MKS Instruments logo
MKS Instruments

MKS Inc. and its affiliates and subsidiaries (“MKS”) is an affirmative action and equal opportunity employer: diverse candidates are encouraged to apply. We win as a team and are committed to recruiting and hiring qualified applicants regardless of race, color, national origin, sex (including pregnancy and pregnancy-related conditions), religion, age, ancestry, physical or mental disability or handicap, marital status, membership in the uniformed services, veteran status, sexual orientation, gender identity or expression, genetic information, or any other category protected by applicable law. Hiring decisions are based on merit, qualifications and business needs. We conduct background checks and drug screens, in accordance with applicable law and company policies. MKS is generally only hiring candidates who reside in states where we are registered to do business. MKS is committed to working with and providing reasonable accommodations to qualified individuals with disabilities. If you need a reasonable accommodation during the application or interview process due to a disability, please contact us at: accommodationsatMKS@mksinst.com. If applying for a specific job, please include the requisition number (ex: RXXXX), the title and location of the role.

Senior Principal Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteLeadTeam 10,001

Location

United States

Posted

35 days ago

Salary

$135K - $225K / year

Seniority

Lead

Job Description

Senior Principal Security Engineer

MKS Instruments

Role Description As a Sr. Principal Security Engineer at MKS Inc., you will be a partner with all Engineering Teams, Operations Teams, Business Units, Field Services, and Vendors as required to perform engineering design and implementation of the company’s internal network and data communications systems, with a focus on overall network security protocols. In this role, you will report to the Director of IT Connectivity. You Will Make an Impact By: - Owning and driving the enterprise Zero Trust and SASE security architecture roadmap, ensuring alignment with business and regulatory requirements - Designing, implementing, and evolving secure data communications networks, including on-prem, cloud and hybrid environments with AWS and Microsoft Azure - Defining and enforcing network segmentation strategies across IT and OT environments to reduce risk and support operational resiliency - Owning the enterprise network security architecture and continuously improving designs based on industry standards, emerging threats, and organizational needs - Serving as the primary Subject Matter Expert (SME) for network security best practices, standards, and procedures - Acting as a technical escalation point for complex network security issues across engineering, operations and partner teams - Defining, implementing, and governing network security standards and best practices across the enterprise infrastructure Travel Requirements: Up to 0-5% of Travel is required. Qualifications - Bachelor's Degree or Trade Certification in Computer related fields preferred or equivalent work experience - Minimum 12+ years of experience in Security and Networking technology environments - Industry certifications such as PCNSA/PCNSE, CCNP, or CISSP or equivalent (preferred) - Experience with network and security platforms including ClearPass, Solar Winds, Cisco Umbrella, Infoblox, Cisco Thousand Eyes, and Prisma - Strong hands-on experience in establishing security policy governance and designing, deploying, and managing firewall solutions using Fortinet and Palo Alto firewalls Requirements - Remote access technologies (SSL, IPSec) and site-to-site VPN - Network Skills: TCP/IP, routing protocols (EIGRP, BGP, MPLS, IPSec VPN), Layer 2/3 switching and VLAN configuration, Firewall security policy - Familiar with authentication services: Radius, TACACS/TACACS+, 802.1x Supervisory Scope - Reporting Relationships: No direct management responsibilities but as a Sr. Principal Engineer projecting a leadership presence to the rest of the team as a technology owner is required - Financial Responsibilities: Works with management to align work to budget requirements Physical Demands and Working Conditions - Perform activities such as sitting, standing, or typing for extended periods of time - Experience maintaining and supporting network infrastructure in a 24/7, On-Call model - Must be able to communicate information and ideas so others will understand - Must be able to exchange accurate information - Operates in a professional office environment - Constantly operates a computer and other office productivity machinery Compensation and Benefits - Salary Pay Range: $135,000.00 - 225,000.00 per year - Bonus: This position is eligible for a discretionary annual bonus, in an amount to be determined by MKS - Benefits: MKS offers a comprehensive benefits package, including health insurance coverage (medical, dental and vision), 401(k) with company match, life and disability insurance, 12 paid holidays, sick time, 15 paid vacation days, 6 weeks fully paid parental leave, adoption assistance and tuition reimbursement

Related Categories

Related Job Pages

More Security Engineer Jobs

This is a NON-CLASSIFIED employment opportunity. Visit the State of Colorado for Classified employment opportunities. Internal Announcement - Applicants must be a current, active Pikes Peak State College employee within the 2026 calendar year, any capacity. This position plays a crucial role in the college faculty load and compensation process, building and publication of class schedules, and management of academic concerns. Serves as a technical resource to academic divisions providing support to executive deans and staff ultimately contributing to the college's commitment to student success. The college offers the possibility for alternative work arrangements such as flexplace, remote work, or flextime scheduling upon completion of training and department needs. Minimum Qualifications - Completed Bachelor’s degree from regionally accredited institution. - Demonstrated competency with MS Office and advanced Excel functions. Professional level experience is defined by the Colorado Division of Human Resources: A position that involves the exercise of discretion, analytical skill, judgment, personal accountability, and responsibility for creating, developing, integrating, applying, or sharing an organized body of knowledge. Colorado revised statute (C.R.S. 24-50-135(1) allows colleges to exempt positions from the State Personnel Classified System that are determined to be professional level work. Preferred Qualifications - Familiarity with Banner or other higher education CRM. - Familiarity with Ad Astra or other scheduling software. - Experience with case management. For full consideration, all application materials must be received by 4:00 p.m. on April 27, 2026. Internal Announcement - Applicants must be a current, active Pikes Peak State College employee within the 2026 calendar year, any capacity. Must be a State of Colorado resident or able to relocate to Colorado prior to first date of employment. Visa support is not available for this position. Application Instructions: Application must be submitted online. Incomplete applications may not receive full consideration. A complete application will include: - Cover letter - Address the minimum and preferred qualifications in the order listed on the job announcement. - Resume - Reflect experience, education, knowledge, skills, and abilities. - Unofficial Transcripts - Unofficial transcripts for all degrees conferred. Official transcripts are required if hired for the position. - Professional References - Provide names and contact information for three recent professional references who can address your expertise and background for this position. This position may be eligible for a variety of employee benefits. Pikes Peak State College participates in the Colorado Public Employees' Retirement Association (PERA) contribution rates. Note: Prior submission of application materials will not be considered. Essential Functions Faculty Load and Compensation (FLAC): Responsible for contract generation in FLAC ensuring timely compensation for faculty and instructors. Run and analyze reports to identify courses missing contracts and track contracts pending approval. Calculate and process instructor and faculty overload contracts in compliance with state board policy, PPSC Compensation Handbook and educational procedures. Course Scheduling: Utilize Ad Astra scheduling software and work with academic divisions to ensure courses are scheduled in appropriate classrooms/labs within the established college schedule grid. Troubleshoot and resolve scheduling errors. Uses informed judgment and experience to build courses within the schedule in a way that will facilitate the correct payment method in Banner. Case Management: Academic Concerns officer responsible for documentation, management and tracking of student academic concerns in the Maxient software system database. Create and monitor reports and review cases incidents. Determine if incident is an academic concern, assess student needs and coordinate with Behavioral Intervention Team (BIT) and Human Resources (HR) to intervene in concerning behaviors. Ensure adherence to student rights and responsibilities, policies and procedures. Develop and implement strategies to enhance the effectiveness of the incident reporting system. Effectively communicate with academic divisions and student services to ensure timely and appropriate interventions to provide holistic student support. General Duties, Skills, Knowledge, and Abilities - Ability to navigate differences effectively and respectfully in the workplace. - Ability to prioritize, manage and complete multiple projects simultaneously. - Ability to work collaboratively and in a professional manner across the college. - Apply strong interpersonal, oral and written communication skills. - Ability to understand, interpret and adhere to educational procedures and maintain confidentiality. - Ability to occasionally travel to all PPSC campus locations in support of college needs. As part of the State of Colorado, PPSC offers a competitive benefits package: - PERA retirement benefits. - Colorado Family and Medical Leave Insurance (FAMLI) English Spanish - Medical, Dental, and Vision insurance coverage. - Life and Disability Coverage. - Flexible Spending Accounts. - Paid Holidays. - Tuition Reimbursement. - Accrued Annual and Sick Leave. - Some positions may qualify for Public Service Loan Forgiveness Program. This job description reflects Pikes Peak State College’s best effort to describe the essential duties and qualifications of the job. It is not an exhaustive statement of all the duties, responsibilities or qualifications of the job. This document is not intended to exclude an opportunity for modifications consistent with providing reasonable accommodation. EEO Statement: Pikes Peak State College is an Equal Employment Opportunity/Americans with Disabilities Act institution. We value diversity, strive for a more unified campus where all people are valued, treated fairly, and possess a sense of belonging. Pikes Peak State College encourages minorities, women, veterans and persons with disabilities to apply.

United States
Transact Campus logo

Chief Information Security Officer (CISO)

Transact Campus

Elevate your campus experience through transformative payments and credential-driven transactions and privileges.

Full TimeRemoteTeam 501-1,000H1B Sponsor

Chief Information Security Officer (CISO) Illumia | A Roper Technologies Portfolio Company Remote-Friendly About Illumia Illumia empowers education, healthcare, and corporate enterprises with secure, intelligent technology that streamlines operations and enriches experiences for everyone they serve. Formed by the merger of Transact and CBORD, Illumia is a portfolio company of Roper Technologies (NYSE: ROP) serving more than 1,750 client institutions across higher education, healthcare, corporate, and senior living markets. Illumia serves over 12 million students, facilitates over $58 billion in transactions annually, and connects more than 1,100 colleges and universities through over 300 technology and integration partners. We operate across three business units — Campus ID and Commerce, Integrated Payments, and Healthcare — with a portfolio spanning campus identity and access, commerce and payments, food and nutrition management, and data analytics. As a registered partner and ISO of Elavon (U.S. Bancorp), Illumia operates at the intersection of institutional technology and regulated financial services. Our values are Authenticity, Responsibility, Passion, and Excellence. At Illumia, we believe diverse perspectives make us stronger as a team and as a technology partner. We are committed to building an inclusive workplace where people of all backgrounds feel valued, respected, and empowered to do their best work. Position Summary The CISO is a senior technology leader responsible for Illumia’s enterprise-wide information security strategy, program, and culture. Reporting to the CTO, this role serves as the company’s top security leader — translating cyber risk into business language, protecting customer and institutional data, enabling compliant product growth, and building a world-class security organization. This is both a transformation and leadership role. The CISO will unify two legacy security programs (Transact and CBORD) into a single, cohesive operating model while maintaining continuous compliance and operational readiness. The ideal candidate thrives in complex, multi-product SaaS environments, understands how security is evolving in an AI-first world, and can operate confidently in the boardroom while remaining deeply trusted by engineering and product teams. Security Program Illumia follows NIST’s cybersecurity framework and maintains a public Security and Trust Center (trustcenter.illumiatech.com). Current certifications and compliance posture include: - SOC 2 Type I and Type II (including SOC 2+ HITRUST Type II for healthcare products) - PCI DSS v4.0.1 across multiple product lines; listed on Visa’s Global Registry of Service Providers - TX-RAMP and GovRAMP authorizations - HIPAA Security Compliance for healthcare products The CISO will inherit this foundation and be expected to evaluate, evolve, and unify it into a single enterprise-class security operation. Key Responsibilities - Define and evolve a multi-year enterprise security roadmap across all three business units, aligned to business objectives and risk appetite - Serve as primary security advisor to the executive leadership team and primary security liaison to Roper Technologies - Lead the unification of security programs, toolsets, and policies inherited from Transact and CBORD - Lead Security Operations, GRC, Application Security, and Cloud Security functions - Own SOC 2, PCI DSS, HITRUST, TX-RAMP, GovRAMP, FERPA, and HIPAA compliance programs - Secure SaaS platforms and cloud environments through secure SDLC, vulnerability management, and penetration testing programs - Partner with Engineering and Product to embed security by design without impeding delivery velocity - Establish AI security governance to manage AI tool adoption and AI-specific risks across the organization - Lead or manage security operations (SIEM, EDR, XDR, threat intelligence) through in-house, MSSP, or hybrid models - Own the incident response program and business continuity / disaster recovery testing - Oversee corporate IT security including endpoint protection, patch management, and identity hygiene - Establish cross-business unit security governance to drive consistency while accommodating domain-specific requirements - Recruit, develop, and retain a high-performing security team; manage external vendors, MSSPs, and auditors - Maintain and evolve the public Security and Trust Center Required Experience - 12+ years in information security, with 4+ years as CISO, Deputy CISO, or VP of Security - Proven leadership at a B2B SaaS or cloud-native company; experience scaling security through mergers, acquisitions, or platform consolidation - Deep expertise in cloud security architecture (AWS, Azure, and/or GCP), secure SDLC, and modern threat detection and response - Hands-on leadership of SOC 2 Type II and PCI DSS audits; PCI Level 1 experience strongly valued. HITRUST, GovRAMP, or TX-RAMP experience is a plus - Experience with FERPA, HIPAA, or other education and healthcare regulatory frameworks - Demonstrated ability to communicate security risk to non-technical executives, boards, and parent company leadership - Track record building and scaling security teams, including organizational design and vendor management - Experience in a portfolio company or PE-backed environment is a plus Education and Certifications - Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field required; Master’s or MBA preferred - CISSP, CISM, CCSP, CISA, CRISC, or CCISO strongly preferred Security Technology Experience Experience with modern security platforms across cloud security (Wiz, Prisma Cloud, or equivalent), endpoint/XDR (CrowdStrike, SentinelOne, or equivalent), SIEM/SOAR, identity/IAM, application security (SAST/DAST), GRC automation, and patch management. Familiarity with AI security governance tools and Zero Trust architecture frameworks preferred. Leadership Qualities We hire and develop people who are humble, hungry, and smart — and we hold our leaders to the highest standard across all three. - Humble: They lack excessive ego or concerns about status - Hungry: They are always looking for more — more things to do, more to learn, more responsibility to take on - Smart: They have common sense about people, dealing with others in the most effective way, and picking up on the needs and feelings of others Core Competencies - Executive presence with the ability to build trust at the C-suite level, with parent company leadership, and across business units - Strong business acumen — understands how security decisions impact revenue, customer trust, and institutional relationships - Exceptional communication: able to explain complex security concepts in plain language to diverse audiences - Collaborative leader who can influence without authority and build bridges across security, engineering, product, legal, and sales - Resilient under pressure with sound judgment in high-stakes incident scenarios - Comfortable operating in a post-merger environment where ambiguity is high and organizational norms are still being established Location Remote-friendly with regular travel expectations. Illumia’s teams are distributed across Atlanta, GA; Phoenix, AZ; Ithaca, NY; and international offices in Australia, Ireland, and India. Quarterly on-site engagement, incident response availability, and participation in Roper Technologies events (including the annual Cyber Summit) are expected. Compensation Illumia offers a competitive executive compensation package including base salary, performance-based incentive, and comprehensive benefits. Compensation will be discussed in detail during the recruitment process and will reflect the scope of the role, individual qualifications, and market data. Equal Opportunity and Accommodations Illumia is an Equal Opportunity Employer. We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, genetic information, marital status, or any other characteristic protected by applicable law. We are committed to providing reasonable accommodations to qualified individuals with disabilities throughout the hiring process.

United States
$200K - $280K / year
Full TimeRemoteTeam 10,001+H1B No Sponsor

• Lead cybersecurity due diligence for acquisitions, divestitures, carve-outs, joint ventures, minority investments, and other strategic transactions across GE Vernova’s global portfolio. • Serve as a primary cybersecurity lead across the transaction lifecycle, from early-stage diligence and pre-sign assessments through closing, Day 1 readiness, and 30/60/100-day execution. • Represent the Cyber function holistically in M&A activities, while assessing risks and ensuring alignment with GE Vernova cybersecurity standards, controls, playbooks, and strategic priorities. • Lead cyber diligence activities aligned to recognized frameworks and standards, including NIST CSF, NIST SP 800-53, NIST SP 800-171, and NIST SP 800-82, while applying GE Vernova cybersecurity practices and expectations. • Quantify cyber risk and remediation requirements and translate findings into business terms, including transaction risk, remediation investment, Day 1 requirements, TSA needs, and post-close priorities. • Drive Day 1 cybersecurity readiness, including minimum control requirements, risk-based exceptions, interim safeguards, and stabilization planning. • Build and execute 30/60/100-day cybersecurity integration or separation plans and support long-term roadmap development. • Develop and maintain repeatable playbooks, templates, and standards for cyber diligence, integration, separation, and post-close execution. • Lead safe, practical strategies for OT/ICS integration and separation, including segmentation, cyber resilience, and operational continuity considerations. • Establish secure data-sharing, clean-room, and transaction confidentiality protocols in partnership with Legal, Privacy, and other stakeholders. • Partner closely with Digital Technology M&A/PMO, Business Development, Legal, Privacy, Finance, Insurance, Sourcing, business leaders, and cybersecurity teams across GE Vernova. • Lead and manage external cybersecurity advisors and service providers supporting diligence, testing, regulatory advisory, and execution activities. • Prepare executive-ready cyber risk summaries, decision materials, and recommendations for senior stakeholders. • Track and report key performance indicators related to diligence quality, execution speed, Day 1 readiness, TSA reduction, and post-close remediation progress. • Help define and advance AI use cases for cybersecurity M&A, including opportunities to improve diligence efficiency, risk analysis, control mapping, remediation prioritization, and integration planning, in alignment with GE Vernova governance and responsible AI requirements.

United States
$156.1K - $260.1K / year
Job Closed
Full TimeRemoteTeam 10,001+H1B No Sponsor

• Lead key product cyber security programs from inception through completion, ensuring alignment with key stakeholders, business priorities, regulatory requirements, and product roadmaps • Assess current product security posture against applicable regulatory requirements, identify gaps, and develop structured remediation plans and roadmaps • Lead the effort to achieve and/or maintain standards-based certification for the product security program and/or specific Wind products • Manage audit preparation activities, including coordination with internal auditors and third-party certification bodies, evidence collection, and providing responses to findings • Support and/or drive the development, maintenance, and usage of internal tools for product security • Design, develop, and support OT/ICS cybersecurity solutions for wind farm, based on customer requests, regulatory requirements, and commercial strategy • Design, develop, and implement cybersecurity solutions and controls that address identified risks, vulnerabilities, and gaps across Wind’s products • Lead root cause analysis efforts for security vulnerabilities and non-conformities • Support incident response activities related to product security vulnerabilities

United States
$113.2K - $188.8K / year
Job Closed