Travel + Leisure Co. is the world’s leading membership and leisure travel company.
Cloud Security Architect
Location
Florida
Posted
5 days ago
Salary
0
Seniority
Senior
Job Description
Cloud Security Architect
Travel + Leisure Co.
• Provide strategic leadership on cloud security through the design and delivery of scalable, cloud-native security architectures • Develop and maintain cloud security reference architectures, patterns, and guardrails leveraged across the enterprise • Define and govern cloud security standards, policies, and procedures • Partner with Application Architects, Platform Engineers, and DevOps teams to embed security by design into cloud-native architectures and CI/CD pipelines • Build and maintain cloud security strategic roadmaps • Evaluate cloud platform and infrastructure projects for alignment with security, compliance, and cloud-native best practices • Lead cloud architecture and design reviews • Drive cloud security technology evaluations and proof-of-concept efforts • Partner with vendor management to assess the cloud security posture of existing and prospective vendors and SaaS providers • Lead cloud security assessments for mergers and acquisitions
Job Requirements
- Bachelor's degree in information technology, Computer Science, or equivalent experience
- CCSP, CISSP, AWS Security Specialty, or equivalent cloud security certification
- Demonstrated experience designing and securing cloud environments at enterprise scale across one or more major cloud providers (AWS, Azure, GCP)
- Strong understanding of cloud-native security services — identity and access management, data protection, network security, workload protection, and logging/monitoring
- Experience with cloud security posture management (CSPM), cloud workload protection (CWPP), and CNAPP platforms
- Familiarity with infrastructure-as-code security (Terraform, CloudFormation) and DevSecOps pipeline integration
- Deep knowledge of cloud identity architectures including IAM, federated identity, Privileged Access Management, and Zero Trust principles
- Experience with container and Kubernetes security in cloud-native deployments
- Working knowledge of compliance frameworks applicable to cloud environments — PCI-DSS, HIPAA, NIST CSF, CIS Cloud Benchmarks
- Knowledge of data privacy and protection regulations and how they apply to cloud data residency and handling
- Excellent written, verbal, and presentation skills — able to communicate cloud risk clearly to technical and executive audiences
- Strong ability to manage and prioritize multiple concurrent initiatives in a fast-paced environment
- Knowledge of the vacation or hospitality industry a plus
- 5+ years of information security experience
Benefits
- Medical
- Dental
- Vision
- Flexible spending accounts
- Life and accident coverage
- Disability
- Paid time off
- Parental leave
- Holidays
- Wish day paid time to volunteer at an approved organization of your choice
- 401k with employer match
- Legal and identify theft plan
- Voluntary income protection benefits
- Wellness program
- Employee Assistance Program
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Monitor and triage security alerts from SIEM, EDR, and other tools; escalate and respond as needed. • Investigate security incidents, determine root cause, document findings, and develop IOCs to prevent recurrence. • Support escalations from internal employees or customers with security-related concerns. • Assist with security reviews related to infrastructure and system changes. • Build, enhance, and maintain internal security tooling and scripting repositories. • Contribute to the development of detection content, alert tuning, and automation pipelines. • Drive annual security team goals and cross-functional initiatives. • Author and maintain clear, actionable documentation and knowledge bases. • Mentor junior team members and share expertise across the organization. • Participate in a rotating on-call schedule for security operations support.
Role Description Are you an expert in the NISPOM (32 CFR 117)? Do you have experience working with DCSA? If so, we're looking for someone like you to join our team at APL. We are seeking an Industrial Security Specialist to help us conduct self-inspections, administrative inquiries (AIs), review prime DD254s and create subcontract DD254s, develop and maintain security policies and procedures. The Security Office Group (SECD/ZSO) aims to provide superior security administration services to JHU/APL, while executing the requirements, restrictions, and safeguards prescribed by the NISPOM to safeguard classified information. As an Industrial Security Specialist, you will: - Primarily provide security oversight and conduct internal audits and surveys to ensure NISPOM security policies and procedures are properly implemented and adhered to. - Analyze classified documents to ensure proper marking of program security classification guides, and develop staff security awareness training. - Prepare inspection schedules, reports; Present findings to SECD management. - Develop comprehensive and complete reports for dissemination to Sectors/Departments and others. - Conduct interviews of personnel. - Reinforce counterintelligence (CI) awareness, including foreign intelligence threats, suspicious contacts, and reporting requirements. - Maintain knowledge of contracting procedures and related documents. - Conduct administrative inquiries of security violations to include loss and compromise of classified information/material, and coordinate initial and final reports; Coordination with the Insider Threat Program Senior Official (ITPSO) / insider threat team, when applicable. - Assist in the determination of culpability; Develop Administrative Inquiries for submission to DCSA. Track inquiries and develop reports for management. - Assist in the development and maintenance of security policies and procedures. - Review prime DD254s and relay any security requirements that are above our normal NISPOM requirements to the Program Manager/Project Manager. - Work with Program Manager/Project Managers on the creation of subcontract DD254s. - Communicate and collaborate with internal partners such as the Designated Security Representatives, ISSM teams, physical security group and program security group. - Provide timely and accurate responses to security-related questions from the workforce, offering clear guidance on NISPOM requirements, classification, reporting obligations, and day-to-day security procedures. - Support the Facility Security Officer (FSO) in meeting established security program goals, metrics, and key performance indicators (KPIs). Qualifications - Have a Bachelor's degree and at least two years of relevant experience in the industrial security field, OR have at least four years of relevant security-related experience in lieu of a degree. - Have a strong working knowledge of the National Industrial Security Program Operating Manual (NISPOM) (32 CFR 117). - Have a demonstrated ability to effectively interact and work with laboratory staff at all levels. - Are able to communicate effectively, both orally and in writing, with internal and external customers. - Are a committed team player with excellent interpersonal skills and a demonstrated ability to multitask, prioritize, and deliver high‑quality products and services. - Can complete the Center for Development of Security Excellence (CDSE) curricula for Facility (FSO) Orientation for Possessing Facilities (ISO30.CU) and adverse information training within 12 months of hire. - Hold an active Secret level security clearance and can ultimately obtain a Top Secret level clearance. If selected, you will be subject to a government security clearance investigation and must meet the requirements for access to classified information. Eligibility requirements include U.S. citizenship. Requirements - Have NISPOM assessment/inspection team experience. - Have experience developing and implementing security‑related training programs. - Are a NCMS Industrial Security Professional (ISP) certification and/or DCSA Security Fundamentals Professional (SFPC) certification. - Have previous FSO/AFSO experience. - Are proficient with SIMS, NISS, DISS and OPSLink. Benefits - Generous benefits, including a robust education assistance program. - Unparalleled retirement contributions. - Healthy work/life balance. - Comprehensive benefits package including retirement plans, paid time off, medical, dental, vision, life insurance, short-term disability, long-term disability, flexible spending accounts, education assistance, and training and development.
IT Security Engineer
Synthesis HealthWe’re a mission- and values-driven company with tremendous dedication to our customers. Our 100% remote team is dedicated to a common goal – to revolutionize healthcare through innovation, collaboration, and commitment to our core values and behaviors.
Role Description This is a high-impact, high-autonomy role at the center of our IT and security operations. As our IT Security Engineer, you'll own the day-to-day administration and ongoing maturation of a modern Microsoft 365 E5/E7 environment supporting a fully remote healthcare SaaS company. You'll be the primary technical hand across identity, endpoints, security tooling, and compliance evidence generation, working directly on the systems that keep our clinical AI platform secure and our five compliance frameworks audit-ready. This is a small-team environment where you'll have real ownership and the latitude to improve, automate, and architect rather than just maintain. If you want your decisions to matter and your work to be visible, this is the role you have been searching for. Key Responsibilities - End-user IT support: first point of contact for the company across Microsoft 365, identity, devices, SaaS access, and general technology issues, with ownership of the internal support queue - Endpoint administration across macOS and Windows: Intune compliance and configuration policies, application deployment, endpoint DLP, OS update management - Entra ID operational ownership: Conditional Access lifecycle, group and license hygiene, access reviews, PIM - Microsoft Purview, Sentinel, Defender, and Global Secure Access: ongoing tuning, alert triage workflows, evidence pipelines, secure access policy management - Automation and integration: building and maintaining workflows across our SaaS estate using APIs, webhooks, and appropriate tooling - Joiner-mover-leaver execution and the tooling that supports it - Compliance evidence generation and audit support across our compliance frameworks - SaaS administration hygiene: Vanta posture, app registrations, license reconciliation - Identifying opportunities to improve, replace, or consolidate our existing tooling Qualifications - Microsoft Sentinel: KQL, data connectors, analytics rules, workbook authoring, cost management - Microsoft Purview hands-on: DLP, sensitivity labels, retention, eDiscovery - Microsoft Defender XDR: Defender for Endpoint, Defender for Office 365, Defender for Cloud Apps - macOS administration: configuration profiles, shell scripting (bash, zsh) - Experience operating in a one-person or small-team IT environment, with the prioritization judgment that comes from it. Preferred Qualifications - Microsoft 365 E5 or E7 license tier experience specifically - Microsoft Security Copilot exposure - Microsoft Global Secure Access: Internet Access, Private Access, traffic forwarding profiles - macOS administration at depth: declarative device management, Platform Single Sign-On - GCP IAM exposure: Workload Identity Federation, org policies, IAM roles and bindings - Vanta or comparable GRC automation tooling - Enterprise password management administration - HITRUST CSF i1 or r2 familiarity - ISO 27017 and ISO 27018 cloud-specific control familiarity - SCIM provisioning experience across multiple SaaS applications - Self-hosted automation platform experience including deployment, upgrades, and monitoring - Microsoft Graph PowerShell SDK at an advanced level: app-only authentication, custom Entra app registrations - Conditional Access policy design at scale, including structured policy taxonomies - Azure VM and Docker Compose administration - SharePoint Online administration and Viva Connections - Apple Business Manager and Automated Device Enrollment workflows - Windows Autopilot deployment experience - Experience supporting a SOC 2 Type II or ISO 27001 Stage 2 audit as the named technical owner. Benefits - Typical salary range for this position is $105,000 - $125,000, adjusted based on candidate's residence. - Medical, Dental, Vision benefits - “Use as needed” vacation policy - Participation in our employee option program Company Description We’re a mission- and values-driven company with tremendous dedication to our customers. Our 100% remote team is dedicated to a common goal – to revolutionize healthcare through innovation, collaboration, and commitment to our core values and behaviors.
Security and Sustainability Program Coordinator
JLL - Jones Lang LaSalleJones Lang LaSalle (JLL) is a professional and financial services company that specializes in investment management and commercial real estate services. A Fortune 500 company, JLL
Security & Sustainability Program Coordinator Remote Louisville, KY Full time job requisition id REQ507310 JLL empowers you to shape a brighter way. Our people at JLL are shaping the future of real estate for a better world by combining world class services, advisory and technology for our clients. We are committed to hiring the best, most talented people and empowering them to thrive, grow meaningful careers and to find a place where they belong. Whether you’ve got deep experience in commercial real estate, skilled trades or technology, or you’re looking to apply your relevant experience to a new industry, join our team as we help shape a brighter way forward. Program Coordinator, Security and Sustainability – JLL What this job involves: The Security and Sustainability Coordinator plays a vital role in supporting JLL's commitment to safe, secure, and environmentally responsible operations. This position bridges security operations, facilities management, and sustainability programs, providing essential coordination and administrative support that ensures seamless daily operations across our portfolio. You'll work closely with cross-functional teams to implement security protocols, drive environmental performance, and support leadership in executing strategic initiatives. This is an excellent opportunity for a detail-oriented professional to make a tangible impact on workplace safety and environmental stewardship while developing expertise in integrated facilities management. What your day-to-day will look like: - Coordinate daily security operations including access control systems, visitor management protocols, security personnel scheduling, and incident logging in collaboration with law enforcement when necessary - Track and report environmental performance metrics such as energy consumption, water usage, waste diversion rates, and carbon emissions while maintaining sustainability dashboards for stakeholders - Manage waste hauler and recycling vendor relationships to optimize service delivery, track diversion performance against targets, and design waste stream signage and bin infrastructure - Facilitate employee engagement programs that promote security awareness, sustainable behaviors, and environmental education across the organization - Support leadership in vendor management activities including security and sustainability contract compliance monitoring and specialty waste program coordination - Create presentations and communication materials for internal audiences while coordinating information flow among security, facilities, sustainability, and business operations teams - Assist in facility planning processes to integrate security and sustainability considerations while tracking employee safety training and environmental awareness program completion Required Qualifications: - Advanced proficiency in Microsoft Office Suite, particularly Excel and PowerPoint, with ability to create dashboards and analytical reports - Demonstrated ability to manage multiple priorities, coordinate across diverse stakeholder groups, and work independently with minimal supervision - Excellent written and verbal communication skills with strong analytical and problem-solving capabilities and attention to detail Preferred Qualifications: - Bachelor's degree in Security Management, Environmental Science, Sustainability, Business Administration, or related field - 3-5 years of experience in security operations, facilities management, or sustainability program coordination - Experience with waste management or recycling programs and vendor coordination - Familiarity with waste tracking software and vendor management platforms - Project management experience including planning, execution, and performance tracking - Bilingual Spanish proficiency - Knowledge of emergency response coordination procedures and security awareness training development Location: Louisville, KY Shift: 1st Shift This position does not provide visa sponsorship. Candidates must be authorized to work in the United States without sponsorship. Estimated compensation for this position: 61,000.00 – 80,000.00 USD per year This range is an estimate and actual compensation may differ. Final compensation packages are determined by various considerations including but not limited to candidate qualifications, location, market conditions, and internal considerations. Location: Remote –Louisville, KY If this job description resonates with you, we encourage you to apply, even if you don’t meet all the requirements. We’re interested in getting to know you and what you bring to the table! Personalized benefits that support personal well-being and growth: JLL recognizes the impact that the workplace can have on your wellness, so we offer a supportive culture and comprehensive benefits package that prioritizes mental, physical and emotional health. Some of these benefits may include: - 401(k) plan with matching company contributions - Comprehensive Medical, Dental & Vision Care - Paid parental leave at 100% of salary - Paid Time Off and Company Holidays - Early access to earned wages through Daily Pay At JLL, we harness the power of artificial intelligence (AI) to efficiently accelerate meaningful connections between candidates and opportunities. Using AI capabilities, we analyze your application for relevant skills, experiences, and qualifications to generate valuable insights about how your unique profile aligns with the specific requirements of the role you're pursuing. JLL Privacy Notice Jones Lang LaSalle (JLL), together with its subsidiaries and affiliates, is a leading global provider of real estate and investment management services. We take our responsibility to protect the personal information provided to us seriously. Generally the personal information we collect from you are for the purposes of processing in connection with JLL’s recruitment process. We endeavour to keep your personal information secure with appropriate level of security and keep for as long as we need it for legitimate business or legal reasons. We will then delete it safely and securely. For more information about how JLL processes your personal data, please view our Candidate Privacy Statement. For additional details please see our career site pages for each country. For candidates in the United States, please see a full copy of our Equal Employment Opportunity policy here. Jones Lang LaSalle (“JLL”) is an Equal Opportunity Employer and is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process – including the online application and/or overall selection process – you may email us at HRSCLeaves@jll.com. This email is only to request an accommodation. Please direct any other general recruiting inquiries to our Contact Us page > I want to work for JLL. Pursuant to the Arizona Civil Rights Act, criminal convictions are not an absolute bar to employment. Pursuant to Illinois Law, applicants are not obligated to disclose sealed or expunged records of conviction or arrest. Pursuant to Columbia, SC ordinance, this position is subject to a background check for any convictions directly related to its duties and responsibilities. Only job-related convictions will be considered and will not automatically disqualify the candidate. California Residents only If you are a California resident as defined in the California Consumer Privacy Act (CCPA) please view our Supplemental Privacy Statement which describes your rights and disclosures about your personal information. If you are viewing this on a mobile device you may want to view the CCPA version on a larger device. Pursuant to the Los Angeles Fair Chance Initiative for Hiring Ordinance, JLL will consider for employment all qualified Applicants, including those with Criminal Histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance. Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.


