Inland Empire Health Plan: Public health plan managing Medi-Cal, Medicare-Medicaid, and Covered California coverage for Riverside and San Bernardino County residents.
5+ YOE5 years cybersecurity experience focused on governance, compliance and risk; bachelor\u0002s in information systems security or related required; CISSP preferred; knowledge of cybersecurity/privacy laws and ability to apply principles.
Inland Empire Health Plan: Public health plan managing Medi-Cal, Medicare-Medicaid, and Covered California coverage for Riverside and San Bernardino County residents.
5+ YOEBachelor's in information systems security or related field, 5+ years cybersecurity experience focused on governance/compliance/risk, CISSP preferred, knowledge of cybersecurity/privacy laws and principles, leadership and project management experience.
Senior Information Security Governance, Risk & Compliance Analyst
Northridge or Georgia or Minnesota or Texas
$121k-$205k/yrOnsiteFull Time
MedtronicNYSE: MDT: Global leader in medical technology and healthcare solutions.
7+ YOEBachelor’s degree or equivalent experience, 7+ years in information security GRC, risk, SOX ITGC, audit, access governance, or internal controls; SAP GRC certifications and advanced governance expertise required.
SAP GRC Access Control, SAP GRC Process Control, SAP GRC Risk Management, SAP, Oracle, Workday, ServiceNow, SailPoint, Entra ID, NIST Cybersecurity Framework, NIST Risk Management Framework, NIST AI Risk Management Framework, ISO 27001, ISO 31000, ISO 42001, COBIT, COSO Internal Control Framework, SOX 404 IT General Controls, HIPAA
Southland Credit Union: Member-owned, not-for-profit credit union providing banking, savings, loans, and financial services to Los Angeles and Orange County communities.
4+ YOERequires 4–6 years in information security, cybersecurity, risk, compliance, or IT audit; security risk assessment and governance experience; and a bachelor's degree or equivalent experience. Professional certification preferred.
NIST, ISO 27001, Governance, Risk, and Compliance (GRC) platforms
Confie: National personal lines insurance brokerage and retail agency.
4+ YOE4+ years IT security experience; perform risk assessments, security analysis, remediation planning, server administration, and incident response. Knowledge of network security, UTM/IPS/IDS, Linux, VMware, and Microsoft Active Directory.
Linux, VMware ESX/Vsphere, Microsoft Windows Active Directory, UTM, IPS, IDS, TCP/IP, MPLS, VoIP, Firewalls, routers, PCO, SOX
Credence Management Solutions: AI-native federal services.
7+ YOEActive TS/SCI clearance, Bachelor’s or Master’s in IT/Computer Science/Information Systems with 7–10+ years experience, familiarity with DoD/DISA cybersecurity policies, RMF, STIGs, PKI, risk assessments, and source code/security audits.
SpaceXNasdaq: SPCX: Designing, manufacturing, and launching advanced rockets and spacecraft.
5+ YOERequires a high school diploma and 5+ years in cybersecurity compliance, audit, technical security, control testing, security standards, or risk management; relevant certifications preferred.
ERP, SIEM, CIS Benchmarks, STIGs, NIST, ISO 27001, GDPR, GRC
The Marvin Group: Privately held aerospace and defense manufacturer serving governments, military services, and defense prime contractors.
Requires cybersecurity certification or equivalent experience, security policy knowledge, vulnerability and risk assessment skills, SIEM, cloud, network and endpoint security expertise, and strong analytical and communication skills.
Senior Information Security Analyst, GRC/Responsible AI
Irvine or Milpitas
$125k-$207k/yrOnsiteFull Time
SanDiskNASDAQ: SNDK: Specialist in NAND flash memory and data storage solutions.
6+ YOE6+ years information security experience with GRC and AI risk management, bachelor's or equivalent, technical proficiency in threat modeling and risk assessment, familiarity with NIST AI RMF and ISO/IEC 42001, and strong cross‑functional communication.
OWASP Top 10 for LLM Applications, NIST AI RMF, ISO/IEC 42001, STRIDE, PASTA, attack tree analysis, CI/CD
Applied Medical: Manufacturer of advanced surgical technologies and medical devices.
3+ YOEBachelor's degree or equivalent experience; 3–5 years managing technology contracts; knowledge of contractual terms, risk mitigation, GDPR, and CCPA; strong communication and collaboration skills.
Contract Lifecycle Management (CLM), End User License Agreements (EULAs), Statements of Work (SOWs), Service Level Agreements (SLAs)
SpaceXNasdaq: SPCX: Designing, manufacturing, and launching advanced rockets and spacecraft.
5+ YOEHigh school diploma; 5+ years in cybersecurity compliance, audit, or technical security roles; experience with control testing, audits, and risk management; familiarity with security standards and certifications; willingness to travel <25% and work extended hours/weekends.
ISO 27001, NIST, PCI, SIEMS, CIS Benchmarks, STIGs, EU NIS2, EU RED, UK PTSI, GDPR, SOX, SOC 1/2, CPE
Ross StoresNASDAQ: ROST: Off-price retailer of apparel and home fashion.
5+ YOEFive years of IT experience, including three in security or risk management; bachelor's degree preferred; security governance, compliance, risk management, analytical, communication, and project management skills required.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint, UNIX, Windows, Firewalls, VPN, PKI, IPS, Oracle, MS SQL
Cordoba Corporation: California engineering, construction management, and program management firm delivering education, transportation, energy, and water infrastructure.
5+ YOEBachelor's degree required; 5+ years in IT help desk, technical support, Microsoft Windows, and cybersecurity. Cybersecurity Analyst experience and strong security, risk, compliance, and communication skills required.
Microsoft Windows, NIST, ISO, Okta, SAML, SWA, IAM, IdP