Information Security Engineer leading security practices across global enterprise. Collaborating with teams to integrate security into software development lifecycle in a hybrid setting.
Responsibilities
Lead and support information security projects including planning, execution, documentation, and reporting
Collaborate with development teams to embed security into the software development lifecycle, including secure coding practices and code reviews
Provide oversight and strategic guidance in the design, implementation, and continuous improvement of DevSecOps tooling and secure development pipelines
Conduct risk assessments, develop mitigation strategies, and track remediation efforts
Ensure compliance with security frameworks and regulations such as NIST, ISO 27001, SOX, and PCI DSS
Design and implement security controls for cloud platforms including AWS and Azure
Perform threat modeling and vulnerability assessments to identify and mitigate risks
Communicate security risks and recommendations effectively to both technical and non-technical stakeholders
Requirements
Bachelor's degree in Computer Science, Information Systems, or Information Security
Minimum 5 years in Information Security Architecture, Engineering, or Auditing
Strong understanding of security countermeasures for web applications, networks, databases, IT systems, and cloud environments
Hands-on experience with cloud security architecture and controls in AWS and Azure
Proficiency in managing and tuning DevSecOps tools and CI/CD security integrations
Knowledge of security frameworks such as NIST 800-53, ISO 27001, and CIS Controls
Ability to conduct secure code reviews and provide actionable feedback to developers
Excellent communication, collaboration, and project management skills
Benefits
Wellness and mental health initiatives
Support volunteerism and environmental efforts
Employee education through leadership training and skill-building
Cyber Security Analyst Intern gaining hands - on experience in information security through guided participation and real - world tools. The role is part - time with remote and hybrid options from U.S. locations.
Application Security Analyst supporting vulnerability management program at Accurate Background. Focusing on developer communication and tooling operations for application security insights.
Security Compliance Analyst supporting IT Security compliance and risk management initiatives at Acosta Group. Engaging with cross - functional teams to ensure adherence to regulatory and security frameworks.
Senior Cyber Security Analyst at Peach Payments responsible for facilitating security operations in Cape Town hub. Ensuring compliance and supporting security infrastructure for digital payments across Africa.
Information Security Analyst managing information security processes at Keyloop. Ensuring compliance with industry standards and collaborating with teams for vulnerability management.
Cyber Threat Intelligence Analyst supporting IT Security team in identifying and mitigating cyber threats. Ensuring network security and protecting company secrets in high - tech environment.
Risk Analyst supporting cyber risk management activities for PokerStars and other brands. Ensuring accurate risk documentation, reporting, and stakeholder engagement in Cluj - Napoca, Romania.
Cyber Security Analyst responsible for governance, risk management, and compliance projects for clients and internally at Cyberlogic. Engaging with clients on project - based work while developing policies and standards.
Analista de segurança de informação supporting the maintenance of data privacy and protection programs at Minsait. Involves audit support, training, and compliance with legislation.
IT Security Analyst assisting in managing technology environments ensuring security compliance. Supporting Brasilseg's platforms with adherence to best practices in software and hardware.