Security Engineer Remote Jobs in Hawaii (US)
This page tracks remote security engineer openings that are location-eligible for Hawaii.
This page tracks remote security engineer openings that are location-eligible for Hawaii.
Open jobs
3,206
Hiring companies this week
10
Salary sample
$81,000 - $170,000
Jobs added last hour
0
3206 Jobs
1669 Companies
• Conduct comprehensive application security assessments of agentic AI pipelines, tools, and frameworks for leading companies and labs. Examine vulnerabilities in model architectures, guardrails, and deployment infrastructure while developing mitigation strategies. • Develop and share novel prompt injection techniques targeting agentic workflows, including indirect injection via tool outputs, multi-turn manipulation, and cross-agent exploitation. Produce actionable attack libraries and defensive countermeasures for client engagements. • Conduct security assessments of client code bases using a combination of static analysis, dynamic testing, and manual code review, identifying vulnerabilities and developing mitigation strategies, with a focus on findings at the intersection of application security and Agentic AI security. • Conduct threat modeling and risk assessments to proactively identify potential risks for clients and develop mitigation strategies for future prevention, with particular attention to prompt injection attack surfaces in agentic orchestration layers. • Work with leading industry teams to review system code and architecture, and help assure their products through system analysis and modeling. • Develop and contribute to AI regulatory frameworks, establishing assurance methods and auditing processes for mission-critical AI applications while ensuring alignment with emerging industry standards and safety requirements.
Established in 1988, Prime Therapeutics helps people get the medicine they need to manage their health. This company manages pharmacy coverage for patients thro
Senior IT Security Trainer locations Home time type Full time job requisition id R-16749 At Prime Therapeutics (Prime), we are a different kind of PBM, with a purpose beyond profits and a unique ability to connect care for those we serve. Looking for a purpose-driven career? Come build the future of pharmacy with us. Job Posting Title Sr. IT Security Trainer - Remote Job Description The Senior IT Security Trainer is responsible for developing, delivering, and sustaining a comprehensive Information Security awareness and training program for the Prime workforce. This role focuses on identifying key human-related security risks—such as phishing, social engineering, data handling, and password hygiene—and translating them into effective, behavior-based training that drives lasting employee behavior change. The Senior IT Security Trainer partners with teams across the organization to create and deliver engaging security education through in-person, hands-on, and online Learning Management System (LMS) formats. The role requires strong communication and presentation skills to clearly convey technical security concepts to diverse, non-technical audiences and to measure the ongoing effectiveness of the security awareness program beyond one-time training delivery. Responsibilities - Plan and execute enterprise‑wide tabletop exercises to test incident response and crisis management readiness, collaborating with cross‑functional stakeholders to evaluate preparedness, document lessons learned and remediation action plans. - Identify top human risks to organization and behaviors that employees need to be aware of to reduce security risks - Develop and maintain security awareness program to effectively change Prime employee behaviors to act in a secure manner to reduce risk to the organization - Share deep level of technical knowledge in Information Security to ensure security awareness programs meet all industry regulations, standards, and compliance requirements - Develop curriculum and presentations on Information Security using effective and diverse message distribution techniques to ensure Prime employees understand and apply appropriate behaviors in their work activities - Communicate complex security information in non-technical language through presentations delivered to all levels of organization - Administer phishing detection and awareness program - Other duties as assigned Minimum Qualifications - Bachelor's degree in computer science or related area of study, or equivalent combination of education and/or relevant work experience; HS diploma or GED is required - 5 years of Information Security experience, including 5 years' formal experience as trainer, instructor, or teacher - Must be eligible to work in the United States without need for work visa or residency sponsorship Must be eligible to work in the United States without the need for work visa or residency sponsorship Additional Qualifications - Proven experience designing and writing classroom curriculum and syllabi - Strong critical thinking skills - Ability to lead and persuade others - Ability to coordinate multiple requests simultaneously and work under pressure with strict guidelines Preferred Qualifications - PBM / healthcare experience - Certified Instructor certificate or degree - Instructional System Designs (ISD) methodology experience - Experience with phishing education and awareness tools Potential pay for this position ranges from $81,000.00 - $138,000.00 based on experience and skills.
• Lead new customer acquisition efforts across Indiana, with a focus on the commercial real estate and multifamily verticals • Build and execute a territory growth plan centered on proactive outreach, discovery, and long-term account development • Own the prospect and customer-facing milestones of the sales lifecycle, from prospecting and discovery to solution positioning, proposal delivery, negotiation, and close • Conduct persuasive product and solution demos, aligning customer needs with cloud, on-prem, or hybrid physical security offerings • Partner closely with Sales Engineering and Technical Account Management to ensure accurate solution design and smooth project transitions • Represent K Group Companies at industry events, networking functions, and regional engagements • Maintain accurate CRM data, pipeline forecasts, and activity reporting • Act as a trusted advisor to prospects, helping them modernize legacy systems and plan long-term technology refresh cycles
Coretek is the #1 Microsoft Azure Partner in the U.S. and an Azure Expert Managed Service Provider.
• Design and implement Microsoft 365 E5 solutions, focusing on both productivity and security workloads according to Microsoft and Coretek best practices. • Design and implement enterprise collaboration solutions across Microsoft Teams (chat, meetings, lifecycle management, governance), SharePoint Online (Permissions, Access control, governance), OneDrive for Business (storage, sharing, lifecycle management), and Exchange Online (mail flow, protection, hybrid scenarios). • Lead migration and modernization projects, including Exchange and file migrations to Microsoft 365 and tenant-to-tenant or hybrid transformations. • Establish governance for collaboration, external sharing, and data lifecycle management. • Drive improvements in user productivity, adoption, and collaboration effectiveness across client environments. • Design and implement Microsoft Intune (MDM/MAM) solutions including device enrollment, provisioning, application deployment, and mobile application management. • Configure device compliance policies, endpoint security controls, and Conditional Access integration with device state. • Lead modern endpoint transformation initiatives including Windows Autopilot, co-management, and cloud-first device management strategies. • Develop governance and standards for device management across enterprise clients. • Implement Microsoft 365 E5 security solutions, including Microsoft Defender (Endpoint, Identity, Office 365, Cloud Apps) and Microsoft Purview (DLP, retention, eDiscovery, compliance management). • Implement Zero Trust-aligned security controls and best practices across client environments. • Develop and enhance security monitoring, policies, and automation. • Assess client security infrastructure, identify vulnerabilities, and recommend Coretek services to address gaps. • Design and implement Microsoft Entra ID (Azure AD) solutions including Conditional Access, MFA, and identity lifecycle management. • Implement authentication strategies and hybrid identity configurations including directory synchronization (AADC) and related components. • Act as the technical lead on engagements, collaborating with architects and engineering teams on solution design and implementation. • Establish, document, and communicate standards and best practices across M365 workloads in accordance with Coretek methodologies. • Follow Coretek implementation plans and QC guides when working on projects, contributing feedback and continuous improvement to the process. • Self-manage projects by escalating risks and issues while working within project scope and budget. • Mentor junior consultants and contribute to practice development. • Provide training and knowledge transfer to client IT staff on Microsoft technologies and best practices. • Stay current on Microsoft 365 roadmap across productivity, endpoint management, and security domains. • Speak with clients to identify opportunities within their organization to address pain points where additional Coretek products and services can be leveraged.
As the AI platform for business transformation, we're putting AI to work across organizations — freeing people for work that matters. Making old tech work with new tech. Reaching across departments, from the front office to the back office and every office in between. Our ambition? To become the AI defining enterprise software company of the 21st century (or "AI DESCO21C," as we like to call it). With more than 8,400+ customers, we serve approximately 90% of the Fortune 500®, and we're proud to be a Fortune 100 Best Companies to Work For® and World's Most Admired Companies™. Explore your future career with us, visit www.careers.servicenow.com From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license.
Role Description The ServiceNow Security Organization (SSO) delivers world-class, innovative security solutions to reduce risk and protect the company and our customers. We enable our customers to migrate their most sensitive data and workloads to the cloud, accelerating our business so that we are the most trusted SaaS provider. We create an environment where our employees are proud to work and can make a positive impact. ServiceNow’s Security Incident Command (SIC) team is seeking an experienced senior security incident commander to join our fast-growing team. This role will support the orchestration of incident response strategy and communications during critical information security-related incidents. The SIC team maintains and executes the Major Security Incidents (MSI) lifecycle within ServiceNow, including Preparation, Response, and Recovery. MSIs are our most challenging and impactful security incidents which pose active or heightened risk to the company and/or our customers. - Orchestration of response and remediation of incident response for highest criticality security events. - Take ownership and lead response to critical incidents within the company. - Establish and mature documentation surrounding protocols and procedures governing the security incident command team. - Prepare and deliver communications, including executive summaries and incident briefings, to key stakeholders during and after incident response. - Conduct rapid response, mitigation, and investigations on the highest priority cases impacting ServiceNow and user data. - Partner with the team members across multiple regions to drive response and investigations globally. - Organization and facilitation of scenario-based exercises to test and improve incident management and response strategies. - Maintenance of existing playbooks and procedures, as well as developing new ones, to further standardize SIC and its partners' responses when verifying MSIs. - Contribute to the organization and completion of Post-Incident Reviews (PIRs) and Root Cause Analyses (RCAs) following major security incidents. - Identify new ways to simplify, integrate, automate and refine the major security incident process to better support internal and external stakeholders. Qualifications - Experience in leveraging or critically thinking about how to integrate AI into work processes, decision-making or problem-solving. - 12+ years of total cybersecurity professional experience or similar experience with education. - 5–8+ years of deep domain expertise in incident response and/or incident management. - Experience leading or supporting complex security incidents to resolution end-to-end. - Excellent verbal and written communication skills (English). - Comfort communicating complex topics in a clear and concise manner to different tiers of audiences (highly technical, less technical, executives, practitioners). - Problem-solving and decision-making skills. - Ability to quickly and accurately assess a situation, identify and prioritize risks, and make sound decisions. - Familiarity with cybersecurity principles and frameworks (e.g. MITRE ATT&CK). - Knowledge across multiple security domains is a plus. - Experience planning and/or orchestrating tabletop exercises is a plus. Requirements - West Palm Beach Florida (WPB) is available for relocation. Full relocation costs are provided by ServiceNow. - For positions in this location, we offer a base pay of $165,500 - $289,600, plus equity (when applicable), variable/incentive compensation and benefits. - Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. - Compensation is based on the geographic location in which the role is located and is subject to change based on work location. Benefits - Health plans, including flexible spending accounts. - 401(k) Plan with company match. - Employee Stock Purchase Plan (ESPP). - Matching donations. - Flexible time away plan. - Family leave programs.
Accela is a software development company specializing in solutions tailored for government agencies. Based in San Ramon, California, the privately held business was founded in 1999
• Lead the cybersecurity operations and security engineering function across corporate, cloud, hybrid, and production environments. • Manage and develop security engineers and analysts responsible for monitoring, detection, response, infrastructure security, vulnerability management, and operational security controls. • Own monitoring, detection, and response capabilities, including SIEM, EDR/XDR, DLP, vulnerability management, firewall, WAF, email security, identity security, and cloud security tooling. • Serve as the operational control point during significant cybersecurity incidents, coordinating response across Security, IT, Engineering, Legal, Communications, GRC, and executive stakeholders. • Develop, maintain, and test incident response playbooks, escalation paths, tabletop exercises, on-call procedures, and post-incident review processes. • Lead post-incident reviews and ensure root-cause remediation, lessons learned, and control improvements are completed. • Evaluate, implement, and optimize security solutions across endpoint, identity, network, email, cloud, logging, detection, and response platforms. • Partner with IT and Engineering to strengthen cloud, hybrid, and corporate security controls, including identity, network segmentation, key management, secrets management, privileged access, endpoint hardening, and secure configuration management. • Support GovRAMP and PCI DSS control requirements related to logging, monitoring, vulnerability management, incident response, endpoint security, access control, encryption, cloud security, configuration management, and evidence collection. • Drive measurable risk reduction across infrastructure, endpoints, cloud environments, identity systems, and business-critical services. • Own operational vulnerability management processes for infrastructure, cloud, endpoint, and corporate systems. • Support business continuity, disaster recovery, and resilience planning from a cybersecurity perspective. • Manage cybersecurity operations budget inputs, including vendor evaluation, renewals, tool rationalization, and investment recommendations. • Develop operational security metrics and reporting for executive leadership, including incident trends, vulnerability risk, detection coverage, response performance, control health, and remediation progress. • Stay ahead of evolving threats, including cloud-native attacks, identity compromise, ransomware, AI-enabled threats, and emerging attacker techniques. • Participate in or manage the security on-call rotation.
• Write clean, structured scripts (primarily Python and Bash) to automate repetitive security operations, optimize incident response workflows, and eliminate manual overhead. • Build, test, and deploy custom detection rules to flag anomalous behavior, misconfigurations, and potential threats across our cloud infrastructures (AWS, GCP, or Azure). • Design, construct, and maintain security dashboards (using tools like ELK/Elasticsearch, Splunk, Datadog, or SIEM platforms) to give our team clear, real-time visibility into our risk posture.
We believe that everyone deserves to be secure. This is the foundation of everything we do for our customers, our consultants, and our communities. Our consulting services span cybersecurity, cyber risk, engineering, project leadership and learning services. Our team of industry veterans helps our partners with complex security and technology problems in a human way. Our values of integrity, ownership and purposefulness ensure our team provides the best possible outcomes time and time again, while helping us build and maintain long-term healthy relationships with our customers.
Role Description As a Senior Security Analyst Consultant – Attack Surface Management, you will lead and evolve our client’s enterprise Attack Surface Management (ASM) program, helping reduce cyber risk through proactive discovery, analysis, automation, and collaboration. This is a highly visible role that combines strategic leadership with hands-on technical execution, requiring expertise across vulnerability management, cloud security, threat intelligence, and offensive security disciplines. You will be responsible for developing a comprehensive view of the organization's attack surface, identifying opportunities to reduce exposure, and driving remediation efforts in partnership with engineering, cloud, DevOps, and security teams. Leveraging data, automation, and threat intelligence, you will help prioritize risk reduction initiatives while influencing architectural decisions that strengthen the organization’s security posture. This role is ideal for someone who enjoys building programs, solving complex security challenges, and partnering across the enterprise to create meaningful security outcomes. Qualifications - 6+ years of experience in cybersecurity, including security operations, threat hunting, offensive security, red teaming, or related disciplines - Experience building, scaling, or leading Attack Surface Management (ASM) capabilities and programs - Strong understanding of vulnerability management methodologies and risk prioritization frameworks - Experience working within multi-cloud environments, including AWS, Azure, and GCP - Deep knowledge of attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK - Expertise in network security, cloud security, attack path analysis, and external attack surface discovery - Experience conducting OSINT, reconnaissance, and threat intelligence activities - Proficiency with scripting and automation technologies such as Python and PowerShell - Strong understanding of enterprise infrastructure, application architectures, and data flows - Ability to evaluate and influence architectural decisions that reduce organizational risk - Experience leading cross-functional security initiatives and driving collaboration across multiple teams - Excellent written and verbal communication skills with the ability to communicate effectively with both technical and non-technical stakeholders - Strong analytical and problem-solving skills with a data-driven approach to risk management Requirements - Industry certifications such as CISSP, OSCE, GREM, or similar cybersecurity credentials - Experience applying AI and automation technologies to security operations or attack surface management programs - Experience with cloud-native security platforms and exposure management tooling - Familiarity with threat modeling, purple teaming, or advanced adversary simulation exercises - Experience working in large-scale enterprise environments with complex security requirements Benefits - The annual salary range for this role is $110,000-$140,000. - We offer Medical, Dental, Vision plans, 401K with matching, and PTO for salaried employees. - Work/life balance – we know there’s more to life than work! We encourage our team to pursue other passions, get outside, and spend time with family. We work with clients and consultants to set expectations for a manageable workload. Company Description Kalles Group is an equal-opportunity employer and does not discriminate on the basis of creed, nationality, race, ethnicity, disability, gender, or other protected class.
Role Description We are looking for an Application Security Engineer to embed security throughout the software development lifecycle, partnering with engineering teams to design secure systems, identify vulnerabilities, and reduce risk across our application portfolio. The role blends hands-on offensive and defensive skills with strong communication and collaboration, helping development teams build secure software efficiently rather than slowing them down. The ideal candidate brings deep technical security expertise, strong software engineering fundamentals, and a track record of shipping security improvements that meaningfully reduce risk in production. Key Responsibilities - Conduct threat modeling and security architecture reviews for new and existing applications and services. - Perform manual code reviews, secure design consultations, and pair with engineering teams on hardening critical components. - Operate and tune SAST, DAST, IAST, SCA, and secret-scanning tools across CI/CD pipelines. - Drive vulnerability management workflows including triage, prioritization, owner assignment, and SLA tracking. - Build paved-road libraries and frameworks that make secure patterns the default for engineering teams. - Lead red-team and purple-team exercises against internal applications and drive remediation of identified weaknesses. - Implement and operate runtime protections including WAF, RASP, bot protection, and abuse-detection mechanisms. - Design and enforce secure authentication, authorization, session management, and cryptographic patterns. - Partner with infrastructure and platform teams to harden container, Kubernetes, and cloud environments. - Develop and deliver application security training, lunch-and-learns, and onboarding content for engineering staff. - Respond to security incidents involving application vulnerabilities or active exploitation. - Track and apply emerging threats and CVEs that may affect the application portfolio. - Maintain comprehensive, current technical documentation — including architecture diagrams, design decisions, configuration references, runbooks, and operational procedures. - Stay current with application security research and emerging defensive tooling. Qualifications - Bachelor’s degree in Computer Science, Cybersecurity, or a related field. - Five or more years of application security or security engineering experience. - Strong understanding of OWASP Top 10, common vulnerability classes, and modern exploit patterns. - Hands-on experience performing code review across at least two major languages. - Deep familiarity with SAST, DAST, SCA, and CI/CD-integrated security tooling. - Strong understanding of authentication, authorization, and cryptographic primitives. - Experience with cloud security and modern infrastructure controls. - Strong communication skills with technical and non-technical audiences. - Proficiency in at least one programming language for tooling and automation. - Experience working closely with engineering teams in an Agile environment. Preferred Qualifications - Industry certifications such as OSCP, OSCE, GWAPT, or CISSP. - Experience with offensive security tooling and red-team operations. - Bug bounty experience, public CVEs, or open-source security contributions. - Familiarity with AI/LLM application security considerations. - Exposure to regulated industries with strict compliance requirements. How to Apply Would you like to know more about this opportunity? For immediate consideration, please send your resume to [email protected] . Learn more about Bright Vision Technologies at www.bvteck.com .
Founded in 2018, Ignite IT is a technology firm specializing in agile development, IT modernization, security and risk management, and hyper-automation solutions. Based in Ashburn,
Role Description The Senior Network Security Engineer supports our program with the U.S. Census Bureau by designing, implementing, operating, troubleshooting, and improving enterprise network security services across on-premises, hybrid-cloud, and cloud-connected environments. The role focuses on: - Firewall engineering - VPN and remote access services - RSA SecurID or equivalent MFA/token services - Content filtering - Network access control - Edge security services - Monitoring and logging integration - Vulnerability remediation - Security documentation - Policy compliance for TCO-managed systems The engineer serves as a senior technical resource for: - Secure network architecture - Operations support - Incident response coordination - Compliance support This position works closely with: - TCO leadership - Network Infrastructure - Identity and Domain Services - Cloud teams - SOC/NOC/Operations Center personnel - The Office of Information Security (OIS) - Information System Security Officers (ISSOs) - System Owners - Application teams Qualifications - 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. - 5+ years of hands-on experience designing, implementing, administering, and troubleshooting enterprise firewall platforms in production environments. - Hands-on experience with Cisco firewall technologies such as Cisco FTD/FMC, ASA, AnyConnect/Secure Client, or equivalent Cisco security platforms. - Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, App-ID/User-ID, security profiles, and policy optimization. - Experience with firewall policy design, NAT, segmentation, remote access VPN, site-to-site VPN, IDS/IPS integrations, high availability, logging, and operational troubleshooting. - Working knowledge of Cloudflare or equivalent DNS, DDoS, WAF, CDN, Zero Trust, or edge security platforms. - Experience with VPN services, secure remote access, RSA SecurID or equivalent MFA/two-factor authentication services, hardware and software token support, directory integration, partner tunnels, cloud tunnels, and cloud connectivity troubleshooting. - Experience supporting MFA server operations, including software updates, patching, certificate/configuration changes, backups, log review, monitoring, vulnerability remediation, and vendor/support escalation. - Working knowledge of TCP/IP, DNS, DHCP, IPAM, BGP, routing, subnetting, TLS/certificates, VPN protocols, packet capture, NetFlow/traffic analysis, and common network diagnostic tools. - Experience supporting network security in AWS and/or Azure environments. - Experience integrating network security controls with enterprise monitoring, logging, SIEM, SOC/NOC, or incident response workflows. - Experience working within formal change management, configuration management, release management, incident management, and vulnerability remediation processes. - Ability to develop clear technical documentation, diagrams, SOPs, runbooks, implementation plans, rollback plans, status updates, and audit evidence. - Strong communication and collaboration skills, including the ability to explain technical risk, operational impact, and recommended actions to technical and non-technical stakeholders. - Ability to obtain and maintain a Public Trust / Background Investigation and complete required DOC/Census security processing, security/privacy training, and non-disclosure requirements. Requirements - Deep experience administering Cloudflare DNS, DDoS protection, WAF, CDN, Access, Gateway, Tunnel, Magic Transit, or Zero Trust services. - Experience with content filtering platforms, secure web gateways, email security gateways, URL filtering, DLP integrations, APT/malware defense integrations, and related cloud security services. - Deep experience with RSA SecurID/RSA Authentication Manager or equivalent MFA platforms, including token administration, agent/middleware upgrades, high availability, disaster recovery, reporting, and integration with VPN and directory services. - Experience with Network Access Control technologies such as Cisco ISE, 802.1X, endpoint posture, wireless/LAN access controls, and identity-aware access policies. - Experience with AWS security and networking services such as VPC, Transit Gateway, Security Groups, NACLs, Route 53, Network Firewall, Direct Connect, VPN, GuardDuty, Security Hub, IAM, and CloudWatch. - Experience with Azure security and networking services such as VNets, NSGs, Azure Firewall, Application Gateway/WAF, VPN Gateway, ExpressRoute, Private Link, Defender for Cloud, Entra ID, and Azure Monitor. - Experience supporting federal cybersecurity and compliance requirements such as NIST, FISMA, FedRAMP, ATO support, POA&M remediation, continuous monitoring, audit evidence packages, and security control validation. - Experience with automation and IaC tools such as Terraform, Ansible, Python, PowerShell, Git, APIs, CI/CD pipelines, or vendor automation frameworks. - Experience with Zero Trust architecture, SASE/SSE, ZTNA, secure segmentation, policy-as-code, microsegmentation, or identity-aware network access. - Familiarity with F5/load-balancing/application-delivery concepts for cross-team coordination; hands-on F5 administration is not required for this role. - Experience leading technical projects, coordinating across matrixed teams, mentoring junior engineers, and supporting Agile/Scrum or JIRA-based task tracking. Benefits - 401(k) - 401(k) matching - Dental insurance - Flexible schedule - Flexible spending account - Health insurance - Health savings account - Life insurance - Paid time off - Professional development assistance - Referral program - Retirement plan - Tuition reimbursement - Vision insurance
3,196more opportunities are still waiting for you.Log in now and take your next shot before someone else does.
Azure, Python, Cloud, AWS, AI, Go