Create an account for powerful AI tools, award-winning courses, and access to our vibrant community.
Already have an account?
Join 250,000+ professionals and teams at Microsoft, Shopify, and even NASA. đ
Already have an account? Login
Find the best remote jobs. Answer a few questions and we'll deploy a powerful assistant to help you search, create alerts, and more.
1 What roles are you open to?
2 Experience level
3 Work style
Did you know? If memory is enabled, Writing.io can remember your job search preferences and help you to improve your resume, craft customized outreach and more.
Category
Builds product security infrastructure through threat modeling, security reviews, compliance, and AppSec tooling for a payments platform.
An Introduction to Primer
Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.
Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, weâre building the payments layer the worldâs best companies rely on.
Watch our showcase >
Read up on our $100m Series C
Learn more about our culture >
Youâll help build the entire product security surface for a company processing payments at scale: threat modelling, security review, compliance, incident escalation, and the multi-year AppSec roadmap. Youâd be the second hire, and the person that function finally gets to share the work with.
This is a hands-on delivery role, and a genuinely formative one. Youâll help set the security strategy and architecture; you take real ownership of the work that turns it into reality, reviews, research, automation, and the day-to-day partnership with engineering teams. Youâll have a clear direction to work within and someone senior to learn from, while still owning your projects end to end.
Security at Primer sits close to the engineering teams it protects rather than off to one side, so youâll spend real time embedded with the people building Cloud, Infra, and product. For someone who wants to go deep in product security with room to grow, there are few better seats than being the second engineer in a function thatâs only now scaling.
Running security reviews and threat modelling on features and systems across Primerâs product, and turning findings into clear, actionable guidance for the teams shipping them
Independently planning and delivering your own security projects, from initial design through to rollout
Building tooling and automation that makes future reviews faster and cheaper to run
Coordinating penetration testing and tracking remediation through to closure
Supporting the recurring compliance work (SOC2, PCI), including evidence collection and remediation tracking against fixed audit windows
Contributing to AppSec roadmap initiatives across areas like application threats, AI security, supply chain security, and ASPM
Picking up proactive security work, threat research and hands-on investigation, that a one-person function has never had the capacity for
Working alongside Cloud, Infra, and GRC on the security aspects of their projects
Working experience in product or application security: youâve done security reviews or threat modelling and can spot the risks that matter
The ability to read and write code, not just review it. Youâre comfortable building small tools and automation rather than only filing findings
Sound judgement about risk. You can weigh a real threat against a theoretical one and explain your reasoning clearly
The ability to plan and deliver your own work independently once you understand the direction, while knowing when to pull in the senior engineer
Clear communication with engineers who arenât security specialists, since most of your impact lands through their work
Nice to have:
Exposure to compliance frameworks like SOC2 or PCI, or genuine appetite to learn them
Background in payments, fintech, or another regulated, high-stakes domain
Interest in areas like supply chain security, detection engineering, or AI security
Itâs remote-first and high autonomy. Youâll get direction, but nobody checks your progress daily. If you need close structure, this will be uncomfortable
Youâll move between proactive project work and reactive BAU, and priorities will shift as audits and incidents land. Tolerating that change is part of the role.
An initial intro call with a Talent Partner
An interview with the Hiring Manager
Challenge Stage - Contextualised to the role
A final, values-alignment interview
Weâre building a culture where people can do their best work and be proud of the impact they have. Youâll be working with people who are mission-driven, smart, and reflective, and who are genuinely invested in building exceptional products and delivering success for our merchants.
We work remotely, and have done since day one. We believe that building a successful, profitable company goes beyond proximity. We invest in our relationships through great remote working practices and thoughtfully designed face-to-face time, including workations, our annual company retreat, and co-working space access worldwide.
The work is challenging. Scaleups are a challenge, and building category-defining products is a challenge. But thereâs a meaningful difference between a challenge and a struggle. At Primer, the right challenge comes with the right support: strong onboarding, a collaborative environment, and a team that is genuinely invested in your success. Itâs never something you face alone.
đ We are fully remote and globally distributed; and have been since day one
đ° Competitive share options
đ´ Uncapped holiday, with 25 days minimum to be taken
đŁď¸ Co-working space access
đ Workations & Company Retreat
đť The best equipment for your role
đ ÂŁ500 towards your home office setup
đ Generous learning budget
đĽ Private Medical Insurance
đ A broad set of additional perks and benefits ( depending on location)
At Primer, weâre dedicated to building a diverse, inclusive, and authentic workplace. If youâre excited about this role but your experience doesnât align perfectly with every qualification listed, we encourage you to apply. You may be the right candidate for this or other roles.
Primer is committed to the equal treatment of all current and prospective employees and adopts a zero-tolerance approach to discrimination, regardless of age, disability, sex, sexual orientation, pregnancy and maternity, race or ethnicity, religion or belief, gender identity, marriage and civil partnership, or any other background or belief.
Conducts security reviews, threat modeling, and compliance work for a payments platform while building AppSec tooling and automation.
An Introduction to Primer
Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.
Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, weâre building the payments layer the worldâs best companies rely on.
Watch our showcase >
Read up on our $100m Series C
Learn more about our culture >
Youâll help build the entire product security surface for a company processing payments at scale: threat modelling, security review, compliance, incident escalation, and the multi-year AppSec roadmap. Youâd be the second hire, and the person that function finally gets to share the work with.
This is a hands-on delivery role, and a genuinely formative one. Youâll help set the security strategy and architecture; you take real ownership of the work that turns it into reality, reviews, research, automation, and the day-to-day partnership with engineering teams. Youâll have a clear direction to work within and someone senior to learn from, while still owning your projects end to end.
Security at Primer sits close to the engineering teams it protects rather than off to one side, so youâll spend real time embedded with the people building Cloud, Infra, and product. For someone who wants to go deep in product security with room to grow, there are few better seats than being the second engineer in a function thatâs only now scaling.
Running security reviews and threat modelling on features and systems across Primerâs product, and turning findings into clear, actionable guidance for the teams shipping them
Independently planning and delivering your own security projects, from initial design through to rollout
Building tooling and automation that makes future reviews faster and cheaper to run
Coordinating penetration testing and tracking remediation through to closure
Supporting the recurring compliance work (SOC2, PCI), including evidence collection and remediation tracking against fixed audit windows
Contributing to AppSec roadmap initiatives across areas like application threats, AI security, supply chain security, and ASPM
Picking up proactive security work, threat research and hands-on investigation, that a one-person function has never had the capacity for
Working alongside Cloud, Infra, and GRC on the security aspects of their projects
Working experience in product or application security: youâve done security reviews or threat modelling and can spot the risks that matter
The ability to read and write code, not just review it. Youâre comfortable building small tools and automation rather than only filing findings
Sound judgement about risk. You can weigh a real threat against a theoretical one and explain your reasoning clearly
The ability to plan and deliver your own work independently once you understand the direction, while knowing when to pull in the senior engineer
Clear communication with engineers who arenât security specialists, since most of your impact lands through their work
Nice to have:
Exposure to compliance frameworks like SOC2 or PCI, or genuine appetite to learn them
Background in payments, fintech, or another regulated, high-stakes domain
Interest in areas like supply chain security, detection engineering, or AI security
Itâs remote-first and high autonomy. Youâll get direction, but nobody checks your progress daily. If you need close structure, this will be uncomfortable
Youâll move between proactive project work and reactive BAU, and priorities will shift as audits and incidents land. Tolerating that change is part of the role.
An initial intro call with a Talent Partner
An interview with the Hiring Manager
Challenge Stage - Contextualised to the role
A final, values-alignment interview
Weâre building a culture where people can do their best work and be proud of the impact they have. Youâll be working with people who are mission-driven, smart, and reflective, and who are genuinely invested in building exceptional products and delivering success for our merchants.
We work remotely, and have done since day one. We believe that building a successful, profitable company goes beyond proximity. We invest in our relationships through great remote working practices and thoughtfully designed face-to-face time, including workations, our annual company retreat, and co-working space access worldwide.
The work is challenging. Scaleups are a challenge, and building category-defining products is a challenge. But thereâs a meaningful difference between a challenge and a struggle. At Primer, the right challenge comes with the right support: strong onboarding, a collaborative environment, and a team that is genuinely invested in your success. Itâs never something you face alone.
đ We are fully remote and globally distributed; and have been since day one
đ° Competitive share options
đ´ Uncapped holiday, with 25 days minimum to be taken
đŁď¸ Co-working space access
đ Workations & Company Retreat
đť The best equipment for your role
đ ÂŁ500 towards your home office setup
đ Generous learning budget
đĽ Private Medical Insurance
đ A broad set of additional perks and benefits ( depending on location)
At Primer, weâre dedicated to building a diverse, inclusive, and authentic workplace. If youâre excited about this role but your experience doesnât align perfectly with every qualification listed, we encourage you to apply. You may be the right candidate for this or other roles.
Primer is committed to the equal treatment of all current and prospective employees and adopts a zero-tolerance approach to discrimination, regardless of age, disability, sex, sexual orientation, pregnancy and maternity, race or ethnicity, religion or belief, gender identity, marriage and civil partnership, or any other background or belief.
Security engineer performs threat modeling, security reviews, compliance work, and builds AppSec tooling for a payments infrastructure platform.
An Introduction to Primer
Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.
Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, weâre building the payments layer the worldâs best companies rely on.
Watch our showcase >
Read up on our $100m Series C
Learn more about our culture >
Youâll help build the entire product security surface for a company processing payments at scale: threat modelling, security review, compliance, incident escalation, and the multi-year AppSec roadmap. Youâd be the second hire, and the person that function finally gets to share the work with.
This is a hands-on delivery role, and a genuinely formative one. Youâll help set the security strategy and architecture; you take real ownership of the work that turns it into reality, reviews, research, automation, and the day-to-day partnership with engineering teams. Youâll have a clear direction to work within and someone senior to learn from, while still owning your projects end to end.
Security at Primer sits close to the engineering teams it protects rather than off to one side, so youâll spend real time embedded with the people building Cloud, Infra, and product. For someone who wants to go deep in product security with room to grow, there are few better seats than being the second engineer in a function thatâs only now scaling.
Running security reviews and threat modelling on features and systems across Primerâs product, and turning findings into clear, actionable guidance for the teams shipping them
Independently planning and delivering your own security projects, from initial design through to rollout
Building tooling and automation that makes future reviews faster and cheaper to run
Coordinating penetration testing and tracking remediation through to closure
Supporting the recurring compliance work (SOC2, PCI), including evidence collection and remediation tracking against fixed audit windows
Contributing to AppSec roadmap initiatives across areas like application threats, AI security, supply chain security, and ASPM
Picking up proactive security work, threat research and hands-on investigation, that a one-person function has never had the capacity for
Working alongside Cloud, Infra, and GRC on the security aspects of their projects
Working experience in product or application security: youâve done security reviews or threat modelling and can spot the risks that matter
The ability to read and write code, not just review it. Youâre comfortable building small tools and automation rather than only filing findings
Sound judgement about risk. You can weigh a real threat against a theoretical one and explain your reasoning clearly
The ability to plan and deliver your own work independently once you understand the direction, while knowing when to pull in the senior engineer
Clear communication with engineers who arenât security specialists, since most of your impact lands through their work
Nice to have:
Exposure to compliance frameworks like SOC2 or PCI, or genuine appetite to learn them
Background in payments, fintech, or another regulated, high-stakes domain
Interest in areas like supply chain security, detection engineering, or AI security
Itâs remote-first and high autonomy. Youâll get direction, but nobody checks your progress daily. If you need close structure, this will be uncomfortable
Youâll move between proactive project work and reactive BAU, and priorities will shift as audits and incidents land. Tolerating that change is part of the role.
An initial intro call with a Talent Partner
An interview with the Hiring Manager
Challenge Stage - Contextualised to the role
A final, values-alignment interview
Weâre building a culture where people can do their best work and be proud of the impact they have. Youâll be working with people who are mission-driven, smart, and reflective, and who are genuinely invested in building exceptional products and delivering success for our merchants.
We work remotely, and have done since day one. We believe that building a successful, profitable company goes beyond proximity. We invest in our relationships through great remote working practices and thoughtfully designed face-to-face time, including workations, our annual company retreat, and co-working space access worldwide.
The work is challenging. Scaleups are a challenge, and building category-defining products is a challenge. But thereâs a meaningful difference between a challenge and a struggle. At Primer, the right challenge comes with the right support: strong onboarding, a collaborative environment, and a team that is genuinely invested in your success. Itâs never something you face alone.
đ We are fully remote and globally distributed; and have been since day one
đ° Competitive share options
đ´ Uncapped holiday, with 25 days minimum to be taken
đŁď¸ Co-working space access
đ Workations & Company Retreat
đť The best equipment for your role
đ ÂŁ500 towards your home office setup
đ Generous learning budget
đĽ Private Medical Insurance
đ A broad set of additional perks and benefits ( depending on location)
At Primer, weâre dedicated to building a diverse, inclusive, and authentic workplace. If youâre excited about this role but your experience doesnât align perfectly with every qualification listed, we encourage you to apply. You may be the right candidate for this or other roles.
Primer is committed to the equal treatment of all current and prospective employees and adopts a zero-tolerance approach to discrimination, regardless of age, disability, sex, sexual orientation, pregnancy and maternity, race or ethnicity, religion or belief, gender identity, marriage and civil partnership, or any other background or belief.
Manages cyber infrastructure systems and provides infrastructure support for government research contracts, ensuring secure and reliable IT operations.
Provides cybersecurity support and manages security systems for a government contract supporting NIH research operations.
Builds and operates cybersecurity controls including identity, network segmentation, cloud security, endpoint protection, and vulnerability management for a large CPA firm.
Work with a Top 20 CPA and advisory firm that Accounts for Anything. Â Aprio has 40 U.S. office locations, as well as international office locations and more than 3,200 team members that speak 60+ languages across the globe. Â By bringing together proven expertise, deep understanding, and strategic foresight for fast-growing industries, Aprio ensures clients are prepared for wherever life or business may take them. Discover a top-rated culture, vast growth opportunities and your next big career move with Aprio.
Join Aprioâs Information Technology team and you will help clients maximize their opportunities. Aprio is a progressive, fast-growing firm looking for a Cybersecurity Engineer to join their dynamic team.
Aprioâs Cybersecurity Engineering team builds and operates the controls that protect the firm â identity, network segmentation, cloud security baselines, endpoint, monitoring, encryption, and vulnerability management. The Cybersecurity Engineer is the mid-tier individual contributor on that team: the engineer trusted to take a well-scoped project, run it end-to-end, and deliver a clean, documented, operational result. This role is hands-on and execution-focused, with a growing depth in one or two control domains and a clear path toward Senior Engineer.
This position supports U.S. Government engagements that may involve Controlled Unclassified Information (CUI) and requires access to exportâcontrolled technical data. In accordance with CUI and U.S. export control regulations, this position is limited to âU.S. personsâ (including U.S. citizens, lawful permanent residents, and certain protected individuals) as defined in 22 C.F.R. §âŻ120.62. These requirements are only tied to this specific job posting. We are an equal opportunity employer and all Aprio employment decisions are made in accordance with applicable laws.
First 30â60 days: Tooling and tenant familiarity is complete. Youâre executing standard tasks (access requests, configuration changes, vuln workflows, evidence collection) on your own and logging clean work.
By 90 days: Youâve owned at least one small-to-medium project end-to-end â a vulnerability project, a hardening change, a logging coverage gap, or a tool configuration â and the result is documented, evidenced, and handed off cleanly.
By 6â12 months: Youâre the go-to on at least one domain, youâre trusted to execute approved patterns without close oversight, Associate engineers are routinely paired with you, and youâre a working partner on at least one cross-team initiative led by a Senior or Principal engineer.
$80,000 - $90,000 a year
The salary range for this opportunity is stated above. As such, an actual salary may fall closer to one or the other end of the range, and in certain circumstances, may wind up being outside of the listed salary range.
The application window is anticipated to close on July 27th and may be extended as needed.
Why work for Aprio:
Whether you are just starting out, looking to advance into management or searching for your next leadership role, Aprio offers an opportunity to grow with a future-focused, innovative firm.
Perks/Benefits we offer for full-time team members:
- Medical, Dental, and Vision Insurance on the first day of employment
- Flexible Spending Account and Dependent Care Account
- 401k with Profit Sharing
- 9+ holidays and discretionary time off structure
- Parental Leave â coverage for both primary and secondary caregivers
- Tuition Assistance Program and CPA support program with cash incentive upon completion
- Discretionary incentive compensation based on firm, group and individual performance
- Incentive compensation related to origination of new client sales
- Top rated wellness program
- Flexible working environment including remote and hybrid options
Whatâs in it for you:
- Working with an industry leader: Be part of a high-growth firm that is passionate for whatâs next.
- An awesome culture: Thirty-one fundamental behaviors guide our culture every day ensuring we always deliver an exceptional team-member and client experience. We call it the Aprio Way. This shared mindset creates lasting relationships between team members and with clients.
- A great team:Â Work with a high-energy, passionate, caring and ambitious team of professionals in a collaborative culture.
- Entrepreneurship: Have the freedom to innovate and bring your ideas to help us grow to become the CPA firm of choice nationally.
- Growth opportunities: Grow professionally in an environment that fosters continuous learning and advancement.
- Competitive compensation: You will be rewarded with competitive compensation, industry-leading benefits and a flexible work environment to enjoy work/life balance.
EQUAL OPPORTUNITY EMPLOYER
Aprio is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race; color; religion; national origin; sex; pregnancy; sexual orientation; gender identity and/or expression; age; disability; genetic information, citizenship status; military service obligations or any other category protected by applicable federal, state, or local law.
Aprio, LLP and Aprio Advisory Group, LLC, operate in an alternative business structure, with Aprio Advisory Group, LLC providing non-attest tax and consulting services, and Aprio, LLP providing CPA firm services.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Develops and maintains application security frameworks, CI/CD pipelines, and vulnerability management tools while consulting teams on security best practices.
Founded and headquartered in Switzerland, Avaloq is continuously expanding its global footprint with around 2,500 colleagues in 10 countries, and more than 160 clients in 35 countries. We are an industry-leading provider of wealth management technology and services for financial institutions around the world, including private banks and wealth managers, investment managers, as well as retail and neo banks. Our research led approach and continual innovation is powered by the passion and creativity of our colleagues.
We are always looking for talented people to join us on our mission to orchestrate the financial ecosystem and democratize access to wealth management. Avaloq offers the opportunity to work closely with some of the worldâs leading financial institutions as we jointly develop and shape careers. Championing a collaborative, supportive and flexible work environment empowers our colleagues to reach their full potential.
The Avaloq Security team is an international team of analysts, senior and expert software engineers and architects. The Avaloq Security team develops and maintains central application security frameworks and tools for all companywide technology stacks and consults the business teams on best practice implementations for context specific security requirements. It furthermore operates the group-wide application security assessments, monitors the security vulnerabilities and supports the business teams in related risk mitigation plans.
Your key tasks
We realize that managing work life balance is a challenge we all face in our daily lives and in order to support with this we are pleased to offer hybrid and flexible working for most of our Avaloqers to maintain work life balance and still continue our fantastic Avaloq culture in our global offices.
In Avaloq we are proud to embrace diversity and understand the success of our business is built on the power of different opinions, we are whole heartedly committed to fostering an equal opportunity environment and inclusive culture where you can be your true authentic self.
We hire, compensate and promote regardless of origin, age, gender identity, sexual orientation or any other fantastic traits that make us all unique, we have done our best to write this advert in an inclusive and neutral way.
Please be aware that we will not accept speculative CV submissions for any of our roles from recruitment agencies, and any unsolicited candidate submissions will be exempt from any payment expectations.
#LI-Hybrid
Design, build, and operate cybersecurity controls including identity, network, cloud, endpoint, and vulnerability management systems for a large CPA firm.
Work with a Top 20 CPA and advisory firm that Accounts for Anything. Â Aprio has 40 U.S. office locations, as well as international office locations and more than 3,200 team members that speak 60+ languages across the globe. Â By bringing together proven expertise, deep understanding, and strategic foresight for fast-growing industries, Aprio ensures clients are prepared for wherever life or business may take them. Discover a top-rated culture, vast growth opportunities and your next big career move with Aprio.
Join Aprioâs Information Technology team and you will help clients maximize their opportunities. Aprio is a progressive, fast-growing firm looking for a Cybersecurity Engineer to join their dynamic team.
Aprioâs Cybersecurity Engineering team builds and operates the controls that protect the firm â identity, network segmentation, cloud security baselines, endpoint, monitoring, encryption, and vulnerability management. The Cybersecurity Engineer is the mid-tier individual contributor on that team: the engineer trusted to take a well-scoped project, run it end-to-end, and deliver a clean, documented, operational result. This role is hands-on and execution-focused, with a growing depth in one or two control domains and a clear path toward Senior Engineer.
This position supports U.S. Government engagements that may involve Controlled Unclassified Information (CUI) and requires access to exportâcontrolled technical data. In accordance with CUI and U.S. export control regulations, this position is limited to âU.S. personsâ (including U.S. citizens, lawful permanent residents, and certain protected individuals) as defined in 22 C.F.R. §âŻ120.62. These requirements are only tied to this specific job posting. We are an equal opportunity employer and all Aprio employment decisions are made in accordance with applicable laws.
First 30â60 days: Tooling and tenant familiarity is complete. Youâre executing standard tasks (access requests, configuration changes, vuln workflows, evidence collection) on your own and logging clean work.
By 90 days: Youâve owned at least one small-to-medium project end-to-end â a vulnerability project, a hardening change, a logging coverage gap, or a tool configuration â and the result is documented, evidenced, and handed off cleanly.
By 6â12 months: Youâre the go-to on at least one domain, youâre trusted to execute approved patterns without close oversight, Associate engineers are routinely paired with you, and youâre a working partner on at least one cross-team initiative led by a Senior or Principal engineer.
$80,000 - $90,000 a year
The salary range for this opportunity is stated above. As such, an actual salary may fall closer to one or the other end of the range, and in certain circumstances, may wind up being outside of the listed salary range.
The application window is anticipated to close on July 27th and may be extended as needed.
Why work for Aprio:
Whether you are just starting out, looking to advance into management or searching for your next leadership role, Aprio offers an opportunity to grow with a future-focused, innovative firm.
Perks/Benefits we offer for full-time team members:
- Medical, Dental, and Vision Insurance on the first day of employment
- Flexible Spending Account and Dependent Care Account
- 401k with Profit Sharing
- 9+ holidays and discretionary time off structure
- Parental Leave â coverage for both primary and secondary caregivers
- Tuition Assistance Program and CPA support program with cash incentive upon completion
- Discretionary incentive compensation based on firm, group and individual performance
- Incentive compensation related to origination of new client sales
- Top rated wellness program
- Flexible working environment including remote and hybrid options
Whatâs in it for you:
- Working with an industry leader: Be part of a high-growth firm that is passionate for whatâs next.
- An awesome culture: Thirty-one fundamental behaviors guide our culture every day ensuring we always deliver an exceptional team-member and client experience. We call it the Aprio Way. This shared mindset creates lasting relationships between team members and with clients.
- A great team:Â Work with a high-energy, passionate, caring and ambitious team of professionals in a collaborative culture.
- Entrepreneurship: Have the freedom to innovate and bring your ideas to help us grow to become the CPA firm of choice nationally.
- Growth opportunities: Grow professionally in an environment that fosters continuous learning and advancement.
- Competitive compensation: You will be rewarded with competitive compensation, industry-leading benefits and a flexible work environment to enjoy work/life balance.
EQUAL OPPORTUNITY EMPLOYER
Aprio is an Equal Opportunity Employer encouraging diversity in the workplace. All qualified applicants will receive consideration for employment without regard to race; color; religion; national origin; sex; pregnancy; sexual orientation; gender identity and/or expression; age; disability; genetic information, citizenship status; military service obligations or any other category protected by applicable federal, state, or local law.
Aprio, LLP and Aprio Advisory Group, LLC, operate in an alternative business structure, with Aprio Advisory Group, LLC providing non-attest tax and consulting services, and Aprio, LLP providing CPA firm services.
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Designs and implements security systems, processes, and controls to protect employees and infrastructure across enterprise operations.
Deploys and manages endpoint detection and identity threat protection platforms, develops detection rules, and investigates security threats across enterprise systems.
CREATIVITY IS OUR SUPERPOWER. Itâs our heritage and itâs also our future. Because we donât just make toys. We create innovative products and experiences that inspire fans, entertain audiences and develop children through play. Mattel is at its best when every member of our team feels respected, included, and heardâwhen everyone can show up as themselves and do their best work every day. We value and share an infinite range of ideas and voices that evolve and broaden our perspectives with a reach that extends into all our brands, partners, and suppliers.
About the Role
The Security Engineer â Endpoint & Identity Threat Protection (EDR / ITP) is responsible for implementing, maintaining, and optimizing advanced endpoint detection and identity threat protection capabilities across Mattelâs global environment. This mid-level role focuses on enhancing detection accuracy, improving response efficiency, and strengthening the organizationâs overall cyber defense posture. The engineer will work closely with cross-functional teams to ensure endpoint and identity protection tools are effectively integrated, monitored, and tuned to safeguard enterprise systems and data from emerging threats.
Roles and Responsibilities
Skills and Qualifications
Required:
Preferred:
Shift Timings:
This position operates during 10:00 â 18:00 PST (22:30 â 06:30 IST), Monday through Friday, with emergency on-call duties as required.
Donât meet every single requirement? At Mattel, we are dedicated to an inclusive workplace and a culture of belonging. If youâre excited about this role but your past experience doesnât align perfectly with every qualification in the job description, we still encourage you to apply. You may be just the right candidate for this or other roles.
How We Work:
We are a purpose driven company aiming to empower generations to explore the wonder of childhood and reach their full potential. We live up to our purpose employing the following behaviors:
Our Approach to Flexible Work:
We embrace a flexible work model designed to empower a culture of growth, optimism, and wellbeing, where every employee can reach their full potential. Combining purposeful in-person collaboration with flexibility, our focus is to optimize performance and drive connection for moments that matter.
Who We Are:
Mattel is a leading global toy and family entertainment company and owner of one of the most iconic brand portfolios in the world. We engage consumers and fans through our franchise brands, including Barbie, Hot Wheels, Fisher-Price, American Girl, Thomas & Friends, UNO, Masters of the Universe, Matchbox, Monster High, MEGA and Polly Pocket, as well as other popular properties that we own or license in partnership with global entertainment companies. Our offerings include toys, content, consumer products, digital and live experiences. Our products are sold in collaboration with the worldâs leading retail and ecommerce companies. Since its founding in 1945, Mattel is proud to be a trusted partner in empowering generations to explore the wonder of childhood and reach their full potential.
Mattelâs award-winning workplace culture has been recognized by Forbes, Fast Company, Newsweek, Great Place to Work, TIME, and more.
Visit us at https://jobs.mattel.com/ and www.instagram.com/MattelCareers.
Mattel is an Equal Opportunity Employer where we want you to bring your authentic self to work every day. We welcome all job seekers, and all applicants will receive consideration for employment.
Videos to watch:
The Culture at Mattel
Corporate Philanthropy
Develops and implements application security measures, conducts code reviews and vulnerability assessments, and manages security controls across software systems.
Designs and implements SOAR automation solutions for SOC operations, optimizing incident response workflows and security integrations in a managed security services environment.
About ProArch:
At ProArch, we partner with businesses around the world to turn big ideas into better outcomes through IT services that span cybersecurity, cloud, data, AI, and app development.
Weâre 400+ team members strong across 3 countries (we call ourselves ProArchians)âand hereâs what connects us all:
Whatâs it like to work here?
At ProArch, youâll be part of teams that design and deliver technology solutions solving real business challenges for our clients. With services spanning AI, Data, Application Development, Cybersecurity, Cloud & Infrastructure, and Industry Solutions, your work may involve building intelligent applications, securing businessâcritical systems, or supporting cloud migrations and infrastructure modernization.
Every role here contributes to shaping outcomes for global clients and driving meaningful impact. Youâll collaborate with experts across data, AI, engineering, cloud, cybersecurity, and infrastructureâsolving complex problems with creativity, precision, and purpose. Youâll join a culture rooted in technology, curiosity, and continuous learning. A place where we move fast, trust you to make an impact, encourage innovation, and support your growth.
Position Overview
ProArch IT Solutions is seeking a highly motivated and technically skilled Security / SOAR Automation Engineer to join our global cybersecurity operations team supporting a fast-paced Managed Security Services Provider (MSSP) environment. The ideal candidate will possess strong hands-on experience in cybersecurity automation, SOAR platform engineering, SOC workflow orchestration, and security integrations across modern security ecosystems.
This role is heavily focused on designing, implementing, optimizing, and scaling SOC automation capabilities to improve operational efficiency, incident response, alert enrichment, triage automation, threat intelligence utilization, and AI-driven security operations enhancements.
The Engineer will work closely with SOC Operations, Security Engineering, Security Consulting, and Leadership teams to deliver automation initiatives and operational improvements while supporting a globally distributed security environment.
This is a permanently remote opportunity for candidates based in India, aligned primarily to USA Eastern Time (ET) business hours, with flexibility depending on operational requirements.
Key Responsibilities:
SOAR Engineering & Automation
Design, develop, implement, and maintain SOAR playbooks and automation workflows for SOC operations.
Build scalable security orchestration workflows for:
Alert triage
Automated enrichment
Threat intelligence correlation
Incident response
Containment workflows
Identity-based investigations
Case management
Reporting automation
Reporting automation
Implement and maintain integrations between SOAR platforms and various security technologies using APIs, webhooks, SDKs, and custom connectors.
Develop automation logic to improve SOC efficiency, reduce analyst fatigue, and accelerate Mean Time to Respond (MTTR) and Mean Time to Resolve.
Support SOAR platform lifecycle management including upgrades, change management, testing, governance, RBAC, and operational maintenance.
Assist with SOAR platform administration, identity & access management, and environment hardening.
Security Platform Integrations
Hands-on experience integrating and automating workflows involving:
SOC Operations Enhancement
AI & Advanced Security Operations
Collaboration & Project Coordination
Experience
Technical Skills
Strong understanding of:
Preferred Qualifications
Soft Skills & Work Style
Work Schedule & Environment
What Success Looks Like in This Role
Life @ ProArch
Build and operate security scanning infrastructure (SAST, DAST, SCA) across CI/CD pipelines, tune detection rules, and enforce security gates in the software delivery process.
Interactive Brokers Group, Inc. (Nasdaq: IBKR) is a global financial services company headquartered in Greenwich, CT, USA, with offices in over 15 countries. We have been at the forefront of financial innovation for over four decades, known for our cutting-edge technology and client commitment.
IBKR affiliates provide global electronic brokerage services around the clock on stocks, options, futures, currencies, bonds, and funds to clients in over 200 countries and territories. We serve individual investors and institutions, including financial advisors, hedge funds and introducing brokers. Our advanced technology, competitive pricing, and global market help our clients to make the most of their investments.
Barronâs has recognized Interactive Brokers as the #1 online broker for six consecutive years. Join our dynamic, multi-national team and be a part of a company that simplifies and enhances financial opportunities using state-of-the-art technology.
About the Role
We are looking for an Application Security Engineer who lives at the intersection of security and engineering. This is not a policy role â you will be hands-on building, tuning, and scaling the security scanning infrastructure that protects our software delivery pipeline. You will own SAST, DAST, and SCA tooling end to end, drive false positive reduction, and embed security gates directly into CI/CD workflows across engineering teams. A deep understanding of how vulnerabilities actually work â not just what scanners report â is fundamental to success in this role.
The Problem Weâre Solving
We operate in a complex, regulated environment â multiple languages, layered network boundaries, and delivery velocity that cannot be sacrificed for security theater. We are building a scanning program that works in that reality. Tuned, automated, trusted â coverage that is measurable and findings that engineers actually act on. This role exists to solve that problem.
What Youâll Do
Own and operate static, dynamic, and software composition analysis scanning platforms across all engineering pipelines â onboarding new repositories, tuning rulesets, and maintaining coverage metrics
Build and maintain CI/CD security gates that enforce scan policies at pull request, merge, and release stages across engineering workflows
Write custom detection rules tailored to the organizationâs tech stack and threat model â covering vulnerability classes specific to the languages and frameworks in use
Triage and prioritize scan findings with a deep understanding of actual exploitability â distinguish true positives from noise, explain the real-world impact of each finding, and build suppression workflows that reduce false positive rates without creating blind spots
Develop automation to ticket, deduplicate, and route findings to the right engineering teams with enough context for developers to understand and act on them
Integrate dynamic scanning into pre-production environments with authenticated coverage â understanding what attack surface is actually reachable versus what scanners miss
Partner with engineering teams on remediation â provide exploit context, reproduce findings where necessary, and give concrete fix guidance grounded in how the vulnerability actually works
Support software composition analysis and dependency security programs â tying third-party vulnerabilities back to actual reachability and exploitability in the codebase rather than treating every CVE as equal severity
Contribute to the security champions program â help developers understand not just what is flagged but why it matters and how an attacker would use it
Run structured evaluations of new tooling and drive buy vs build decisions with documented PoC results
What Weâre Looking For
These areas are the capabilities we are looking for. Strong candidates will not check every box. If you are strong in either of the below, we want to hear from you. Depth in one area with curiosity about other matters more than surface-level familiarity across all of them.
5-7 years in application security, DevSecOps, or a security engineering role with tooling focus
Strong foundational knowledge of how web application vulnerabilities work at a technical level â injection classes, broken authentication patterns, insecure deserialization, XXE, SSRF, IDOR, race conditions, and business logic flaws â not just awareness of their names
Ability to read a scan finding and independently reason about whether it is exploitable in context â understanding data flow, trust boundaries, and what an attacker would actually need to trigger it
Hands-on experience deploying and tuning SAST platforms â writing or modifying rules, understanding AST-based and dataflow analysis, and knowing where static analysis fundamentally cannot reach
Experience integrating security tooling into CI/CD pipelines and enforcing policy at key delivery gates
Proficiency in at least one scripting language â Python or Go strongly preferred â for automation and tooling development
Experience with DAST tooling in authenticated scan configurations â understanding what authenticated coverage requires and how session handling, CSRF tokens, and multi-step flows affect scan fidelity
Familiarity with SCA concepts â dependency graphs, transitive vulnerabilities, license risk, reachability analysis, and SBOM formats including CycloneDX and SPDX
Ability to read and reason about code across multiple languages
Nice to Have
Development background â candidates who have written production code and personally addressed security vulnerabilities in a codebase bring a fundamentally different perspective to this role; they understand why developers make the choices they do, where fixes break things, and how to give remediation guidance that engineers will actually implement
Background that spans both sides of the SDLC â having sat in a developer role before moving into security means stronger partnerships with engineering teams and more credible guidance during code review and triage conversations
Experience writing custom detection logic for organization-specific vulnerability patterns beyond out-of-the-box scanner coverage
\* Depending upon the shifts.
** The benefits package is subject to change at the managementâs discretion.
Hands-on security engineer who validates bug bounty submissions, reproduces exploits, and partners with engineering teams to drive vulnerability remediation across web, API, and trading platforms.
Interactive Brokers Group, Inc. (Nasdaq: IBKR) is a global financial services company headquartered in Greenwich, CT, USA, with offices in over 15 countries. We have been at the forefront of financial innovation for over four decades, known for our cutting-edge technology and client commitment.
IBKR affiliates provide global electronic brokerage services around the clock on stocks, options, futures, currencies, bonds, and funds to clients in over 200 countries and territories. We serve individual investors and institutions, including financial advisors, hedge funds and introducing brokers. Our advanced technology, competitive pricing, and global market help our clients to make the most of their investments.
Barronâs has recognized Interactive Brokers as the #1 online broker for six consecutive years. Join our dynamic, multi-national team and be a part of a company that simplifies and enhances financial opportunities using state-of-the-art technology.
Security Engineer -Bug Bounty
About the Role
We are looking for a Security Engineer focused on Bug Bounty who treats researcher reports as security data, not support tickets. This is not a coordination role â you will be hands-on validating vulnerabilities, reproducing exploits, and working directly with engineering teams to drive fixes. You will own the full lifecycle of the program: scope design, triage, researcher relations, remediation tracking, and the upstream feedback that turns external findings into internal controls.
The other half of this role is developer partnership. Findings that sit in a backlog do not improve security. You will reduce the friction that keeps confirmed vulnerabilities from being fixed â translating researcher reports into clear remediation guidance, removing ambiguity that slows engineers down, and identifying the process or tooling gaps that let the same vulnerability class appear repeatedly.
A deep understanding of how vulnerabilities actually work â not just how to classify them â is fundamental to success here.
What Youâll Do
Own day-to-day operations of the bug bounty program on the managed platform, including report triage, severity assessment, researcher communication, and payout decisions â maintaining SLA compliance across all inbound volume
Reproduce and technically validate submitted vulnerabilities across web, API, mobile, and trading infrastructure attack surfaces â reason independently about exploitability in context, not just what the report claims
Classify findings using CVSS, OWASP, and business impact criteria; distinguish genuine risk from theoretical severity; escalate critical issues into incident response workflows with enough context for engineering leadership to act immediately
Act as a remediation partner, not just a reporter â work directly with developers to clarify findings, provide exploit context, reproduce issues where needed, and give fix guidance grounded in how the vulnerability actually works; track what slows remediation and fix it
Identify recurring vulnerability classes across inbound reports and feed patterns back into AppSec initiatives â SAST rule tuning, developer training, design review checklists â closing the loop from external discovery to internal prevention
Maintain program scope, out-of-scope guidance, and rules of engagement; adjust based on surface area changes, new products, and program maturity signals
Coordinate with legal, compliance, and communications on responsible disclosure edge cases, researcher disputes, and public disclosure timelines
Produce monthly and quarterly program metrics for security leadership â coverage, triage velocity, remediation cycle times, finding trends â with enough analytical depth to drive program decisions
Evaluate attack surface expansions â new APIs, products, acquisitions â for readiness to enter program scope
What Weâre Looking For
These are the capabilities that matter for this role. Strong candidates will not check every box. Depth in vulnerability validation and developer partnership matters more than broad platform familiarity. If you have operated on both sides of the researcher-developer relationship, we want to hear from you.
2â5 years in application security, penetration testing, bug bounty operations, or a security engineering role with hands-on validation focus
Strong foundational knowledge of how web application vulnerabilities work at a technical level â SSRF, IDOR, auth bypass, injection classes, business logic flaws, API authorization failures, OAuth misconfigurations â not just awareness of their names
Ability to read a researcher report and independently reason about exploitability in the specific context of the application â understand trust boundaries, data flow, and what an attacker would actually need to trigger the finding
Experience operating a bug bounty or vulnerability disclosure program on a managed platform â Bugcrowd, HackerOne, or equivalent â with ownership of triage decisions and researcher communication
Strong written communication under pressure â you will be writing triage decisions to elite researchers and remediation guidance to developers simultaneously; both audiences require clarity and credibility
Familiarity with REST and GraphQL API security, OAuth 2.0 flows, session management, and web application architecture at the level needed to validate findings without relying on the researcherâs reproduction steps alone
Ability to work cross-functionally with engineering teams â translate security findings into actionable, developer-friendly guidance that engineers will actually implement rather than defer
Nice to Have
Active bug bounty participation as a researcher â candidates who have filed reports themselves understand what makes a finding credible, what frustrates researchers about triage decisions, and how to run a program that retains high-signal contributors
Development background â candidates who have written production code and personally addressed security vulnerabilities bring a fundamentally different perspective to remediation partnership; they understand why developers make the choices they do, where fixes break things, and how to give guidance that engineers will actually act on
Experience in financial services or a similarly regulated environment â understanding the compliance overlay on remediation timelines and disclosure decisions changes how you prioritize and escalate
Scripting ability in Python or Bash â for triage automation, scope monitoring, duplicate detection, or metrics extraction from platform APIs
Familiarity with DAST tooling (Burp Suite Pro, Nuclei, ZAP) â candidates who can independently reproduce and extend researcher findings without relying solely on the submitted reproduction steps are significantly more effective in this role
\* Depending upon the shifts.
** The benefits package is subject to change at the managementâs discretion.
Leads ServiceNow security operations and risk management implementations, provides technical leadership and pre-sales consulting on cybersecurity solutions for enterprise clients.
Tech native for over 30 years, Devoteam guides businesses through sustainable digital transformation to deliver value.
With over 11,000 tech architects in more than 25 countries across Europe, the Middle East, and Africa, Devoteam is committed to using technology to serve people.
Devoteam has been a ServiceNow Elite Partner since 2019. In 2026, it was recognised as ServiceNow Partner of the Year for the fourth consecutive year.
Looking to take your IT security consulting career to the next level? Our ServiceNow Cyber & Risk team is seeking a Consultant with an innovative, can-do attitude and a passion for making a difference. Youâll be based in our Prague office and work with global companies from across Europe.
With us, youâll have the chance to do the job of your dreams - the one you didnât even know you wanted yet. Hereâs what you can expect:
Qualifications
You will be a great fit for this role if you haveâŚ
Want to be head of the pack? Weâd definitely welcomeâŚ
What will you get apart from the salary?
Moreover, we offer:
And last but not least, you can rely on:
Benefits:
Moreover, we offer:
And last but not least, you can rely on:
Implements and administers information security tools, manages security incidents, conducts analysis, and ensures compliance with regulatory requirements.
At NiCE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
At NICE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
The Information Security Engineer will assist in implementing and administering initiatives implemented by InfoSec, including security initiatives mandated by regulatory and compliance requirements. This position will be responsible for ensuring that regular housekeeping activities are performed to maintain and monitor processes and systems.
The role ensures that both Corporate and Production services are managed according to company policies, processes, and compliance and regulatory requirements.
Learn more about the Benefits at NICE
Join an ever-growing, market-disrupting, global company where the teams â comprised of the best of the best â work in a fast-paced, collaborative, and creative environment! As the market leader, every day at NICE is a chance to learn and grow, and there are endless internal career opportunities across multiple roles, disciplines, domains, and locations. If you are passionate, innovative, and excited to constantly raise the bar, you may just be our next NICEr!
NICEâŻLtd. (NASDAQ: NICE) software products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences, fight financial crime, and ensure public safety. Every day, NICE software manages more than 120 million customer interactions and monitors 3+ billion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud, and digital, NICE is consistently recognized as the market leader, with over 8,500 employees across 30+ countries.
NICE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation, or any other category protected by law.
#LI-Hybrid
Requisition ID: 10994 Reporting into: Manager, Information Security, CX
Role Type: Individual Contributor
About NiCE
NICEâŻLtd. (NASDAQ: NICE)âŻsoftware products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences,âŻfight financial crimeâŻand ensure public safety.âŻEvery day, NiCE software managesâŻmore thanâŻ120 million customer interactions and monitorsâŻ3+âŻbillion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud and digital, NiCE is consistently recognized as the market leader in its domains, with over 8,500 employees across 30+ countries.
NiCE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation or any other category protected by law.
Implements and administers security initiatives, manages security tools, responds to incidents, and ensures compliance with regulatory requirements.
At NiCE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
At NICE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
The Information Security Engineer will assist in implementing and administering initiatives implemented by InfoSec, including security initiatives mandated by regulatory and compliance requirements. This position will be responsible for ensuring that regular housekeeping activities are performed to maintain and monitor processes and systems.
The role ensures that both Corporate and Production services are managed according to company policies, processes, and compliance and regulatory requirements.
Learn more about the Benefits at NICE
Join an ever-growing, market-disrupting, global company where the teams â comprised of the best of the best â work in a fast-paced, collaborative, and creative environment! As the market leader, every day at NICE is a chance to learn and grow, and there are endless internal career opportunities across multiple roles, disciplines, domains, and locations. If you are passionate, innovative, and excited to constantly raise the bar, you may just be our next NICEr!
NICEâŻLtd. (NASDAQ: NICE) software products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences, fight financial crime, and ensure public safety. Every day, NICE software manages more than 120 million customer interactions and monitors 3+ billion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud, and digital, NICE is consistently recognized as the market leader, with over 8,500 employees across 30+ countries.
NICE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation, or any other category protected by law.
#LI-Hybrid
Requisition ID: 10995 Reporting into: Manager, Information Security, CX
Role Type: Individual Contributor
About NiCE
NICEâŻLtd. (NASDAQ: NICE)âŻsoftware products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences,âŻfight financial crimeâŻand ensure public safety.âŻEvery day, NiCE software managesâŻmore thanâŻ120 million customer interactions and monitorsâŻ3+âŻbillion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud and digital, NiCE is consistently recognized as the market leader in its domains, with over 8,500 employees across 30+ countries.
NiCE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation or any other category protected by law.
Ensures compliance with information security frameworks, conducts internal audits, and supports cybersecurity operations and incident response activities.
At NiCE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
At NICE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
So, whatâs the role all about?
The Information Security Analyst is primarily responsible for ensuring compliance with information security frameworks such as Cyber Essentials, Cyber Essentials Plus, ISO 27001, ISO 27701, ISO 42001, GDPR, and DORA. This role focuses on internal audits, regulatory compliance, and readiness for external audits while also contributing to Cybersecurity Operations Center (CSOC) activities, including incident monitoring and response.
How will you make an impact?
Have you got what it takes?
Strong expertise in audit and compliance frameworks, including ISO 27001, ISO 27701, ISO 42001, GDPR, DORA, Cyber Essentials, and Cyber Essentials Plus.
Familiarity with CSOC tools such as Rapid7 InsightIDR or other SIEM solutions.
Hands-on experience in internal and external audits, compliance assessments, and process improvement.
Basic understanding of incident response frameworks and cybersecurity best practices.
Exceptional analytical, organizational, and communication skills.
Commitment to continuous learning and professional development in audit, compliance, and security.
You will have an advantage if you also have:
A Masterâs degree in Cybersecurity, Risk Management, or related fields is a plus.
Certifications (preferred or required):
Certified Information Systems Auditor (CISA)
Certified Information Security Manager (CISM)
Certified Information Systems Security Professional (CISSP)
ISO 27001 Lead Auditor or Implementer
Cyber Essentials Assessor (or equivalent)
GIAC certifications (e.g., GIAC Certified Incident Handler - GCIH or GIAC Security Essentials - GSEC)
Whatâs in it for you?
Join an ever-growing, market disrupting, global company where the teams â comprised of the best of the best â work in a fast-paced, collaborative, and creative environment! As the market leader, every day at NICE is a chance to learn and grow, and there are endless internal career opportunities across multiple roles, disciplines, domains, and locations. If you are passionate, innovative, and excited to constantly raise the bar, you may just be our next NICEr!
Enjoy NICE-FLEX!
At NICE, we work according to the NICE-FLEX hybrid model, which enables maximum flexibility: 2 days working from the office and 3 days of remote work, each week. Naturally, office days focus on face-to-face meetings, where teamwork and collaborative thinking generate innovation, new ideas, and a vibrant, interactive atmosphere.
About NICE
NICEâŻLtd. (NASDAQ: NICE)âŻsoftware products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences,âŻfight financial crimeâŻand ensure public safety.âŻEvery day, NICE software managesâŻmore thanâŻ120 million customer interactions and monitorsâŻ3+âŻbillion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud and digital, NICE is consistently recognized as the market leader in its domains, with over 8,500 employees across 30+ countries.
NICE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation or any other category protected by law.
Requisition ID: 10993
Reporting into: Director Information
Role Type: Individual Contributor
About NiCE
NICEâŻLtd. (NASDAQ: NICE)âŻsoftware products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences,âŻfight financial crimeâŻand ensure public safety.âŻEvery day, NiCE software managesâŻmore thanâŻ120 million customer interactions and monitorsâŻ3+âŻbillion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud and digital, NiCE is consistently recognized as the market leader in its domains, with over 8,500 employees across 30+ countries.
NiCE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation or any other category protected by law.
Implements and administers security initiatives, manages security tools like SIEM and endpoint protection, and responds to security incidents while ensuring compliance with regulatory requirements.
At NiCE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
At NICE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
The Information Security Engineer will assist in implementing and administering initiatives implemented by InfoSec, including security initiatives mandated by regulatory and compliance requirements. This position will be responsible for ensuring that regular housekeeping activities are performed to maintain and monitor processes and systems.
The role ensures that both Corporate and Production services are managed according to company policies, processes, and compliance and regulatory requirements.
Learn more about the Benefits at NICE
Join an ever-growing, market-disrupting, global company where the teams â comprised of the best of the best â work in a fast-paced, collaborative, and creative environment! As the market leader, every day at NICE is a chance to learn and grow, and there are endless internal career opportunities across multiple roles, disciplines, domains, and locations. If you are passionate, innovative, and excited to constantly raise the bar, you may just be our next NICEr!
NICEâŻLtd. (NASDAQ: NICE) software products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences, fight financial crime, and ensure public safety. Every day, NICE software manages more than 120 million customer interactions and monitors 3+ billion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud, and digital, NICE is consistently recognized as the market leader, with over 8,500 employees across 30+ countries.
NICE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation, or any other category protected by law.
#LI-Hybrid
Requisition ID: 10994 Reporting into: Manager, Information Security, CX
Role Type: Individual Contributor
About NiCE
NICEâŻLtd. (NASDAQ: NICE)âŻsoftware products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences,âŻfight financial crimeâŻand ensure public safety.âŻEvery day, NiCE software managesâŻmore thanâŻ120 million customer interactions and monitorsâŻ3+âŻbillion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud and digital, NiCE is consistently recognized as the market leader in its domains, with over 8,500 employees across 30+ countries.
NiCE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation or any other category protected by law.
Implements and administers security initiatives, manages security tools like SIEM and endpoint protection, responds to incidents, and ensures compliance with regulatory requirements.
At NiCE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
At NICE, we donât limit our challenges. We challenge our limits. Always. Weâre ambitious. Weâre game changers. And we play to win. We set the highest standards and execute beyond them. And if youâre like us, we can offer you the ultimate career opportunity that will light a fire within you.
The Information Security Engineer will assist in implementing and administering initiatives implemented by InfoSec, including security initiatives mandated by regulatory and compliance requirements. This position will be responsible for ensuring that regular housekeeping activities are performed to maintain and monitor processes and systems.
The role ensures that both Corporate and Production services are managed according to company policies, processes, and compliance and regulatory requirements.
Learn more about the Benefits at NICE
Join an ever-growing, market-disrupting, global company where the teams â comprised of the best of the best â work in a fast-paced, collaborative, and creative environment! As the market leader, every day at NICE is a chance to learn and grow, and there are endless internal career opportunities across multiple roles, disciplines, domains, and locations. If you are passionate, innovative, and excited to constantly raise the bar, you may just be our next NICEr!
NICEâŻLtd. (NASDAQ: NICE) software products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences, fight financial crime, and ensure public safety. Every day, NICE software manages more than 120 million customer interactions and monitors 3+ billion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud, and digital, NICE is consistently recognized as the market leader, with over 8,500 employees across 30+ countries.
NICE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation, or any other category protected by law.
#LI-Hybrid
Requisition ID: 10995 Reporting into: Manager, Information Security, CX
Role Type: Individual Contributor
About NiCE
NICEâŻLtd. (NASDAQ: NICE)âŻsoftware products are used by 25,000+ global businesses, including 85 of the Fortune 100 corporations, to deliver extraordinary customer experiences,âŻfight financial crimeâŻand ensure public safety.âŻEvery day, NiCE software managesâŻmore thanâŻ120 million customer interactions and monitorsâŻ3+âŻbillion financial transactions.
Known as an innovation powerhouse that excels in AI, cloud and digital, NiCE is consistently recognized as the market leader in its domains, with over 8,500 employees across 30+ countries.
NiCE is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, age, sex, marital status, ancestry, neurotype, physical or mental disability, veteran status, gender identity, sexual orientation or any other category protected by law.