, implement, and maintain security controls across endpoints, identity systems, networks, applications, and cloud platforms • Actively identify security gaps, emerging threats, and systemic weaknesses through continuous analysis and investigation • Engineer and refine security detection, alerting, response, and monitoring capabilities, emphasizing automation and scalability • Build and maintain security playbooks, standards, procedures, and operational documentation • Partner with IT and business teams to embed security into daily operations, workflows, and lifecycle processes • Evaluate and recommend security technologies based on effectiveness, risk reduction, and operational fit • Leverage automation, scripting, and AI assisted techniques to improve visibility, response time, and threat detection fidelity • Participate in incident response, root cause analysis, and post incident improvement efforts • Translate complex technical risks into clear, actionable insights for both technical and non technical stakeholders • Continuously research emerging threats, tools, and defensive techniques, applying learnings back into the environment
Vector Command Specialist
Rapid7At Rapid7, our vision is to create a secure digital world for our customers, our industry, and our communities. We do this by harnessing our collective expertise and passion to challenge what’s possible and drive extraordinary impact. We’re building a dynamic and collaborative workplace where new ideas are welcome. Protecting 11,000+ customers against bad actors and threats means we’re continuing to push the envelope - just like we’ve been doing for the past 20 years. If you’re ready to solve some of the toughest challenges in cybersecurity, we’re ready to help you take command of your career. Join us.
As a Vector Command Specialist, you will work with a team of offensive security consultants to help clients improve their security posture through your technical skills and knowledge of attack surface management strategies. You will serve as an entry-level technical analyst and customer liaison. You will also work with various Managed Services teams to help deliver monthly reports to customers, address customer needs, and assist with other security consultant deliverables. About the Team Your primary responsibility will be to support Vector Command customers by conducting external attack surface analysis, exposure reconnaissance, account and tool integrations, preparing monthly red team report deliverables, and prioritizing customer requests. You will work daily with Rapid7's Vector Command Red Team operators, assisting with ongoing red team exercises and staying up to date on the latest vulnerabilities, customer attack surface changes, and exposures within customer environments. About the Role Customer Facing Responsibilities: - Onboard customers to the Vector Command platform and technologies. - Oversee and ensure the completeness of customer report deliverables. - Serve as the primary point of contact for customer inquiries related to testing operations, alerts, or general Vector Command questions associated with Red Team activities. - Coordinate and host monthly Vector Command Red Team update calls in conjunction with a Rapid7 Red Team lead. - Translate technical concepts and communicate them effectively to non-security personnel. - Coordinate communications between internal Rapid7 services on behalf of customers, including the Managed Detection and Response (MDR) and Managed Vulnerability Management (MVM) teams. - Provide monthly written summaries of each customer's attack surface and Vector Command Red Team operations. Attack Surface Analyst, Internal Red Team: - Analyze each customer's exposures and attack surface within the Vector Command platform. - Conduct manual network and service reconnaissance to identify new exposures. - Perform Open-Source Intelligence (OSINT) gathering on customers to identify attack surface elements that extend beyond traditional network services. - Keep the Red Team informed of significant changes in customers' attack surfaces. - Coordinate customer requests and prioritizations with the Red Team operators. - Develop scripts to query and analyze attack surface data from numerous sources and automated systems. - Perform entry level penetration testing activities against external assets, as assigned by the Red Team lead. The skills and qualities you'll bring include: - 3+ years in an active technical security role. - Excellent written and verbal communication skills. - Previous technical security consulting experience. - Knowledge of modern penetration testing tools and methods. - Knowledge of external attack surface reconnaissance techniques to identify customer's internet facing exposures. - Strong knowledge of network, web-based application, and IEEE 802.11 security concepts. - Knowledge of Windows/Linux/UNIX internals and the Internet protocol suite. - Experience using scripting languages such as Python and PowerShell - Experience with social engineering techniques and tactics related to reconnaissance and OSINT gathering. - A Bachelor's degree in Computer Science, MIS, CIS or a related field, or equivalent experience. - Certifications such as GPEN, PJPT, PNPT, CPTS, or OSCP are preferred. - The ability to ask for help. - Be an Advocate: Use excellent written and verbal communication skills to not just report vulnerabilities, but to advocate for the customer's security posture. Focus on "translating technical concepts" so non-security personnel understand the impact on their business. - Strategic Alignment: Position your technical testing (network, web app, API) as a way to scale Rapid7's impact within the Global Services division. - Driving Outcomes over Actions: Instead of just listing "performed technical testing," focus on the outcome: "helping customers remediate and mitigate prevalent threats". Your ability to consistently produce high-quality reports is a direct contribution to successful security outcomes for clients. - Core Value Embodiment: Embody our core values to foster a culture of excellence that drives meaningful impact and collective success. We know that the best ideas and solutions come from multi-dimensional teams. That's because these teams reflect a variety of backgrounds and professional experiences. If you are excited about this role and feel your experience can make an impact, please don't be shy - apply today. #LI-BD1 #LI-Remote About Rapid7 At Rapid7, our vision is to create a secure digital world for our customers, our industry, and our communities. We do this by harnessing our collective expertise and passion to challenge what's possible and drive extraordinary impact. We're building a dynamic and collaborative workplace where new ideas are welcome. Protecting 11,000+ customers against bad actors and threats means we're continuing to push the envelope just like we' ve been doing for the past 20 years. If you 're ready to solve some of the toughest challenges in cybersecurity, we're ready to help you take command of your career. Join us. Rapid7, Inc. is committed to fair and equitable compensation practices. A candidate's salary is determined by various factors including, but not limited to, relevant work experience, skills, and certifications. We evaluate compensation decisions on a case-by-case basis, and it is not typical for an individual to be hired at the very top of the salary range. The salary range for this role in the US is: $89,300.00 - 120,800.00 USD Annual Salary ranges may vary based on geographical location. This range does not include variable/incentive compensation, equity and benefits (where applicable/eligible). All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, protected veteran status or any other status protected by applicable national, federal, state or local law.
Instructeur-trice sécurité fluviale
Fonction publique de l'ÉtatAvoir le sens de la pédagogie. Être diplomate. Être rigoureux. Éléments de candidature Personnes à contacter : philippe.thevenon@haute-loire.gouv.fr
Role Description Chargé.e de l'instruction des demandes de délivrance de documents administratifs dans les domaines suivants : - Actes de propriété : - Établir les actes d'immatriculation, mutation, radiation, modification en liaison avec le greffe du tribunal de commerce de Lille, les courtiers, les notaires, les usagers. - Actes de police de la navigation : - Établir les actes de police de navigation garantissant la sécurité fluviale lors d'évènements nautiques ou de travaux sur le domaine public fluvial. - Certificats de capacité et permis de conduire les bateaux de plaisance : - Organiser les épreuves des certificats de capacité professionnelle. - Valider les dossiers des candidatures aux épreuves du permis plaisance. - Instruire les demandes d'agrément des établissements de formation à la conduite des bateaux de plaisance. - Instruire les demandes d'autorisation d'enseigner la conduite des bateaux de plaisance. - Instruire les demandes d'équivalence professionnelle et des permis étrangers, ainsi que les duplicatas. - Délivrance et contrôle des livrets de service et des documents de bord du bateau. Qualifications - Connaissance du code des transports, notamment de la 4e partie relative à la navigation intérieure. - Connaissance des procédures de délivrance des documents réglementaires applicables aux bateaux de commerce et de plaisance en navigation intérieure. - Expertise de la réglementation technique relative à la conformité des bateaux de navigation intérieure (les connaissances seront acquises par compagnonnage). - Rigueur professionnelle et intégrité dans le respect des principes déontologiques. - Capacité à travailler avec méthode et organisation. - Qualités rédactionnelles. - Aptitude relationnelle et sens du contact humain. - Qualité de communication écrite et orale. - Capacité d'adaptation. Elements de candidature Documents à transmettre : Pour postuler à cette offre, l'envoi du CV est obligatoire.
Senior Software Engineer - Security
ClouderaAt Cloudera, we believe that data can make what is impossible today, possible tomorrow.
• Independently research, design, and implement new security features and framework changes for the AWC platform. • Perform threat modeling, risk assessments, and vulnerability detection/analysis on applications and related libraries. • Write and review secure code (Go/Rust/Java), ensuring adherence to security standards. • Work with multiple teams on application architecture, providing expert advice to developers and support to field teams regarding security issues. • Mentor junior engineers and participate in the hiring process (interviewing) to help grow the team. • Research industry developments and evolving threats to continuously harden the platform.


