Information Security Analyst 3

remote typeRemotelocationsUS – Remotetime typeFull timeposted onPosted 6 Days Agojob requisition idJR25-000227

It’s fun to work in a company where people truly BELIEVE in what they’re doing!

We’re committed to bringing passion and customer focus to the business.

Public Partnerships LLC supports individuals with disabilities or chronic illnesses and aging adults, to remain in their homes and communities and “self-direct” their own long-term home care. Our role as the nation’s largest and most experienced Financial Management Service provider is to assist those eligible Medicaid recipients to choose and pay for their own support workers and services within their state-approved personalized budget.  We are appointed by states and managed healthcare organizations to better serve more of their residents and members requiring long-term care and ensure the efficient use of taxpayer funded services.

Duties & Responsibilities:

  • Reporting to the CISO, the Information Security Analyst is responsible for the operational and technical tasks of the PPL cybersecurity and security risk management program.
  • Oversee the day-to-day technical services of the company’s cybersecurity platforms, services, and deliverables.
  • Represents information security in meetings convened to evaluate new applications and software-as-a-service offerings and evaluates other IT purchases to ensure they meet security and compliance requirements.
  • Monitors and validates system and service compliance with information security procedures and policies to ensure consistency of internal controls across departments.
  • Maintains up-to-date knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.
  • Serves as a member of the cybersecurity incident response team.
  • Develops and executes a cybersecurity awareness training program.
  • Works with IS and stakeholders to assess IT risk and recommend information security controls to minimize risk.
  • Assists in the development and maintenance of information security policies and procedures.
  • Conducts risk assessments of information systems.
  • Investigates and follows through on IT security incidents in a geographically distributed environment, considering all relevant technical and non-technical stakeholders during all phases of the incident.
  • Analyzes reports about potential / suspected incidents, collects and analyzes technical incident information and log data, investigate, generate reports, and ensure progress on incident tickets.
  • Investigates SIEM alerts / events for relevance, severity, and impact and escalates incidents for further investigation or remediation.
  • Provides input and guidance for developing and updating runbooks and detection rules.
  • Other duties as assigned.

Required Skills:

  • Demonstrated knowledge of information security principles and best practices.
  • Demonstrated knowledge of social engineering techniques and other information security threats required.
  • At least 5+ years of relevant work experience in at least one of the following areas: Cybersecurity operations, Incident Response, Threat Intelligence, Threat Hunting and Digital Forensics.
  • Technical system expertise (e.g., gathered from being an IT Administrator) with relevant exposure and expertise in IT Security, in several of the following technologies: Linux and Windows operating systems, web-technologies (encryption, HTTP, REST), networking, cloud environments.
  • General knowledge of on-premises, cloud, and mobile computing environments (e.g., Microsoft Windows, Apple Macintosh, Linux, AWS, Azure, Google), scripting languages, and security best practices.
  • Working knowledge and demonstrated ability to perform risk assessments, risk impact analysis, mitigating and compensating control recommendations as applied to information security.
  • Experience in the following technologies – SIEMs, WAFs, IDS/IPS, anti-malware, EDR, SOAR, secure cloud access, vulnerability scanning platforms, DLP, private cloud, and open-source security frameworks.
  • Experience presenting analytic conclusions and research to both technical and non-technical audiences through briefings, emails, etc.
  • Experience with Contributing to risk assessments and mitigation strategies for identified threats.
  • Familiarity with automation and CI/CD pipeline using various tools like GitHub, Bitbucket, etc.
  • General knowledge and demonstrated ability to perform vendor vulnerability and security governance assessments.
  • Demonstrated ability to develop, maintain, and execute a cybersecurity awareness program.
  • Ability to use discretion when handling confidential information.
  • Demonstrated analytical and problem-solving abilities.

Qualifications:

  • Bachelor’s degree in Information Systems, Computer Science, or related field preferred; combination of equivalent experience and education will be considered.
  • Certified Information Systems Security Professional (CISSP), Security+, or other security certifications preferred.
  • 4-6 years information security experience required.
  • 1-2 years networking experience required.
  • 1-2 years Windows and/or Linux server administration experience required.
  • 1-2 years of project management experience preferred.

Certification: Azure Security Engineer Associate, CISSP

 Compensation & Benefits: 

  • 401k Retirement Plan
  • Medical, Dental and Vision insurance on first day of employment
  • Generous Paid Time Off 
  • Tuition Reimbursement Program
  • Employee Assistance Program and more!
  • The base pay listed may vary depending on skills, experience, job-related knowledge, and location. Certain positions may also be eligible for a performance-based incentive as part of total compensation.  

Public Partnerships is an Equal Opportunity Employer dedicated to celebrating diversity and intentionally creating a culture of inclusion. We believe that we work best when our employees feel empowered and accepted, and that starts by honoring each of our unique life experiences. At PPL, all aspects of employment regarding recruitment, hiring, training, promotion, compensation, benefits, transfers, layoffs, return from layoff, company-sponsored training, education, and social and recreational programs are based on merit, business needs, job requirements, and individual qualifications. We do not discriminate on the basis of race, color, religion or belief, national, social, or ethnic origin, sex, gender identity and/or expression, age, physical, mental, or sensory disability, sexual orientation, marital, civil union, or domestic partnership status, past or present military service, citizenship status, family medical history or genetic information, family or parental status, or any other status protected under federal, state, or local law. PPL will not tolerate discrimination or harassment based on any of these characteristics. 

If you like wild growth and working with happy, enthusiastic over-achievers, you’ll enjoy your career with us! 

SOC – Security Specialist Level 2

locationsVirtual Locationtime typeFull timeposted onPosted 7 Days Agojob requisition idJR03819

Job Purpose:

Part of the Logicalis Managed Security team, the Security Specialist role is responsible for managing services for Managed Security Service customers. The Security Specialist has the remit of discovering, assessing and directing remediation of security threats & vulnerabilities within client environments whilst working as part of a managed security team on various cyber security projects and tasks.

This role involves working at all levels with Solution Architects, Development Operations, Security Engineers, SOC Analysts, clients and other stakeholders in building and managing security architecture and systems which are kept up-to-date and relevant in the rapidly evolving Managed Security Services industry.

This is a technical role and the role holder is expected to provide 2nd line support for the current service platforms and services as well as supporting, mentoring and coaching colleagues. In addition, there will be a requirement to liaise with channel partners and vendors.

Key Accountabilities:

  • Handle internal and client escalations by engaging with key stakeholders
  • Follow published SOC policies and procedures
  • Work alongside subject matter experts across the Managed Security Service portfolio and be able to clearly articulate deliverables, limitations, feasibility, etc.
  • The configuration, tuning and maintenance of SOC tools to improve detective capability and building re-usable visualisations / dashboards for security alert triage, threat hunting and similar use cases, etc.
  • Develop Standard Operating Procedures (SOPs) and use cases for monitoring and handling different types of security events
  • Threat intelligence gathering to ensure that detection methods are effective against current threats
  • Hunt for suspicious activity based on anomalous activity.
  • Handling events as part of the Security Incident Management Process
  • Work with both internal and external partners to investigate and advise on security incidents and anomalies
  • Prepare detailed reports, providing information on findings, status and progress of investigations, as well as vulnerability and risk factors
  • Serve as the technical escalation point and mentor for junior colleagues.
  • Produce incident response playbooks to drive a consistent approach to handling common incidents and improve operational processes.
  • Analysing structured security log data through the creation of aggregated / correlated reports or visualisations.
  • Identify and implement opportunities for innovative and continuous improvement

Skills and Attributes for Success

  • Strong technical skills, knowledge and understanding of the Logicalis Managed Security Services portfolio, IT Applications, Networking and infrastructure
  • Excellent analytical and problem-solving skills
  • Demonstrable ability to think beyond the immediate situation and use critical thinking, context and judgment in the analysis of complex data sets and events.
  • Ability to work under pressure including crisis situations while maintaining a high degree of attention to detail
  • Strong collaborative skills. 
  • Self-discipline to work according to playbook and time requirements. 
  • Passion for cybersecurity and staying up to date with current threats, tools and techniques; 
  • Willingness to learn new security technologies, products and incident analysis and response approaches; and
  • Excellent written and oral communication skills. 
  • Strong interpersonal skills to interact with clients, team members and management
  • Ability to quickly learn and adapt to new technologies and processes in a rapidly changing environment
  • Excellent written and oral communication skills
  • Self-motivated to improve knowledge and skills
  • Goal and outcome focused
  • Clear communicator
  • Positive “can-do” attitude
  • A mind-set of continual service improvement

Salary Compensation Range:  $90,300 to $121,900

Senior Application Security Engineer

Remote

Systems & Security – Security /

Full time /

Remote

Apply for this job

Founded in 2012, EasyPost is a YC unicorn whose mission is to make shipping simple for businesses, from garage startups to the Fortune 500. Shipping, now more than ever, is the backbone of the global economy, but integrating the technology-enabled operations of a modern business with the low-tech and complex shipping industry has always been a challenge. EasyPost solves this problem with the first developer-friendly REST API for shipping, and we continue to push boundaries and discover new ways to simplify shipping for all. Our team is rapidly growing, and this is the perfect time to get on board. Join us, and help build the shipping infrastructure of the future.

Position Summary: 

The Senior Application Security Engineer will play a critical role in maintaining and improving the security of EasyPost’s growing and evolving logistics ecosystem. Responsibilities will include identifying, planning, and completing high-impact security projects, reviewing new proposed product features, building new security systems and programs. The Senior Security Engineer will leverage their experience and creativity to protect millions of users, the company, and our partner organizations against both identified and emerging security risks.

Essential Duties and Responsibilities:

The essential functions include, but are not limited to the following:

o Lead the design, building and maintenance of security systems and infrastructure that support the organization’s evolving business and security goals.

o Collaborate with other teams to integrate security and privacy controls and technology into the company’s overall planning and development process from project inception to project delivery.

o Build systems and programs that help security at EasyPost to scale efficiently in both breadth and depth of coverage.

o Embrace “shift-left” DevSecOps patterns, including infrastructure-as-code and Continuous Integration/Continuous Delivery design patterns that move security feedback to the earliest phases of product development and provide faster feedback to partner teams.

o Design and build key competitive security features within the product itself that will support continued business growth among security-conscious customers.

o Build and maintain security alerting infrastructure that delivers timely, relevant, and actionable alerts directly to internal staff, customers, and users.

o Create and maintain self-service documentation, training material, and knowledge base resources that help developers be more productive and write safer code.

o Work directly with M&A entities to integrate their products and improve the overall security posture of their existing development and support environments.

Minimum Education & Experience Qualifications:

o Bachelor’s degree in computer science, management information systems, or related field.

o 8+ years of related experience, master’s degree and 6+ years of related experience, or equivalent related work experience. 

o Comfortable writing production-ready code daily in at least two of the following languages: Python, Ruby, Go, or Rust.

o Ability to design systems that are simple to understand, maintainable, scalable, and resilient.

o Prior experience securing large-scale web applications and/or Application Programming Interfaces (APIs), including performing security design reviews, vulnerability assessments, and building testing strategies for logic flaws.

o The ability to understand and communicate concepts around threat modeling and risk management, including to both technical and non-technical stakeholders.

o Proven history of building strong partnerships with Engineering and Product teams to deliver world-class products and features.

o Working knowledge of several compliance and regulatory frameworks (SOC2, ISO 27001, SOX/ITGC, HIPAA, GDPR, CCPA, etc…)

o Experience in assessing risk and selecting key objectives during the vendor management lifecycle for software, hardware, cloud, and software-as-a-service vendors.

o Deep knowledge of how to build and maintain mixed computing environments (Linux, Windows, Mac OS, and mobile devices).

o Past experience with migrating applications and services to public cloud providers (AWS, GCP, Azure, etc…)

$125,000 – $170,000 a year

The posted salary range represents the base compensation for this role. Actual compensation may vary based on factors including, but not limited to, experience, education, skills, geographic location, and internal equity.

What We Offer:

o Comprehensive medical, dental, vision, and life insurance

o Competitive compensation package and equity

o Monthly work from home stipend of $50

o Flexible work schedule and paid time off

o Collaborative culture with a supportive team

o A great place to work with unlimited growth opportunities

o The opportunity to make massive contributions at a hyper-growth company

o Make an impact on a product helping ship millions of packages per day

Data Privacy Notice for Job Applicants:

For information on personal data processing, please see our Privacy Policy: https://www.easypost.com/privacy

“EasyPost is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law.”

To be considered for this position, you must be authorized and based in the United States.

Network and Security Administrator

Own Your Future!

At ServiceMaster, we embrace a “Think Like An Owner” mindset that sets us apart. Here, passion sparks innovation, empowerment fuels decision-making, and accountability unites us in achieving impactful results. Are you ready to join a team where your work makes a difference, your ideas shape success, and you are empowered to take charge of your career? Let’s build something great— together!  

What We Offer:

• Medical, Dental, and Vision, are offered on the first day of the month following the date of hire

• STD, LTD, offered after 30 days of employment

• 401(k) matching opportunities

• Hybrid on-site/work-from-home schedule after the initial training period.

• Paid Time Off, Paid Holidays

• Career advancement opportunities

Our TWO MEN AND A TRUCK® brand is currently looking for a knowledgeable and team-oriented  IT Network and Security Administrator that will ensure the proper operation, maintenance, and security of company network infrastructure, systems, and data. In this role, you will have the opportunity to plan and configure networks, monitor health and performance, implement and maintain security measures to ensure the achievement of all SLAs expected by the business. In addition, you will process requests for change and ensure the organization’s security standards are followed.

What you will do:

  • Execute intermediate to complex processes and system updates for the specialty area.
  • Install, configure, and ensure the maintenance of processes and/or systems related to the specialty area.
  • Evaluate system and processes performance issues including availability, utilization, throughput, and latency.
  • Lead the control of access rights, security settings and user privileges in alignment with enterprise standards.
  • Conduct briefings and demonstrations for users to enhance process and/or system productivity.
  • Research new technologies and/or monitors and evaluates existing technology for improvement opportunities to support process/technology life cycle.
  • Troubleshoot and resolve all problems encountered with process or system.
  • Ensure the successful planning and implementation for all upgrades or new additions to the IT process or system.
  • Create and maintain documentation of processes and systems related to the specialty area.
  • Perform intermediate to complex IT environment monitoring and performance benchmarking.
  • Prepare expenditure proposals and/or cost justification analysis.
  • Provide support to the IT team and cross functional project teams.
  • Operate under general supervision.

What you will bring:

  • Verbal and written communication skills necessary to communicate with all levels of management.
  • Presentation skills necessary to facilitate training and/or deliver informational sessions to groups and/or individuals.
  • Time management, organizational and multi-tasking skills necessary to work in a fast-paced environment, handling various tasks and changing priorities, while maintaining a high attention to detail and accuracy to achieve daily assignments and goals
  • Ability to analyze, review, and make recommendations for the IT environment.
  • Attain or retain specific certifications related to job function (i.e. Cisco, Microsoft).
  • Knowledge about system installation and disaster recovery procedures.
  • Associate degree in Information Systems, Computer Science, or other related technical or quantitative degree (e.g., mathematics) required, Bachelor’s degree preferred.
  • At least 3-5 years of experience in applicable technical area.
  • Software skills, including use of Microsoft Office software and web-based applications

This role is 100% remote and can be based anywhere in the U.S., excluding Los Angeles County.

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At SMB, it is not typical for an individual to be hired at or near the top of the range for their role, and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $78,300 to $108,000.

ABOUT TWO MEN AND A TRUCK®

Headquartered in Michigan, TWO MEN AND A TRUCK is the largest franchised moving company in North America with each franchise being independently owned and operated. Currently, there are more than 380 locations and 3,000 trucks operating in 46 U.S. states in addition to Canada, Ireland, and the UK. TWO MEN AND A TRUCK has performed more than 8.5 million moves since its inception in 1985 and has seen consistent growth dating back to December 2009. In 2021, Entrepreneur Magazine ranked TWO MEN AND A TRUCK as one of the top 500 franchises in the U.S. for the 26th consecutive year in addition to being on its list of Top Low Cost Franchises in 2020. Franchise Business Review also named TWO MEN AND A TRUCK a top franchise in 2020, and in 2019, the brand was voted a Top 50 franchise in the Franchisee Satisfaction Awards by Franchise Business Review for the 13th time. TWO MEN AND A TRUCK is a business unit of Atlanta-based ServiceMaster® Brands, a leading franchise provider of needs-based residential and commercial services For franchising opportunities, visit franchise.twomenandatruck.com.

About ServiceMaster Brands

ServiceMaster® Brands® is a leading franchise provider of needs-based residential and commercial services in the restoration, cleaning, moving, and bioremediation industries. Founded in 1929, the company is home to over 3,200 franchisees across 4,600+ locations serving over 1,000,000 homes and businesses each year. ServiceMaster was founded with a deep commitment to integrity and customer service and does business under seven brands today across 50 states and nine countries that generate more than $3.5B in system-wide sales: ServiceMaster Restore®, ServiceMaster Clean®, ServiceMaster BioClean®, Merry Maids®, TWO MEN AND A TRUCK®, TWO MEN AND A JUNK TRUCK®, and Indoor Science.

While each brand maintains a distinct identity, we share a commitment to our vision to Become the most admired brand in each industry we serve

California Applicants:

Background checks are required, and qualified applicants with arrest or conviction records will be considered for Employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.

Software Engineer II (Remote)

Description

American Specialty Health Incorporated is seeking a passionate and analytical individual looking to contribute his/her skills and leadership to the Software Engineering Team.  The Software Engineer II will be responsible for analyzing, designing, developing and maintaining software applications using the latest Microsoft technologies with minimal supervision.

Salary Range

American Specialty Health complies with state and federal wage and hour laws and compensation depends upon candidate’s qualifications, education, skill set, years of experience, and internal equity. $90,000 to $115,000 Full-Time Annual Salary Range.

Remote Worker Considerations

Candidates who are selected for this position will be trained remotely and must be able to work from home (WFH) in a designated work area with company-provided technology equipment. This remote/WFH position requires you have a stable connection to your Internet Service Provider with the ability to participate by video in online meetings over a reliable and consistent network (minimum internet download of 50 Mbps and 10 Mbps upload speed).  

Responsibilities

  • Design, development, maintenance, and troubleshooting of software applications
  • Performs routine programming assignments under Manager’s supervision
  • Develops an understanding of assigned application and internal customer area, standards and techniques, and general business knowledge
  • Demonstrates understanding of departmental procedures, programming standards, and all pertinent training materials
  • Unit testing as applicable
  • Providing time estimates of assigned tasks and compare estimates to actual time spent in order to improve estimating accuracy
  • Recommends possible improvements in applications
  • Work independently with minimal supervision
  • Mentor junior programmers
  • Properly refactor legacy components as needed
  • Communicate directly with product owner and end users

Qualifications

  • Bachelor’s degree in an IT, computer, or technical related field or equivalent experience. High school diploma required.
  • Minimum of 4 years of progressive experience performing computer programming with experience in ASP.Net, VB.Net, C#, SQL
  • Experience with web development programming in a client/server setup required.
  • Experience with relational database design, writing queries and stored procedures with MySQL or Microsoft SQL required.
  • Exceeds expectations of a programmer with demonstrated proficiency in coding.
  • Experience with Object Oriented Analysis and Development within large enterprise level applications required.
  • Experience with development and consumption of web services preferred
  • Experience with XSLT, XML required
  • HTTP, C#, SQL optimization experience

Core Competencies

  • Demonstrated ability to interact in a positive, respectful manner and establish and maintain cooperative working relationships.
  • Ability to display excellent customer service to meet the needs and expectations of both internal and external customers. 
  • Excellent listening and interpersonal communication skills to identify critical core competencies based on success factors and organizational environment.
  • Ability to effectively organize, prioritize, multi-task and manage time.
  • Demonstrated accuracy and productivity in a changing environment with constant interruptions.
  • Demonstrated ability to analyze information, problems, issues, situations and procedures to develop effective solutions.
  • Ability to exercise strict confidentiality in all matters.

Mobility

Primarily sedentary, able to sit for long periods of time. 

Physical Requirements

Ability to speak, see and hear other personnel and/or objects.  Ability to communicate both in verbal and written form. Ability to travel within the facility. Capable of using a telephone and computer keyboard.  Ability to lift up to 10 lbs.

Environmental Conditions

Work-from-home (WFH) environment.

American Specialty Health is an Equal Opportunity/Affirmative Action Employer.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected Veteran Status, or any other characteristic protected by applicable federal, state, or local law. 

Please view Equal Employment Opportunity Posters provided by OFCCP here.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access our career center as a result of your disability. To request an accommodation, contact our Human Resources Department at (800) 848-3555 x6702.

ASH will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company’s legal duty to furnish information.