Jobs
>
Dunkirk

    Security & Compliance Engineer - Maryland Line, United States - Trapeze Group

    Trapeze Group
    Trapeze Group Maryland Line, United States

    2 weeks ago

    Default job background
    Description

    Job Summary:
    We are seeking a skilled and knowledgeable Security and Compliance Engineer to join our information technology and security team.

    As a Security and Compliance Engineer, you will play a crucial role in maintaining and enhancing our security posture and ensuring compliance with various regulatory standards such as GDPR, CCPA, PCI-DSS, ISO 27001, etc.

    You will work closely with the Security Analyst as well as cross-functional teams to implement and monitor security measures, conduct regular audits, and ensure that all practices adhere to legal and regulatory requirements.


    In this role, you will be responsible for designing, implementing, maintaining, informing, and enforcing the security, privacy, and compliance programs, systems, and controls of our organization to protect our data and network infrastructure.

    You will be tasked with identifying vulnerabilities, implementing security measures, and responding to security breaches. The Engineer will also serve as the subject matter expert (SME) regarding security, privacy, and compliance controls.

    Our organization is committed to maintaining the highest standards of data security and privacy across our global operations. We are dedicated to implementing and overseeing robust security measures in line with international compliance standards.


    Job Description:
    Core Responsibilities

    Strategy & Planning
    Develop and implement comprehensive security strategies and policies in alignment with and leading to ISO 27001, SOC2, and PCI certification
    Perform and manage governance, risk, and compliance (GRC) assessments
    Manage security certifications and compliance documentation
    Alert management to emerging trends in security incidents and threads
    Formulate and update security, privacy, and compliance standards, policies, and best practices according to evolving industry standards; stay informed on the latest security trends, threats, and technologies
    Inform decisions throughout the organization in matters regarding security, privacy, and compliance; work with appropriate leadership to establish enforcement guidelines and procedures
    Acquisition & Deployment

    Participate in and administer the selection and acquisition of security tools and technologies
    Operational Management

    Assess and improve existing security measures and capabilities including but not limited to vulnerability management, incident management, BCP, endpoint protection, firewalls, and intrusion detection systems
    Assist in monitoring of network traffic for unusual activity and potential threats and take appropriate measures to counteract these threats
    Conduct regular security audits and risk assessments and recommend enhancements to management
    Collaborate with other departments to establish security best practices, vulnerability resolution, and ensure compliance with security regulations; act as liaison between IT, legal, and other departments to integrate security and compliance measures seamlessly into business processes
    Lead incident response efforts, including investigation and mitigation of security breaches or incidents
    Implement and manage security awareness training programs across the organization and provide guidance on security best practices to staff
    Oversee the installation and management of security software and hardware
    Coordinate with vendors and third-party service providers to secure network and information systems
    Identify, implement, and manage robust and industry-standards compliance processes and control to ensure compliance with CCPA and GDPR
    Drive R&D and engineering processes with security measures and process improvements
    Lead and manage the implementation and operation of SAST and DAST across the organization's products
    Lead and manage the implementation and operations of vulnerability management across information systems and application systems
    Serve as the primary point of contact for security incident management
    Escalate problems and incidents with accurate documentation to suitable stakeholders, when required
    Maintain all security, privacy, compliance documentation including policies, best practices, guidelines, and reporting KPIs
    What You Bring to the Role

    Education

    BA/BS in Computer Science, Computer Information Systems, Management Information Systems, Cybersecurity, or related field
    Relevant certifications such as CISSP, Security+, CISA, CISM, CEH, CIPP, CIPT are preferred
    Knowledge

    5+ years' professional experience in a similar role or a role involving security/privacy compliance
    Experience with security, privacy, compliance, and IT audits including GRC implementation and management
    Experience and knowledge of ISO27001, SOC2, and PCI certification, along with security frameworks and compliance including NIST, GDPR, and CCPA
    Experience articulating security standards and processes in response to RFP and government questionnaires
    Experience supporting R&D and engineering teams with penetration and vulnerability assessment and resolution management including implementation of secure SDLC
    Experience building policies and procedures for mid-large businesses to reach required security certifications and/or compliance
    Knowledge and experience with security tools and technologies similar but not limited to Rapid7, Security Scorecard, Invicti, Crowdstrike, and/or Knowbe4
    Proficiency designing and enforcing security standards, processes, and guidelines
    Skills and Abilities

    Demonstrated ability to work independently with general guidelines and little supervision; solutions-driven with a focus on delivering the right outcomes for a secure business
    Ability to conduct research into a wide range of computing issues as required
    Highly self-motivated with an attention to detail and an aptitude to learn; ability to absorb and retain information quickly
    Experience working in a team-oriented, collaborative environment; demonstrated mature and professional approach to work with an ability to instill a high level of confidence with others
    Excellent troubleshooting and problem-solving skills within a multi-faceted environment
    A cooperative approach to "go the extra mile" to achieve results
    Exceptional customer service skills and the ability to handle stressful situations
    Effective written and oral communication skills and interpersonal skills in dealings with team members and other stakeholders
    Superior command of written English with a demonstrated ability to produce quality documentation
    Ability to manage simultaneous projects and respond to change effectively

    Work Environment


    We are a hybrid-remote workplace combining in-office and remote work to varying degrees based on role requirements and employee location.

    This position may involve occasional travel within North America.


    This position may require the ability to participate in an on-call roster rotation and flexibility regarding varied work hours required to address outages.


    Worker Type:
    Regular


    Number of Openings Available:
    1
    #J-18808-Ljbffr


  • Trapeze Group Maryland Line, United States

    Job Summary: · We are seeking a skilled and knowledgeable Security and Compliance Engineer to join our information technology and security team. As a Security and Compliance Engineer, you will play a crucial role in maintaining and enhancing our security posture and ensuring com ...


  • Fuse Engineering Maryland Line, United States

    Patching servers and workstations with Red Hat Satellite server · STIG compliance applied to all machines (assuming it makes sense to do so) · Maintaining STE compliance (SEAR logs, UAM reporting, McAfee reporting, Nessus Agent scanning) · Work with ESXi and vCenter to ensure ...


  • Everfox Maryland Line, United States

    Intelligent. Dynamic. Resilient. · Everfox, formerly Forcepoint Federal, has been defending the world's most critical data and networks against the most complex cyber threats imaginable for more than 25 years. As trailblazers in defense-grade, high assurance cyber security, we ...

  • Universal Stainless & Alloy Products

    Technical Manager

    1 week ago


    Universal Stainless & Alloy Products Dunkirk, United States Full time Salary

    Dunkirk Specialty Steel, LLC, produces semi-finished and finished specialty steel long products and plate including nickel alloy, stainless steel, tool steel and aircraft quality low alloy steels. Our products, which are sold to service centers, forgers, re-rollers and original e ...

  • Universal Stainless

    Electrical Engineer

    2 weeks ago


    Universal Stainless Dunkirk, United States

    Job Description · Job Description · ELECTRICAL ENGINEER · Maintenance Department · Position Overview: · Effective deployment of capital dollars and resources targeted at the implementation of equipment improvement and sustainability strategy projects. Project management of engi ...

  • Image Engineering

    Permitting Specialist

    2 weeks ago


    Image Engineering Maryland Line, United States

    Job TypeFull-timeDescriptionImage Engineering was founded as a company that pushes boundaries, develops new ideas through design and fabrication, and is a leader in the visual display and special effects industry. We are comprised of a team of artists, engineers, event producers, ...

  • Image Engineering

    Permitting Specialist

    2 weeks ago


    Image Engineering Maryland Line, United States

    Job Type · Full-time · Description · Image Engineering was founded as a company that pushes boundaries, develops new ideas through design and fabrication, and is a leader in the visual display and special effects industry. We are comprised of a team of artists, engineers, even ...

  • Universal Stainless

    Electrical Engineer

    1 week ago


    Universal Stainless Dunkirk, United States

    Job Description · Job DescriptionELECTRICAL ENGINEER · Maintenance Department · Position Overview: · Effective deployment of capital dollars and resources targeted at the implementation of equipment improvement and sustainability strategy projects. Project management of engineeri ...


  • Abacus Maryland Line, United States

    Requisition NumberOMF-REQ Number of Resources1Start Date11/1/2022End Date7/31/2023Work LocationMD Remote Location (MD Remote Location, Virtual, MD 00000)Estimated Total Expense Amount Per Resource--Requisition StatusOpenType of ServiceContingent Workforce - TechnologyJob TitleeGR ...

  • Kyyba

    Application Tester

    2 weeks ago


    Kyyba Maryland Line, United States

    Creating testing procedures to evaluate the performance of the E&E Application · • Building software testing plan/programs that automate testing processes · • Running the software testing procedures to evaluate the Application Documenting all · testing procedures · • Reportin ...

  • Marathon TS

    Network Engineer

    2 weeks ago


    Marathon TS Maryland Line, United States

    Marathon TS is looking for a Network Engineer to provide the following: · Proactively review and assess existing physical, logical, and virtual network architecture, including specific configuration information for network device hardware and software such as Quality of Service ( ...

  • St Mary's County

    Project Manager III

    2 weeks ago


    St Mary's County Maryland Line, United States

    Salary : · $81, $90,438.40 Annually · Location : · California, MD · Job Type: · Full-Time · Job Number: · Department: · Public Works and Transportation · Opening Date: · 01/31/2024 · Closing Date: · Continuous · Job Summary · Manages projects in the implementation o ...

  • McCormick & Co Inc

    engineering manager

    3 weeks ago


    McCormick & Co Inc Maryland Line, United States

    You may know McCormick as a leader in herbs, spices, seasonings, and condiments - and we're only getting started. At McCormick, we're always looking for new people to bring their unique flavor to our team. · McCormick employees - all 14,000 of us across the world - are what make ...

  • McCormick & Co Inc

    engineering manager

    4 weeks ago


    McCormick & Co Inc Maryland Line, United States

    You may know McCormick as a leader in herbs, spices, seasonings, and condiments - and we're only getting started. At McCormick, we're always looking for new people to bring their unique flavor to our team. · McCormick employees - all 14,000 of us across the world - are what make ...


  • Falcon IT & Staffing Solutions Maryland Line, United States

    12th May, 2024 · Role: Infrastructure Services Technical Project Manager. · Location: Woodlawn, MD / Hybrid (Remote Temporarily). · Job Description: · • Experience in the processes and module development principles that enable effective communication with stakeholders to devel ...


  • Davis Defense Group Maryland Line, United States

    Position Title: Information Security Analyst, Journeyman (PMA-271) · Requisition #: 86 · Location: Pax River, MD · Clearance Level Required: A minimum of SECRET, with the ability to obtain Top-Secret Security Clearance · Davis Defense Group (DDG) has secured a stellar reputat ...

  • Nine Mind Solutions

    Systems Administrator

    2 weeks ago


    Nine Mind Solutions Maryland Line, United States

    A large Prime Contractor and U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats. We are seeking ...

  • Adecco US, Inc.

    Technical Manager

    3 weeks ago


    Adecco US, Inc. Dunkirk, United States

    Technical Director/Metallurgist: **Primary Objective** · Position is responsible for providing order-to-cash metallurgical leadership and support related to the development, implementation, and continuous improvement of processes and products that safely and cost-effectively mee ...


  • Motorola Solutions Maryland Line, United States Full time

    Company Overview · At Motorola Solutions, we're guided by a shared purpose - helping people be their best in the moments that matter - and we live up to our purpose every day by solving for safer. Because people can only be their best when they not only feel safe, but are safe. ...

  • Kairos

    Cybersecurity Analyst

    3 weeks ago


    Kairos Maryland Line, United States

    KAIROS, Inc is searching for an energetic, experienced, and highly motivated Cybersecurity Analyst, to join our team. This position is a remote position that will require travel both stateside (CONUS) and overseas (OCONUS). · Established in July 2013, KAIROS, Inc. is a growing W ...