The National Association of Insurance Commissioners (NAIC), founded in 1871 and based in Kansas City, Missouri, is a non-profit organization that supports state
Senior Networking Security Engineer
Location
Missouri
Posted
15 hours ago
Salary
$123K - $142K / year
Seniority
Senior
Job Description
Senior Networking Security Engineer
National Association of Insurance Commissioners - NAIC
Title: Senior Networking Security Engineer Location: Kansas City Full time Job Description: Job Description: The ITG division of the National Association of Insurance Commissioners (NAIC) has an exciting opportunity for a Senior Networking Security Engineer. This position is responsible for designing, implementing, and managing the organization's network infrastructure to ensure security, reliability, and optimal performance. This role focuses on maintaining standards, improving systems, and supporting business continuity. . This is a full-time hybrid position, in a positive and flexible environment. Residency within 100 miles of the Kansas City office is required. Responsibilities Include: - Design, implement, and manage enterprise network security systems, including firewalls, WAFs, DNS web filtering, and secure traffic flows. - Serve as a technical authority on network availability, performance, segmentation, and secure architecture. - Translate security policies, procedures, and standards into network architecture and configurations. - Configure, optimize, and maintain firewall platforms, including policy management, upgrades, and vulnerability mitigation. - Keep up to date on new product features, industry developments, emerging security threats, and evolving network technologies to maintain industry-leading expertise. - Maintain clear documentation, standards, runbooks, and operational procedures. - Respond to network alerts and outages promptly, including after-hours support. Management Responsibilities: This position does not have direct reports. Minimum Education and/or Experience Required: - Bachelor’s degree (B.A. or B.S.) from four-year College or university in a computer related field and 8+ years of experience in firewall management and/or equivalent combination of education and technical experience. - Hands-on experience with on-premises and AWS networking (Azure and OCI experience are a plus). - Ability to communicate complex security concepts clearly to technical and non-technical audiences. Preferred Experience: - Experience working in regulated or compliance-driven environments (e.g., SOC 2, GovRAMP, PCI, HIPAA). - Hands-on experience with infrastructure-as-code tools such as Terraform. - Relevant certifications (e.g., Security+, Network+, CCNP, AWS Certified Security, PCNSE) are a plus. - Experience with Cisco, Palo Alto, SIEMS, or other relevant enterprise networking/security technologies. Systems & Technology Requirements: - Windows, Linux, and MacOS Endpoints Wireshark - VPCs/VNETs - Firewalls (Palos preferred but not required) - Web Application Firewalls - Security Groups - DNS web filtering - Network Routing and Switching - AWS Transit Gateway - VPNs Travel: This position requires regular, out-of-state, overnight travel in support of member meetings and events throughout the year. Must be able and willing to travel to locations throughout the United States and with such frequency as necessary to meet the needs of this position and the Association. Compensation $123,000- $142,000, commensurate with education and experience. Sponsorship Applicants must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time. Interested in learning more about the amazing benefits the NAIC offers? Visit our Benefits page for more information. The NAIC is proud to be an Equal Opportunity Employer Applicants for all positions are considered without regard to age, race, creed, color, religion, sex, sexual orientation, gender identity or expression, national origin or ancestry, marital status, pregnancy, genetic information, military or veteran status, disability, or any other basis protected by applicable law.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Lead Engineer AI Security - Security Architecture
TargetAn industry-leading retailer with corporate headquarters in Minneapolis, Minnesota, Target operates over 1,800 stores in 47 states, as well as several distribut
Title: Lead Engineer AI Security - Security Architecture(Remote Or Hybrid) Location: Brooklyn Park, MN / US Job Description: Job Id: R0000442410 The pay range is $132,000.00 - $238,000.00 Pay is based on several factors which vary based on position. These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Target cares about and invests in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves. Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation. About Us Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here. Target is one of the world’s most recognized brands and one of America’s leading retailers. But behind the brand our guests love, is a culture of continual innovation and right now, we are up to big things! Target’s security team is a place where innovation happens daily. Interested in a culture that combines ongoing learning, engineering excellence, and stellar outcomes? We are too – that’s why we work here. Join our team to improve Target’s security and move the business forward. As a Lead Engineer on the Security Architecture team, you’ll collaborate with technical and leadership teams across Target Tech to ensure that systems are designed and built securely. You will identify relevant security risks, develop appropriate mitigation strategies, integrate security functions and controls into the overall system architecture, evaluate and provide feedback on proposed architectures, and design secure architecture. This role is highly technical, and you bring a deep understanding of security risks, controls, mitigations, and standards to a collaborative and advisory role, helping the rest of the enterprise as new platforms and systems are built, and as existing ones are modified over time. Beyond the deep expertise, you have great interpersonal skills: our Security Architects are called upon to collaborate across the enterprise and have exceptional communication skills that enable open and cooperative partnerships. Expect to: - Collaborate with system designers to integrate security requirements into the design phase of IT systems - Develop and maintain security architecture documentation, including security models, frameworks, and diagrams - Ensure that security architecture aligns with the organization’s business objectives and regulatory requirements - Understand security risks in order to identify potential vulnerabilities and threats - Develop risk mitigation strategies and recommend appropriate security controls - Design and implement security solutions, including firewalls, encryption protocols, and access control mechanisms - Collaborate with development and operations teams to ensure secure creation and deployment of IT systems - Provide guidance on secure coding practices - Prioritize driving highly impactful changes that improve the business - Conduct full-stack architecture reviews of products and platforms - Provide expertise on information security for complex systems and applications in cloud and on-prem environments - Design security reference architectures and create implementation/configuration guides - Provide expertise on creation and implementation of security controls with an emphasis on cloud technologies - Efficiently assess and communicate risk accurately while negotiating priorities with cross-domain stakeholders - Collaborate with engineering teams to perform advanced security analysis on complex cloud systems, identifying gaps while contributing to design solutions and security requirements Core responsibilities of this job are described within this job description. Job duties may change at any time due to business needs. About You: - 4-year degree OR equivalent experience - Polyglot programmer comfortable in many languages across different platforms - 7+ years of hands-on experience in technology, with extensive knowledge of cybersecurity domains including Information Protection, AI Security and/or Cloud Security (GCP strongly preferred) - Demonstrated curiosity and ability to learn - Expertise in containerization technologies and tools - Solid understanding of genAI/ML - Understanding of prompt injection and its various styles (direct, indirect, RAG poisoning, etc.) / Familiarity with OWSAP top ten for LLMs - Understanding of MCP auth patterns including dynamic client registration - Knowledge in RAG authorization patterns - Experience mitigating the security risks of local coding agents. - Seeks out cross-team collaboration opportunities - Stays current on relevant technologies with self-directed learning - Excellent written and verbal interpersonal skills with strong presentation abilities - Proven history of effectively utilizing a variety of security tools and technologies across diverse environments. The ideal candidate will not be limited to specific vendors or solutions but will possess the technical depth to comprehend and implement an end-to-end solution that aligns with our reference security architecture's requirements - Good understanding of security management workflows in large enterprise organizations and complex environments - Has a good understanding of the current threat landscape and the challenges that most organizations are facing - Knowledge of security frameworks, standards, and best practices (e.g., NIST, ISO/IEC 27001) - Strong understanding of network security, cryptography, and secure software development - Experience with security technologies, such as firewalls, IDS/IPS, SIEM, and DLP - Excellent analytical, problem-solving, and communication skills Preferred: - GCP native security product experience (VPC Service Controls, Organization constraints, Cloud Armor, NextGen Firewall etc.) - Experience with Google SCC or Wiz is a plus - Vertex AI experience - AWS or Azure experience This position may be considered for a Remote or Hybrid (known internally at Target as "Flex for Your Day") work arrangement based on Target's needs. A Remote work arrangement means the team member works full-time from home or an alternate location that's not a Target location, does not have a desk at a Target location and may travel to HQ up to 4 times a year. A Hybrid/Flex for Your Day work arrangement means the team member's core role may be performed either remote or onsite at a Target location depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target.
Domain Architect - Security
NSW GovernmentThe New South Wales (NSW) Government serves as the governing body for Australia’s most populous state, dedicated to delivering programs and services that enha
Domain Architect - Security Location: Sydney, Australia Reference number Not specified Occupation Information and Communications Technology Work type Full-Time Location Sydney Region Salary Information $156,345 - $187,631 base + super Job Description: Domain Architect – Security Job Requisition ID: 665 Employment Type: Full Time Employment Term: Permanent Ready to make a splash in your career? WaterNSW is seeking an experienced Domain Architect - Security (Full-Time, Permanent) to join our Digital Partnerships & Data team. In this newly created role, you will lead the future of WaterNSW’s security architecture and by ensuring security is embedded in design across applications, infrastructure, data, and integrations. You’ll enable a resilient and trusted digital environment aligned to business goals and regulatory requirements. You will also be responsible for devining and governing target-state security across cloud, identity, data, integration and operational technology, driving standards, guiding cyber risk controls and protecting the organisation against emerging threats. This is an opportunity to work with an essential organisation creating a more sustainable future for the state. This role offers the flexibility to work around life, your contribution will be valued, and you’ll be supported to build a rewarding career. Our perks and Benefits: At WaterNSW, we believe that our employees should be as well taken care of as our rivers, dams, and pipelines, that’s why we offer a load of benefits. - Flexible working - Work a 9-day fortnight at Full pay on the Enterprise Agreement - Up to 16 weeks paid parental leave - Fertility leave - Corporate wear allowance - Professional development and educational assistance - Salary Range $156,345 - $187,631 base + super - And so much more! What you’ll do: - Security Architecture Leadership: Design and enforce enterprise security frameworks and standards across systems, applications, and integrations. Define and maintain the enterprise security architecture, aligning with business strategy, risk appetite, and regulatory requirements. Develop and continuously improve security reference architectures, patterns, and roadmaps to support strategic initiatives. Provide subject matter expertise and leadership on enterprise security architecture to business and technology stakeholders, influencing enterprise decision-making and investment priorities. - Design & Assurance: Ensure solutions are designed and implemented with security embedded by design (applications, infrastructure, data, and integrations). Provide security architecture guidance to solution architects and delivery teams throughout the project lifecycle. Lead security design reviews and assurance activities across multiple programs, ensuring enterprise consistency and traceability to risk frameworks. Conduct design reviews and provide assurance that solutions comply with security standards, regulatory obligations, and enterprise principles. - Project Delivery Support: Provide security input into solution design, testing, and delivery. Ensure secure-by-design practices are applied to all initiatives. Proactively identify architectural risks and define mitigation strategies to support program delivery. - AI Investment & Assurance: Assess security and privacy implications of AI initiatives. Ensure appropriate risk treatments are assigned and tracked to closure in collaboration with the Digital, Cyber & AI Risk Advisor. Drive the development of AI security frameworks and ethical governance models to support emerging technology adoption. - Governance & Compliance: Ensure security team are delivery in alignment to regulatory, ethical, and risk frameworks. Support and coordinate evidence for audits and risk closure processes. What we are looking for: - Tertiary qualifications in Information Technology, Computer Science, Cybersecurity, or a related discipline, or equivalent industry experience. - Extensive experience in enterprise security architecture with demonstrated ability to define security architecture patterns, controls and guardrails across cloud, applications, infrastructure, identity, data and integration layers, ensuring solutions are secure by design. - Strong understanding of cyber risk management, security standards, regulatory obligations, threat modelling, vulnerability management, audit requirements and security assurance across projects and BAU. - In-depth knowledge of IAM, SSO, MFA, privileged access, zero trust, encryption, network security, logging, monitoring, SIEM, and cloud security controls across platforms such as Azure and hybrid environments. - Strong background in working with senior stakeholders, influencing decision-making, and balancing security with business outcomes. - Current NSW Drivers Licence. How we will support you: At WaterNSW, we balance flexibility – and the way we work – with the needs of the business, our teams, and us as individuals. When it comes to working in an office, we work in a hybrid way. If you’re required to be in the field or on site, the benefits of flexibility can be achieved in other ways, such as through a condensed work week. We are proud to be a WORK180 Endorsed Employer and are committed to providing equal opportunities for women. Visit our WORK180 page to access our benefits and career development opportunities. Our commitment & culture: No matter how or where you work, safety is the number one priority. This means the physical and mental safety of you, your colleagues, and the public. WaterNSW is committed to building a workforce that reflects the diversity of the communities we serve. We strongly encourage Aboriginal and Torres Strait Islander peoples, Veterans, and people from all backgrounds to apply. We celebrate the unique perspectives, knowledge and lived experience you bring and are committed to ensuring an inclusive, supportive and respectful workplace for everyone. Who is WaterNSW? WaterNSW operates the state’s dams, capturing and storing water, and then supplying it ready for distribution – for the environment, agriculture, industry and the community. With 41 major dams and hundreds of waterways across the state, we play a vital role at the source of the state’s water, delivering two thirds of all water used in NSW. We’re the people taking care of the state’s water at the source – capturing, storing, delivering. Find out more at waternsw.com.au.
Senior Endpoint Security Engineer
ZensarAt Zensar, we’re “experience-led everything”. We are committed to conceptualizing, designing, engineering, marketing, and managing digital solutions and experiences for over 130 leading enterprises. We are a company driven by a bold purpose: Together, we shape experiences for better futures. Whether for our clients, our people, or the world around us, this belief powers everything we do. At the heart of our culture is ONE with Client - a set of four core values that reflect who we are and how we work: One Zensar, Nurturing, Empowering, and Client Focus. Part of the $4.8 billion RPG Group, we’re a community of 10,000+ innovators across 30+ global locations, including Milpitas, Seattle, Princeton, Cape Town, London, Zurich, Singapore, and Mexico City. We believe the best work happens when individuality is celebrated, growth is encouraged, and well-being is prioritized. We are an equal employment opportunity (EEO) and affirmative action employer, committed to creating an inclusive workplace. All qualified applicants will be considered without regard to race, creed, color, ancestry, religion, sex, national origin, citizenship, age, sexual orientation, gender identity, disability, marital status, family medical leave status, or protected veteran status.
Role Description We are seeking a skilled Sr Endpoint Security Engineer with hands-on experience in: - Symantec Endpoint Security - Symantec Data Loss Prevention (DLP) - Microsoft 365 Email Security - FortiGate Firewalls - Vulnerability Management - EDR - SIEM operations The role involves protecting endpoints, email, and network infrastructure through: - Threat detection - Data protection - Vulnerability remediation - Incident response Key Responsibilities: - Deploy, configure, and manage Symantec Endpoint Security (AV / SEP / SES Complete) across enterprise environments. - Monitor endpoint threats, malware outbreaks, suspicious behavior, and policy compliance. - Investigate and remediate endpoint security incidents including malware, ransomware, and insider threats. - Administer and manage Symantec Data Loss Prevention (DLP) across endpoints, email, and network channels. - Design, implement, and tune DLP policies for sensitive data protection (PII, financial data, intellectual property). - Monitor and investigate DLP incidents, perform root cause analysis, and coordinate remediation with business teams. - Configure detection technologies including policies, dictionaries, EDM/IDM, and fingerprinting techniques. - Perform DLP policy tuning to reduce false positives and improve detection accuracy. - Generate DLP reports and support audit/compliance requirements (ISO 27001, GDPR, etc.). - Manage Endpoint Detection & Response (EDR) activities such as alert investigation, host isolation, file quarantine, and IOC blocking. - Ensure endpoint agent health, version compliance, and policy tuning to reduce false positives. - Operate Vulnerability Management tools such as Qualys VMDR for endpoints, servers, and network devices. - Conduct authenticated vulnerability scans, analyze findings using CVSS, and risk-based prioritization. - Collaborate with infrastructure and application teams to remediate vulnerabilities and track closure through re-scans. - Integrate endpoint, email, firewall, EDR, and vulnerability logs with SIEM platforms (e.g., Microsoft Sentinel). - Monitor SIEM alerts, perform log analysis, correlation, and support threat hunting and incident investigations. - Administer Microsoft Defender for Office 365 including anti-phishing, anti-spam, antimalware, Safe Links, Safe Attachments, and email authentication (SPF, DKIM, DMARC). - Investigate email-based threats using Threat Explorer, message trace, and quarantine management. - Configure, manage, and troubleshoot FortiGate firewalls including policies, NAT, VPNs, IPS, AV, and web filtering. - Perform firewall rule reviews, optimization, security hardening, and participate in change management. - Generate security metrics, dashboards, and reports for management, audits, and compliance support. Qualifications - Hands-on experience in endpoint security technologies. - Strong analytical and problem-solving skills. - Experience with SIEM and EDR tools. - Knowledge of vulnerability management practices. Requirements - Proven experience in managing endpoint security solutions. - Familiarity with compliance standards (ISO 27001, GDPR). - Ability to work collaboratively with cross-functional teams. Benefits - Inclusive workplace culture. - Opportunities for professional growth. - Commitment to employee well-being. Company Description At Zensar, we’re “experience-led everything.” We are committed to conceptualizing, designing, engineering, marketing, and managing digital solutions and experiences for over 130 leading enterprises. We are a company driven by a bold purpose: Together, we shape experiences for better futures. - Part of the $4.8 billion RPG Group. - A community of 10,000+ innovators across 30+ global locations. - Focus on individual growth and well-being.
• Own the intake, prioritization, and completion of all inbound customer security questionnaires, RFPs, and due diligence requests including SIG, CAIQ, and custom enterprise questionnaires with a commitment to accuracy, thoroughness, and turnaround time. • Serve as the primary customer-facing representative for security and compliance, leading calls and meetings with enterprise customers, prospects, and their security or procurement teams. • Build and maintain a comprehensive, evergreen response library for common security and compliance questions, reducing duplication of effort and ensuring consistency across all customer engagements. • Build and maintain automations to continuously validate the organization's compliance posture across key frameworks including SOC2 Type II, ISO 27001, and HIPAA, coordinating evidence collection, managing external auditor relationships, and driving readiness for annual assessments. • Build dashboards and reporting pipelines that provide leadership with real-time visibility into compliance posture, open risks, and program health. • Design and automate the third-party risk assessment process, including vendor tiering logic, questionnaire workflows, and continuous monitoring for critical vendors. • Perform ongoing risk assessments and maintain a risk register that reflects the current threat and compliance landscape, escalating material findings to leadership with clear remediation recommendations. • Conduct third-party vendor risk assessments, including use case-specific risk analysis, ongoing tiering and monitoring, and implementation recommendations. • Author, maintain, and operationalize security policies and procedures; track employee acknowledgments and manage exceptions through to resolution. • Coordinate and participate in customer security review meetings, including onsite or virtual sessions with enterprise security, legal, and procurement stakeholders. • Collaborate cross-functionally with Engineering, Legal, and Product to gather documentation, validate control descriptions, and resolve compliance gaps surfaced through customer inquiries.

