Cathay BankNASDAQ: CATY: Provides commercial and consumer financial services and banking solutions.
5+ YOE5+ years experience in insider threat, investigations, security operations or risk analysis; undergraduate degree or equivalent; knowledge of DLP, UEBA, OSINT, MITRE ATT&CK; strong analytical, communication, and confidentiality skills.
Washington or Boston or Dallas or Chicago or Miami or Denver or Orange or Los Angeles or Las Vegas or Sacramento or Phoenix or San Diego or United States
$130k-$160k/yrRemoteFull Time
DanaherNYSE: DHR: Develops scientific instruments and diagnostic tools for healthcare markets.
7+ YOE7+ years in third-party/vendor risk, enterprise risk, or vendor security; experience administering vendor questionnaires, reviewing SOC 2/ISO 27001 evidence, scoring at scale, reviewing cybersecurity contract provisions, and operating enterprise risk registers.
Senior Information Security Governance, Risk & Compliance Analyst
Northridge or Georgia or Minnesota or Texas
$121k-$205k/yrOnsiteFull Time
MiniMed GroupNasdaq: MMED: A medical technology developing connected insulin delivery systems and support for people with diabetes.
7+ YOEBachelor’s degree or equivalent experience, 7+ years in information security GRC, risk, SOX ITGC, audit, access governance, or internal controls; SAP GRC certifications and advanced governance expertise required.
SAP GRC Access Control, SAP GRC Process Control, SAP GRC Risk Management, SAP, Oracle, Workday, ServiceNow, SailPoint, Entra ID, NIST Cybersecurity Framework, NIST Risk Management Framework, NIST AI Risk Management Framework, ISO 27001, ISO 31000, ISO 42001, COBIT, COSO Internal Control Framework, SOX 404 IT General Controls, HIPAA
World Travel Holdings: Leisure travel and operator of travel agency franchises.
4+ YOERequires 4–6 years in information security, cybersecurity, risk, compliance, or IT audit; security risk assessment and governance experience; and a bachelor's degree or equivalent experience. Professional certification preferred.
NIST, ISO 27001, Governance, Risk, and Compliance (GRC) platforms
Confie: Distributes personal and small commercial insurance products nationwide.
4+ YOE4+ years IT security experience; perform risk assessments, security analysis, remediation planning, server administration, and incident response. Knowledge of network security, UTM/IPS/IDS, Linux, VMware, and Microsoft Active Directory.
Linux, VMware ESX/Vsphere, Microsoft Windows Active Directory, UTM, IPS, IDS, TCP/IP, MPLS, VoIP, Firewalls, routers, PCO, SOX
SAG-AFTRA Federal Credit Union: Financial services for professionals in the entertainment industry.
3+ YOEBachelor's in Information Security/Computer Science, 3+ years in information security and network support, Security+/Network+/Server+ (or equivalents), project management, audits, vulnerability scanning, incident response, and risk remediation.
SpaceX: Designs and launches advanced rockets and satellite internet constellations.
5+ YOERequires a high school diploma and 5+ years in cybersecurity compliance, audit, technical security, control testing, security standards, or risk management; relevant certifications preferred.
ERP, SIEM, CIS Benchmarks, STIGs, NIST, ISO 27001, GDPR, GRC
The Marvin Group: Designs and manufactures military aerospace and defense hardware.
Requires cybersecurity certification or equivalent experience, security policy knowledge, vulnerability and risk assessment skills, SIEM, cloud, network and endpoint security expertise, and strong analytical and communication skills.
SpaceX: Designs and launches advanced rockets and satellite internet constellations.
5+ YOEHigh school diploma; 5+ years in cybersecurity compliance, audit, or technical security roles; experience with control testing, audits, and risk management; familiarity with security standards and certifications; willingness to travel <25% and work extended hours/weekends.
ISO 27001, NIST, PCI, SIEMS, CIS Benchmarks, STIGs, EU NIS2, EU RED, UK PTSI, GDPR, SOX, SOC 1/2, CPE
SAG-AFTRA Federal Credit Union: Financial services for professionals in the entertainment industry.
3+ YOEBachelor's in Information Security/Computer Science required; 3+ years information security and network support experience; Security+ and Network+ (or equivalents); project management, risk assessment, incident response, and strong analytical and communication skills.
Ross StoresNASDAQ: ROST: Operates an off-price retail chain selling clothing and home goods.
5+ YOEFive years of IT experience, including three in security or risk management; bachelor's degree preferred; security governance, compliance, risk management, analytical, communication, and project management skills required.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint, UNIX, Windows, Firewalls, VPN, PKI, IPS, Oracle, MS SQL