Boston Partners: Global investment firm specializing in value equity management strategies.
5+ YOEBachelor's degree in computer science or equivalent, 5+ years of cybersecurity experience, strong analytical, documentation, writing, communication, and project collaboration skills; CISSP preferred.
Microsoft 365, Microsoft Purview, Microsoft Defender, Microsoft Entra ID, NIST AI RMF
Senior Information Security Analyst - Attack Surface Management Lead
Somerville, Massachusetts, United States
$94k-$137k/yrHybridFull Time
Mass General Brigham: Provides integrated medical care, research, and clinical training services.
5+ YOERequires 5–7 years of relevant cybersecurity experience, an associate's or bachelor's degree or equivalent experience, strong cybersecurity expertise, communication, leadership, project management, and decision-making skills.
ProsegurBolsa de Madrid: PSG: Global provider of physical security, cash logistics, and technology.
Bachelor's degree in Computer Science, Information Technology, or related field; security solution design experience; networking and security expertise; incident response, analytical, communication, and troubleshooting skills.
Endpoint Detection and Response (EDR), Security Information and Event Management (SIEM), Secure Access Service Edge (SASE), Vulnerability and Compliance Management (VCM), IDS/IPS, firewalls, GDPR, HIPAA, PCI DSS
WHOOP: Wearable technology for personalized health and performance tracking.
3+ YOE3+ years in security operations/incident response; experience with endpoint, identity, cloud, or SaaS investigations; familiarity with SIEM, EDR, MITRE ATT&CK; automation/scripting experience; strong analytical and communication skills; security certs are a plus.
Planet FitnessNYSE: PLNT: Operates a global network of low-cost fitness centers.
3+ YOEBachelor's degree and 3+ years in information security; familiarity with SIEM, IDS/IPS, EDR/XDR, cloud monitoring, SOAR, incident response, threat hunting, and relevant certifications preferred.
Center for Health Information and Analysis: Analyzes health care data to improve system transparency and affordability.
1+ YOE1+ year IT security experience (Level I) or 2+ years (Level II); knowledge of Azure and Microsoft technologies; experience with network/firewall tech; strong written and verbal English; perform risk/vulnerability assessments and incident response.
Active Directory, Microsoft 365, Microsoft Azure, Cisco, Palo Alto
Boston University: Private research university providing higher education degree programs.
2+ YOERequires 2+ years of cybersecurity experience, familiarity with security tools, network protocols, operating systems, security technologies, and regulatory requirements. ServiceNow, ITIL, and security certifications are preferred.
SS&C TechnologiesNasdaq: SSNC: Provides software and technology for financial and healthcare sectors.
5+ YOEBachelor’s in Information Security or Computer Science; 5+ years in cybersecurity; knowledge of NIST CSF, ISO 27001, SOC 2, CIS Controls; experience with firewalls, IDS/IPS, WAF, cloud security (AWS/Azure); scripting (Python/PowerShell/Bash), IaC security (Terraform/CloudFormation); CISSP/CISM/CCSP/GSEC or equivalent.
BrukerNASDAQ: BRKR: Develops and manufactures high-performance scientific and diagnostic instruments.
3+ YOEBachelor's degree in a related field and 3–5 years of cybersecurity, SOC, incident response, or threat detection experience; expertise with security monitoring and incident response tools required.
Microsoft Defender XDR, Microsoft Sentinel, Kusto Query Language (KQL), SIEM, MITRE ATT&CK, PowerShell, Python, Microsoft Azure, SOAR
BrukerNASDAQ: BRKR: Manufacturer of high-performance scientific instruments and diagnostic solutions.
3+ YOEBachelor's degree in a related field and 3–5 years of cybersecurity, SOC, incident response, or threat detection experience; requires security monitoring, incident response, threat hunting, and analytical skills.
Microsoft Defender XDR, Microsoft Sentinel, Kusto Query Language (KQL), SIEM, MITRE ATT&CK, PowerShell, Python, SOAR
DigitalOceanNew York Stock Exchange: DOCN: Simplifies cloud infrastructure for developers, startups, and SMBs.
6+ YOE6+ years in detection & response, insider risk, or security engineering; hands-on UEBA/SIEM/DLP/UAM/SOAR; scripting with Python/Go/Bash; familiarity with macOS, Windows, Linux, Kubernetes and cloud; knowledge of MITRE ATT&CK and NIST.
Boston or Austin or Washington or Seattle or San Francisco
$120k-$155k/yrRemoteFull Time
HackerOne: Connecting organizations with ethical hackers to find security vulnerabilities.
3+ YOE3+ years security testing/vulnerability research on web/mobile apps, strong OWASP Top 10 knowledge, experience with Burp Suite and CVSS, ability to reproduce/validate findings and communicate technical impact in English.
Burp Suite, Common Vulnerability Scoring System (CVSS)
SOC Vulnerability Management Program Security Analyst
Chelsea, Massachusetts, United States
$83k-$123k/yrHybridFull Time
Commonwealth of Massachusetts: Providing public services and governance to the people of Massachusetts.
2+ YOEMinimum 2 years IT/security experience, knowledge of vulnerability management, networking, Windows/Linux, cloud security (AWS/Azure), experience with Tenable/Veracode, scripting (Python/PowerShell/JavaScript/PHP/Ruby), and strong communication and analytical skills.
Tenable One, Veracode, Active Directory, AWS, Microsoft Azure, Python, PowerShell, JavaScript, PHP, Ruby, Common Vulnerability Scoring System (CVSS), Security Orchestration, Automation, and Response (SOAR)
Lendbuzz: AI-powered platform providing auto loans to underserved borrowers.
3+ YOEBachelor's in CS/IT,3+ years cybersecurity experience; hands-on incident response, security ops, and policy enforcement; experience with firewalls, IDS/IPS,SIEM,EDR,IAM,CSPM and cloud (AWS/Azure/GCP); familiarity with NIST/CIS/ISO 27001; strong communication.
Seven AI: Provides autonomous AI agents for enterprise security operations.
2+ YOERequires 2+ years in cybersecurity operations, alert investigation across endpoint, network, identity, email, and cloud sources, SIEM querying, incident triage, malware analysis, and strong analytical and interpersonal skills.
Cytel: Provides clinical trial design software and biostatistical consulting services.
Bachelor's in cybersecurity/IT/CS or equivalent experience; strong security operations knowledge (threat detection, incident investigation, log analysis); hands-on EDR and SIEM experience; Microsoft Azure and Windows experience; strong analytical and communication skills; relevant certs preferred.
endpoint detection and response platforms, SIEM solutions, Microsoft Azure, Azure AD, CrowdStrike Falcon, Secureworks Taegis, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Sentinel, PowerShell, Windows
UKG: Provider of workforce management and human capital management software.
5+ YOE5+ years hands-on digital forensics and incident response; deep expertise across endpoint, memory, network, cloud, Windows/Linux; scripting (Python/PowerShell/Bash); SIEM/EDR/SOAR experience; incident command and threat hunting skills.