Thunder logo
Thunder

As easy as boom.

Information Assurance Specialist

Security EngineerSecurity EngineerContractRemoteMid LevelTeam 51-200Since 2020H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

1 day ago

Salary

0

Seniority

Mid Level

Job Description

Information Assurance Specialist

Thunder

Role Description We are seeking an Information Assurance Specialist who will serve as the lead for security and compliance across complex, cloud-based systems supporting federal programs implementing Salesforce and AWS products. This person will ideally be a motivated and customer-oriented cybersecurity professional who will act as a key advisor to cloud program teams. This role is central to managing the full lifecycle of the Authorization to Operate (ATO), encompassing preparation, continuous monitoring, and effective risk management. Our ideal candidate is a highly motivated self-starter who possesses the vision and drive to steer our security and compliance initiatives. We are looking for someone with a strong background of previous, relevant experience who can hit the ground running and contribute to our newly founded Federal practice. - Lead security and compliance activities for complex cloud-based systems or cloud programs. - Oversee ATO preparation, continuous monitoring, and risk management. - Ensure cloud solutions meet regulatory, contractual, and policy cloud and contractual requirements. - Advise cloud programs teams on security best practices. - Lead work with Government ISSOs through the ATO process. Qualifications - Minimum of five (5) years of Federal cybersecurity experience, preferably with information assurance experience on Salesforce, AWS, or other SaaS technologies. - Experience maintaining compliance with RMF (Risk Management Framework), FISMA, NIST, and organizational security requirements. - Experience managing Plan of Action and Milestones (POA&Ms) to monitor system vulnerabilities and mitigation strategies. - Certifications: CISSP, CISM, CAP, or other relevant certifications are highly desired. - Must possess a Bachelor's Degree in cybersecurity, computer science, information technology, or related fields. - US Citizenship Required, with ability and willingness to obtain Security Clearance(s) (Secret Clearance strongly preferred). - U.S. citizens are encouraged to apply. Benefits - Comprehensive Benefits with Sequoia – Medical, Dental, Vision, and Employer-Paid Life/Disability Insurance to keep you and your loved ones covered. - Ownership & Impact – Stock options in a fast-moving, high-growth company. Every employee plays a part in what we’re building. - Level Up Your Career – Real opportunities to grow your Salesforce and Amazon expertise through mentorship, certifications, and hands-on experience with cutting-edge technology. - Work from anywhere (well, almost 😉) - Enjoy the freedom of remote work, flexible PTO (with a 2-week minimum!), and generous leave policies - because the best work happens where you’re happiest. - People-First Flexibility – We’re always listening, evolving, and adapting. Your feedback helps shape our policies, ensuring you can thrive - professionally and personally.

Related Categories

Related Job Pages

More Security Engineer Jobs

Covisian Perú logo

Advisors for Portability

Covisian Perú

Como importante multinacional seguimos en crecimiento.

Role Description ¡Buscamos #COVISIANlovers con ganas de crecer! Únete a uno de los mejores lugares para trabajar en Perú, puesto 16° del GPTW, líderes en servicios de Call Center. Como importante multinacional seguimos en crecimiento y actualmente estamos en búsqueda de: - ASESORES DE PORTABILIDAD para MOVISTAR 🤝GESTIÓN: - Horario: 09:00 AM - 06:00 PM - DÍAS: LUNES a SÁBADO - DESCANDO: DOMINGOS - DISPONIBILIDAD INMEDIATA 🎯 ¿Qué harás? - Realizar llamadas a clientes que son de otros operadores para ofrecerles la portabilidad con mejores beneficios y/o descuentos. Qualifications - Tener Laptop, PC o Tablet para capacitarse de manera virtual vía Meet. - Actitud y ganas de tener un trabajo estable. Requirements - Buscamos personas con o sin experiencia, con actitud, orientación al cliente y compromiso. Benefits - Sueldo Fijo S/1130 - Maqueta de comisiones ilimitados 💸 - Ingreso a planilla Completa - Beneficios de ley - Estabilidad laboral - Capacitación y acompañamiento constante 📚 - Bono de formación de S/35 soles por día 💰 - Bono de luz S/90 - Bono de movilidad S/100 - Te damos HERRAMIENTAS para trabajar desde casa - Bono de S/ 700 para estudios - Beneficios corporativos con instituciones y universidades - Planilla completa desde el primer día - Todos los beneficios de ley - Días libres adicionales por permanencia 🏖️

Peru
1.1K - 2K / month
Kapres Technology logo

Network Security Architect, Cybersecurity Expert, Palo Alto certified

Kapres Technology

Somos un equipo diverso, pero con un único enfoque y de valores muy consistentes.

Full TimeRemoteTeam 11-50H1B No Sponsor

• Design and implement network security solutions • Collaborate with teams to enhance cybersecurity measures • Manage and troubleshoot Palo Alto and Fortinet equipment • Ensure compliance with security policies and practices

Morocco
Apex Systems logo

Windows Security Engineer

Apex Systems

Apex Systems, an IT staffing and workforce solutions firm, provides recruiting and staffing services to large and small companies alike. Founded in 1995 by thre

Windows Security Engineer (Active Directory / IAM) Location: San Antonio, TX, United States Client: USAA Location: 100% REMOTE Contract: Long-term - Can extend to 2 years or be converted to full-time Job Description We are seeking a Windows Security Engineer to support enterprise identity and access management across Windows environments. This role is responsible for secure administration of Active Directory service accounts, access controls, and automation processes supporting DEV, TEST, and PRODUCTION systems. The ideal candidate brings strong experience in IAM security, service account governance, and compliance-driven environments. Key Responsibilities Identity & Access Management - Provision and manage user and service accounts within Active Directory (managed and unmanaged) - Enforce least privilege access and validate approvals for elevated/privileged access - Create and maintain platform-based service accounts supporting automated application jobs - Manage group creation, modification, and membership aligned with enterprise security standards Security Governance & Compliance - Ensure all access requests meet information security policies and approval requirements - Maintain naming conventions, audit controls, and documentation standards - Verify required change records (CRs) are in place for system updates - Document all actions for audit, compliance, and legal tracking purposes Operations & Support - Troubleshoot access issues related to permissions, password expiration, and group policies - Resolve failures in automated jobs caused by account or security issues - Support and troubleshoot privileged access management solutions (e.g., CyberArk) - Coordinate ticket resolution within defined Service Level Objectives (SLOs) Automation & Process Improvement - Utilize and enhance automation scripts (PowerShell / batch processes) for multi-server operations - Support enterprise batch processes and improve efficiency through automation - Gather and validate application ownership and SME information for access workflows Collaboration & Communication - Partner with business and technical teams to prioritize requests based on business impact - Provide timely updates on incidents, requests, and security issues - Participate in ongoing security operations, reporting, and risk mitigation activities Required Qualifications - Strong experience with Active Directory administration (AD DS) - Hands-on experience with service account management and IAM controls - Experience managing group policies, permissions, and access governance - Familiarity with privileged access tools (e.g., CyberArk or similar PAM solutions) - Experience troubleshooting authentication, authorization, and access-related issues - Working knowledge of Windows Server environments (DEV/TEST/PROD) - Experience with change management and ticketing systems (ServiceNow or similar) Preferred Qualifications - Experience in regulated environments (financial services, healthcare, government) - Knowledge of automation tools and scripting (PowerShell) - Exposure to CI/CD or enterprise batch processing systems - Understanding of Zero Trust / IAM security frameworks Everforth Apex is a world-class IT services company that serves thousands of clients across the globe. When you join Everforth Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRateds Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico. Everforth Apex uses a virtual recruiter as part of the application process. By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Everforth Apex and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at https://www.apexsystems.com/privacy-policy Everforth Apex Benefits Overview: Everforth Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Everforth Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Everforth Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Everforth Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our 'Welcome Packet' as well, which an Everforth Apex team member can provide. Everforth Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Everforth Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law. If you require an accommodation under the Americans with Disabilities Act to participate in an interview with a virtual recruiter or to use our website for a search or application, please contact our Benefits Department at [email protected] or 804-523-8228. Please note that this contact information is strictly to be used for medical ADA accommodations and that no other inquiries will be answered. UnitedHealthcare creates and publishes the Transparency in Coverage Machine-Readable Files on behalf of Everforth Apex Systems. Employee Type: Contract Remote: Yes Location: San Antonio, TX, US Pay Range: $50 - $70 per hour

Texas
$50 - $70 / hour
GXA logo

Senior Security Engineer

GXA

Building Stronger Businesses & Communities. Providing Managed IT Services in the Dallas-Fort Worth Area since 2008.

ContractRemoteTeam 11-50Since 2004H1B No Sponsor

• Serve as a Tier 3 escalation point for active security incidents, including business email compromise (BEC), adversary-in-the-middle (AiTM), ransomware, and account compromise. • Lead technical analysis during incident response and war room events, including log review, IOC hunting, and lateral movement tracing. • Execute containment and eradication actions such as endpoint isolation, session revocation, and credential resets. • Coordinate with SOC teams and vendor threat intelligence teams during active investigations and containment efforts. • Produce accurate incident timelines, technical findings, and evidence packages for vCISO review and client-facing follow-up. • Operate daily within the gShield toolstack, including platforms such as Huntress, Microsoft Defender for Endpoint (MDE), Cyrisma, DNSFilter, SIEM, and related security technologies. • Perform alert triage, risk identification, scan issue resolution, and follow-through on issues surfaced by security tools. • Support SIEM operations including query development, alert review, and rule tuning. • Assist in tuning detection logic, scan settings, and platform effectiveness in coordination with Centralized Services and security leadership. • Monitor for security gaps, suspicious activity, and control weaknesses across managed environments. • Execute technical remediation items identified through MRMMs, preventative actions, vulnerability reviews, and security recommendations. • Support gShield deliverables through technical validation, evidence gathering, scan review, and vulnerability analysis. • Act as a quality assurance resource for client onboarding into the gShield toolstack, while execution remains with onboarding and Centralized Services teams. • Assist with client hardening efforts and follow-through on security improvement actions across managed environments. • Support remediation of internal GXA security backlog items, including POA&M-related work. • Assist with rollout and support of phishing-resistant MFA, passkeys, and other internal security initiatives. • Contribute to security engineering efforts related to Intune, Defender, ThreatLocker, AppLocker, and RMM scripting. • Help improve internal security controls, tool effectiveness, and technical enforcement mechanisms. • Write and maintain security engineering SOPs, runbooks, detection playbooks, and response procedures related to gShield operations and incident response. • Document technical findings, repeatable procedures, and lessons learned from incidents and tool operations. • Collaborate with security leadership and technical stakeholders on process improvements, skill development, and automation opportunities. • Contribute technical depth to broader security documentation where needed, while recognizing that ownership of policy, standards, and governance documentation remains with security leadership and related functions.

Pakistan