JOB DUTIES: Assess the security and compliance of various types of client applications and supporting infrastructure against regulatory and industry requirements and standards, as well as security best practice frameworks using knowledge of Application penetration testing and assessment tradecraft and methodologies (including browser-based, API, thick client, and Mobile); Security principles, policies, and industry best practices; compliance frameworks (PCI DSS, FedRAMP, HIPAA); testing against one or more IT security compliance frameworks, such as PCI, FISMA, HIPAA, FedRAMP, or HITRUST; Open Source Security Testing Methodology Manual (OSSTMM), Open Web Application Security Project (OWASP), Software Assurance Maturity Model (SAMM), National Institute of Standards and Technology (NIST) Special Publications, and PTES (Penetration Testing Execution Standard). Test computer programs and systems, including coordinating security tests in a team setting. Conduct Application Penetration Testing (Browser-based, API, Mobile, IoT), Threat Modeling, and Source Code Reviews. Develop, document, and revise test procedures and quality standards for computer IT security systems. Use computers in the analysis of security risks, such as exploitable vulnerabilities. Write reports regarding client security as well as making recommendations for improvements and communicating them to the client. Confer with clients regarding the nature of known security risks and mitigating controls. Train staff and users to work with computer systems and programs related to IT security. Provide staff and users with assistance solving computer-related security problems, such as malfunctions and program problems. Use and review code in object-oriented programming languages, as well as client and server applications development processes and multimedia and internet technology regarding security risks. Review and analyze computer printouts and performance indicators to locate code problems and communicate problems to developers.
RATE OF PAY: $143,500.00 to $148,500.00 per year. The employer will pay or exceed the prevailing wage, as determined by the U.S. Department of Labor
REQUIREMENTS: Bachelor of Science in Comp Science/Systems Engineering, Information Systems/Assurance, Cybersecurity, or closely related field and five (5) years of experience in the position offered or as an Information Security Analyst. Experience must include at least five years’ working knowledge of: Application penetration testing and assessment tradecraft and methodologies (including browser-based, API, thick client, and Mobile); Security principles, policies, and industry best practices; compliance frameworks (PCI DSS, FedRAMP, HIPAA); testing against one or more IT security compliance frameworks, such as PCI, FISMA, HIPAA, FedRAMP, or HITRUST; Open Source Security Testing Methodology Manual (OSSTMM), Open Web Application Security Project (OWASP), Software Assurance Maturity Model (SAMM), National Institute of Standards and Technology (NIST) Special Publications, and PTES (Penetration Testing Execution Standards). Position is eligible to telecommute 100% of work schedule. Domestic travel requirement of up to 10% of work schedule
LOCATION OF EMPLOYMENT: 330 N Wabash Ave, Suite 1430, Chicago, IL 60611. Position is eligible to telecommute 100% of work schedule.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Remote Help Desk Support role for a US-based partner providing technical troubleshooting, network administration, and end-user assistance to a distributed workforce.
Senior security and solution architecture leader responsible for designing compliant, scalable ServiceNow workflows and data architectures for financial services clients while advising C-level stakeholders.
Lead and scale Nomi Health’s technology operations, automation, and AI adoption to ensure secure, reliable, and cost-effective cloud infrastructure that supports rapid product delivery.
Wolf Consulting is hiring a Tier 3 Consultant to deliver advanced technical support, manage infrastructure projects, and act as an escalation point for client IT environments in a hybrid role based in Monroeville, PA.
LIV Golf is hiring a hands-on Security Engineer to strengthen cloud, endpoint, and application security while supporting incident response and compliance across a fast-paced, global organization.
A proactive IT Specialist is needed to manage Google Workspace, macOS/MDM, security monitoring, and SaaS troubleshooting for a fully remote California-based team.
Senior Systems Analyst sought to own configuration, integrations and optimization of JIRA, Salesforce and NetSuite while partnering with stakeholders to improve processes, train users, and ensure reliable system performance in a remote role.
Lead and scale a distributed service desk supporting secure DoD-focused operations, driving service delivery, automation, and stakeholder alignment for a fast-growing defense technology company.
CBH Homes seeks an on-site Technical Support Analyst to manage servers, networks, cloud services, and deliver responsive end-user IT support.
Associated Bank is hiring an Infrastructure Engineer Associate to support and maintain client and server infrastructure, handle Tier I/II incident resolution, manage deployments and patches, and contribute to VDI and change management for its Wisconsin remote IT team.
UW–Stevens Point seeks a Student Info Tech Network Technician to assist staff with installation, maintenance, and troubleshooting of campus network and telephone systems while gaining practical experience.
Provide remote technical and network support to ensure system reliability and a seamless technology experience for a distributed US team.
Serve Robotics is hiring an IT Systems Administrator to lead infrastructure design, escalations, automation, and security for both corporate and robotic operations in Los Angeles.
Coalfire is a cybersecurity and compliance services company that secures the future of businesses by solving complex cybersecurity challenges and is trusted by leading organizations across various sectors.
5 jobs