Security Guard Jobs in Usa
3,522 positions found — Page 10
Location Details: United States - Remote
At GoDaddy the future of work looks different for each team. Some teams work in the office full-events or offsites. This is a remote position, so you'll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or offsites.
This position is not eligible to be performed in Alaska, Mississippi, North Dakota, or the Virgin Islands.
GoDaddy is not currently considering candidates for this role in California, Seattle, or NYC.
Join our team
Do you want to be an Information Security Leader at GoDaddy? GoDaddy's Product Security group is looking for a Principal Security Engineer to join our organization. Can you solve large scale and cross-company issues, while ensuring that partnership with the development and operational communities remains in front of mind?
GoDaddy is looking for a Principal Security Engineer to apply their hands-on technical skills, strong leadership abilities, and an eagerness to design solutions to complex problems. You must be comfortable with communicating to stakeholders, performing security assessments and prioritizing security risks, creating/presenting high-quality deliverables.
What you'll get to do...
- Identify security threats in applications and infrastructure and provide remediation mentorship to system owners.
- Join forces with SRE and development teams to find new and creative ways to reduce the occurrence of vulnerabilities at scale.
- Build repeatable/reusable security processes and frameworks.
- Review quality issues and work towards detecting security flaws both obvious and discrete.
- Assist with scoping prospective projects, participating in projects from kickoff through "definition of done" via end-to-end ownership.
- Use your industry experience to own and drive resolution and retest complex security events, policy questions and technical security risks.
Your experience should include...
- 7+ years of progressive security engineering experience across Security Architecture, Cryptography, Network, Cloud, Mobile, and Web Security.
- Skilled in Secure Development Lifecycle, Security by Design, and Shift Left methodologies.
- Proficient in Threat Modeling, Architecture Review, Penetration Testing, Code Review, SAST, and DAST.
- Strong scripting abilities in languages such as Python, C, C++, Java, Ruby, and PowerShell.
- Adept at applying security best practices for compliance, with excellent problem-solving and communication skills.
You might also have...
- Bachelor's degree in computer science or related field.
- Master's degree or PhD in Computer Science or related field.
- Hosting industry and/or cloud Experience.
- Experience in hardware security.
We've got your back... We offer a range of total rewards that may include paid time off, retirement savings (e.g., 401k, pension schemes), bonus/incentive eligibility, equity grants, participation in our employee stock purchase plan, competitive health benefits, and other family-friendly benefits including parental leave. GoDaddy's benefits vary based on individual role and location and can be reviewed in more detail during the interview process.
We also embrace our diverse culture and offer a range of Employee Resource Groups (Culture). Have a side hustle? No problem. We love entrepreneurs! Most importantly, come as you are and make your own way.
About us... GoDaddy is empowering everyday entrepreneurs around the world by providing the help and tools to succeed online, making opportunity more inclusive for all. GoDaddy is the place people come to name their idea, build a professional website, attract customers, sell their products and services, and manage their work. Our mission is to give our customers the tools, insights, and people to transform their ideas and personal initiative into success. To learn more about the company, visit About Us.
At GoDaddy, we know diverse teams build better products—period. Our people and culture reflect and celebrate that sense of diversity and inclusion in ideas, experiences and perspectives. But we also know that's not enough to build true equity and belonging in our communities. That's why we prioritize integrating diversity, equity, inclusion and belonging principles into the core of how we work every day—focusing not only on our employee experience, but also our customer experience and operations. It's the best way to serve our mission of empowering entrepreneurs everywhere, and making opportunity more inclusive for all. To read more about these commitments, as well as our representation and pay equity data, check out our Diversity and Pay Parity annual report which can be found on our Diversity Careers page.
GoDaddy is proud to be an equal opportunity employer. GoDaddy will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements. Refer to our full EEO policy.
Our recruiting team is available to assist you in completing your application. If they could be helpful, please reach out to
Colorado Residents: In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
GoDaddy doesn't accept unsolicited resumes from recruiters or employment agencies.
Remote working/work at home options are available for this role.
Location Details: United States - Remote
At GoDaddy the future of work looks different for each team. Some teams work in the office full-events or offsites. This is a remote position, so you'll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or offsites.
This position is not eligible to be performed in Alaska, Mississippi, North Dakota, or the Virgin Islands.
GoDaddy is not currently considering candidates for this role in California, Seattle, or NYC.
Join our team
Do you want to be an Information Security Leader at GoDaddy? GoDaddy's Product Security group is looking for a Principal Security Engineer to join our organization. Can you solve large scale and cross-company issues, while ensuring that partnership with the development and operational communities remains in front of mind?
GoDaddy is looking for a Principal Security Engineer to apply their hands-on technical skills, strong leadership abilities, and an eagerness to design solutions to complex problems. You must be comfortable with communicating to stakeholders, performing security assessments and prioritizing security risks, creating/presenting high-quality deliverables.
What you'll get to do...
- Identify security threats in applications and infrastructure and provide remediation mentorship to system owners.
- Join forces with SRE and development teams to find new and creative ways to reduce the occurrence of vulnerabilities at scale.
- Build repeatable/reusable security processes and frameworks.
- Review quality issues and work towards detecting security flaws both obvious and discrete.
- Assist with scoping prospective projects, participating in projects from kickoff through "definition of done" via end-to-end ownership.
- Use your industry experience to own and drive resolution and retest complex security events, policy questions and technical security risks.
Your experience should include...
- 7+ years of progressive security engineering experience across Security Architecture, Cryptography, Network, Cloud, Mobile, and Web Security.
- Skilled in Secure Development Lifecycle, Security by Design, and Shift Left methodologies.
- Proficient in Threat Modeling, Architecture Review, Penetration Testing, Code Review, SAST, and DAST.
- Strong scripting abilities in languages such as Python, C, C++, Java, Ruby, and PowerShell.
- Adept at applying security best practices for compliance, with excellent problem-solving and communication skills.
You might also have...
- Bachelor's degree in computer science or related field.
- Master's degree or PhD in Computer Science or related field.
- Hosting industry and/or cloud Experience.
- Experience in hardware security.
We've got your back... We offer a range of total rewards that may include paid time off, retirement savings (e.g., 401k, pension schemes), bonus/incentive eligibility, equity grants, participation in our employee stock purchase plan, competitive health benefits, and other family-friendly benefits including parental leave. GoDaddy's benefits vary based on individual role and location and can be reviewed in more detail during the interview process.
We also embrace our diverse culture and offer a range of Employee Resource Groups (Culture). Have a side hustle? No problem. We love entrepreneurs! Most importantly, come as you are and make your own way.
About us... GoDaddy is empowering everyday entrepreneurs around the world by providing the help and tools to succeed online, making opportunity more inclusive for all. GoDaddy is the place people come to name their idea, build a professional website, attract customers, sell their products and services, and manage their work. Our mission is to give our customers the tools, insights, and people to transform their ideas and personal initiative into success. To learn more about the company, visit About Us.
At GoDaddy, we know diverse teams build better products—period. Our people and culture reflect and celebrate that sense of diversity and inclusion in ideas, experiences and perspectives. But we also know that's not enough to build true equity and belonging in our communities. That's why we prioritize integrating diversity, equity, inclusion and belonging principles into the core of how we work every day—focusing not only on our employee experience, but also our customer experience and operations. It's the best way to serve our mission of empowering entrepreneurs everywhere, and making opportunity more inclusive for all. To read more about these commitments, as well as our representation and pay equity data, check out our Diversity and Pay Parity annual report which can be found on our Diversity Careers page.
GoDaddy is proud to be an equal opportunity employer. GoDaddy will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements. Refer to our full EEO policy.
Our recruiting team is available to assist you in completing your application. If they could be helpful, please reach out to
Colorado Residents: In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
GoDaddy doesn't accept unsolicited resumes from recruiters or employment agencies.
Remote working/work at home options are available for this role.
Fast Retailing, recognized for our flagship brand UNIQLO and Theory, Helmut Lang,
Comptoir Des Cotonnier, GU, PLST, and Princesse Tam Tam brands, operates with the mission of “Changing clothes. Changing conventional wisdom. Change the world.” and the concept of “LifeWear = ultimate everyday wear to improve everyone’s daily life.”
Fast Retailing Group aims to become the world’s No.1 brand, loved by customers globally, by serving as an essential “clothing infrastructure” for everyday life.
As business operations increasingly shift to digital platforms, establishing a robust global security framework for system development and operations has become a critical priority.
This position seeks a professional who can assess the reality of our information systems, identify risks comprehensively, and lead the implementation of optimal security controls in collaboration with IT and business departments, thereby strengthening global information security.
Department Overview:
The Information Security Office is responsible for protecting customer personal data and all internal confidential information.
Operating globally with a diverse team, the office develops and enforces security rules, provides education, and continuously monitors implementation across all regions.
Headquartered in Japan, the team leads global initiatives to assess and mitigate security risks that may impact business operations.
Rather than pursuing local optimization, the office designs and executes security strategies that are optimal for the entire group, working with a wide range of stakeholders, business functions, and technologies to implement and operate security solutions.
Position Overivew:
This position is based in North America (NYC) but primarily functions as part of the Global Headquarter (GHQ) team. In addition to GHQ responsibilities, the role may also support certain activities of the North America Information Security Office.
As a member of the Global Security Operations Center (SOC), this role will handle security monitoring and Tier 2 incident response across multiple environments, including our e‑commerce platform, enterprise systems, and IaaS cloud infrastructure. The projects under this role are not limited to routine alert handling; rather, they involve complex, high‑autonomy initiatives such as:
End‑to‑end oversight of monitoring improvements
- Analyzing detection gaps in our EC, Enterprise, and IaaS environments
- Designing enhanced detection logic and workflows
- Coordinating with global stakeholders to deploy new monitoring rules
Security automation and process optimization projects
- Identifying inefficiencies in existing SOC processes
- Proposing and implementing automation (e.g., SOAR workflows, log enrichment, playbook optimization)
- Driving operational improvements without relying on predefined “plug‑and‑play” tasks
Evaluation and implementation of new security tools
- Leading technical assessments and PoCs for new SOC technologies
- Designing deployment plans and integration strategies
- Executing rollout in coordination with global teams while owning the technical decision-making process
These key projects require the ideal candidate to work independently, evaluate complex security challenges, design appropriate technical solutions, and drive the implementation from concept to completion. The expectation is not to perform basic alert monitoring, but to actively enhance the SOC’s capabilities by applying technical judgment, initiative, and ownership over key security improvements.
Responsibilities:
Based on your strengths and interests, you will take ownership of multiple areas from the list below:
- Implementation, operation, and continuous improvement of cybersecurity technologies (e.g., WAF, AntiBot, email/web/endpoint protection)
- Deployment and enhancement of insider threat prevention solutions (e.g., DLP, CASB, data security platforms)
- Building and managing log monitoring infrastructure, including development of detection and monitoring content
- Planning and executing security assessments and cyberattack simulation exercises
- Responding to security incidents, conducting investigations, and driving technical remediation
- Performing other information security tasks necessary to support the company’s overall risk management
Education & Qualifications:
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field
- 4-7+ years of experience in Cyber Threat Intelligence, Security Operations, Incident Response, and/or related roles
- Experience in incident response and related investigations
- Strong knowledge of Incident Response principles, framework, and processes
- Strong, analytical approach to problem solving and solution development
- Able to manage multiple projects and support functions in a fast-paced, dynamic environment.
Salary: $95,000.00 to 120,000.00*
*The offered salary or salary range is based on several factors, including, but not limited to, overall experience, relevant experience, education level, certifications, applicable skills and expertise, and location of the position.
As an Equal Opportunity Employer, Fast Retailing does not discriminate against applicants or employees because of race, color, creed, religion, sex, national origin, veteran status, disability, age, citizenship, marital or domestic/civil partnership status, sexual orientation, gender identity or expression or because of any other status or condition protected by applicable federal, state or local law.
Ensure your Fast Retailing US job offer is legitimate and don’t fall victim to fraud. Fast Retailing never seeks payment from job applicants. Feel free to ask your recruiter for a phone call or other type of communication for an interview and ensure your communication is coming from Fast Retailing or sister company email address. For added security, where possible, apply directly through our job posting.
We are seeking an experienced Cloud Information Systems Security Engineer to design, implement, and manage security solutions for cloud environments. The selected candidate will lead security engineering efforts, identify risks, and develop mitigation plans to ensure compliance with DoD and federal cybersecurity standards. This role will primarily support CLIN 5 and is ideal for professionals with hands-on experience in cloud security, InfoSec engineering, and risk management within federal programs.
Security Clearance: Secret Clearance Required
Work Authorization: U.S. Citizens ONLY due to legal or government contract requirements
Key Responsibilities:
- Develop, implement, and manage information security engineering designs and solutions for cloud environments.
- Identify system security threats, vulnerabilities, and risks; develop and implement mitigation plans.
- Architect, design, and evaluate security-focused tools, services, and processes.
- Oversee assessment and mitigation of system security risks throughout the program life cycle.
- Validate system security requirements and perform security analyses to ensure compliance.
- Implement security designs across hardware, software, data, and operational procedures.
- Support continuous monitoring and improvement of cloud security posture.
- Collaborate with engineering, DevOps, and operations teams to enhance security automation and resilience.
- Maintain technical documentation, runbooks, and compliance records for audit and review purposes.
- Stay current on emerging threats, cybersecurity standards, and federal security mandates.
Required Qualifications:
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or related field.
- Minimum of 4 years of experience in information security engineering or cloud security roles.
- Strong knowledge of cloud platforms (AWS, Azure, or Google Cloud) and security best practices.
- Experience with system security designs, threat modeling, risk assessment, and mitigation strategies.
- Understanding of hardware, software, and network security principles in cloud environments.
- Experience working in federal or DoD programs is preferred.
- Strong analytical, problem-solving, and communication skills.
- Ability to work effectively in a team-oriented, security-focused environment.
Preferred Qualifications:
- Hands-on experience with DevSecOps practices and security automation.
- Familiarity with Infrastructure-as-Code security controls and compliance tools.
- Knowledge of virtualization platforms (VMware, Hyper-V) and secure cloud configurations.
Certifications:
- IAT Level II certification required.
- Must obtain one or more Cloud Certifications within 6 months of hire (AWS, Azure, or Google Cloud preferred).
Seattle, WA
Addison, TX
Position Summary
As a Security Engineer/Tester, you will be performing authorized security testing on some of the very complex, massive scale, and highly critical applications. As part of a shift left focus, you will be working part of the development team along with developers to proactively identify any security vulnerabilities (OWASP Top 10, SANS Top 25, CWE) at the earliest before they are discovered late in cycle by InfoSec teams or in production. You will be working as a liaison between the Infosec team and development teams, understanding the security issues reported by central InfoSec teams to development teams to help them understand and fix them. You need to be highly passionate in following the constantly changing threat landscape and familiarize with latest security vulnerabilities that impacts the team.
Role Responsibilities:
• As a Security Engineer/Tester, you will be performing authorized security testing on some of the very complex, massive scale, and highly critical applications.
• You must be self-directed, able to work independently, as well as work in a team-oriented and fast paced environment.
• You need to be aware of a varied application security domains like authentication, authorization, identity management, cryptography, etc.
• You require very good communication and presentation skills to be able to present your findings to Leadership/Management/Development teams to help them understand the Risk so that they can take informed decisions on mitigations, controls and residual risk.
• The ideal candidate is a team player, self-starter and quick learner with 3+ year of experience in software development/testing with large-scale enterprise applications.
• The working experience requirement can be relaxed if the candidate has right skillset and has the capability to learn quickly.
• When submitting a candidate under this consideration, please highlight examples of quick learning on the resume.
Required Qualifications
• 3+ year of experience in software development/testing with large-scale enterprise applications.
• Primary Skill - Manual and automated testing (testing will be done on software)
• Deep understanding of different web application technologies, web protocols (HTTP, HTTPS, etc.), browser technologies, etc.
• In depth domain understanding of application security in terms of Identity and Access Management (IAM), different authentication technologies (passwords, biometrics, OTP, digital certificates & PKI, device authentication, FIDO U2F/Passkeys, etc.
• Proven expertise on different security testing tools (Proxy tools like Fiddler, Black box security testing tools like Burp, Static Security Code analysis tools,
• Deep understanding of different application security vulnerabilities such as OWASP Top 10, SANS Top 25, CWE, attack patterns (CAPEC), etc.
• Bachelor's Degree in Computer Science or equivalent experience.
• Must be self-directed, able to work independently, as well as work in a team-oriented and fast paced environment
Desired Qualifications
• Working experience on different security technologies and standards like Single Sign On (SSO) using SAML/OpenID, OAuth protocols, etc.
• Good understanding of Cryptographic algorithms and standards like Symmetric/Assymetric crypto techniques, digital signatures, JWS/JWE tokens, Hardware Security Modules (HSMs), etc.
• Understanding of Security vulnerabilities related to Cloud environments is an added advantage.
• Well known Security certifications is an added advantage
• Understanding of Threat Modelling concepts and Secure Development Life Cycle processes.
Seattle, WA
Addison, TX
Position Summary
As a Security Engineer/Tester, you will be performing authorized security testing on some of the very complex, massive scale, and highly critical applications. As part of a shift left focus, you will be working part of the development team along with developers to proactively identify any security vulnerabilities (OWASP Top 10, SANS Top 25, CWE) at the earliest before they are discovered late in cycle by InfoSec teams or in production. You will be working as a liaison between the Infosec team and development teams, understanding the security issues reported by central InfoSec teams to development teams to help them understand and fix them. You need to be highly passionate in following the constantly changing threat landscape and familiarize with latest security vulnerabilities that impacts the team.
Role Responsibilities:
• As a Security Engineer/Tester, you will be performing authorized security testing on some of the very complex, massive scale, and highly critical applications.
• You must be self-directed, able to work independently, as well as work in a team-oriented and fast paced environment.
• You need to be aware of a varied application security domains like authentication, authorization, identity management, cryptography, etc.
• You require very good communication and presentation skills to be able to present your findings to Leadership/Management/Development teams to help them understand the Risk so that they can take informed decisions on mitigations, controls and residual risk.
• The ideal candidate is a team player, self-starter and quick learner with 3+ year of experience in software development/testing with large-scale enterprise applications.
• The working experience requirement can be relaxed if the candidate has right skillset and has the capability to learn quickly.
• When submitting a candidate under this consideration, please highlight examples of quick learning on the resume.
Required Qualifications
• 3+ year of experience in software development/testing with large-scale enterprise applications.
• Primary Skill - Manual and automated testing (testing will be done on software)
• Deep understanding of different web application technologies, web protocols (HTTP, HTTPS, etc.), browser technologies, etc.
• In depth domain understanding of application security in terms of Identity and Access Management (IAM), different authentication technologies (passwords, biometrics, OTP, digital certificates & PKI, device authentication, FIDO U2F/Passkeys, etc.
• Proven expertise on different security testing tools (Proxy tools like Fiddler, Black box security testing tools like Burp, Static Security Code analysis tools,
• Deep understanding of different application security vulnerabilities such as OWASP Top 10, SANS Top 25, CWE, attack patterns (CAPEC), etc.
• Bachelor's Degree in Computer Science or equivalent experience.
• Must be self-directed, able to work independently, as well as work in a team-oriented and fast paced environment
Desired Qualifications
• Working experience on different security technologies and standards like Single Sign On (SSO) using SAML/OpenID, OAuth protocols, etc.
• Good understanding of Cryptographic algorithms and standards like Symmetric/Assymetric crypto techniques, digital signatures, JWS/JWE tokens, Hardware Security Modules (HSMs), etc.
• Understanding of Security vulnerabilities related to Cloud environments is an added advantage.
• Well known Security certifications is an added advantage
• Understanding of Threat Modelling concepts and Secure Development Life Cycle processes.
Role: Cybersecurity Engineer III
Location: MD – Silver Spring, DC, or ATL – Techwood - Onsite
Job Description
Job Responsibilities / Typical Day in the Role
• Implement design reviews to evaluate security controls
• Identify and communicate opportunities to enhance the security posture of WBD
• Build and / or manage enterprise security platforms effectively
• Communicate effectively across all levels of management to articulate WBD security goals and vision.
• Identify and communicate opportunities to enhance the security posture of WBD
• Build and / or manage enterprise security platforms effectively (SAAS, on premise or in Cloud)
• Communicate effectively across all levels of management to articulate WBD security goals and vision.
• Have a team player mentality; strive to contribute to team cohesion however can work independently if the need arises
• Plan, design, engineer and implement security-related technologies
• Understanding technical security issues, their implications within WBD business units and able to effectively communicate them to management and other business leaders.
• Configure, troubleshoot, and maintain security infrastructure – including software and hardware in cloud environments, as well as on-premises.
• Conduct security audits and assessments to regularly determine the effectiveness of security platforms and identify areas of improvement.
• Host and operating systems hardening, auditing, monitoring and logging with appropriate security controls and best practices while meeting security best practices and business goals
• Research and explore emerging security technologies and determine their appropriate use within the company.
• Prepare, document, and create standard operating procedures and protocols.
• Crosstrain and mentor other team members as needed
Must Have Skills / Requirements
1) Implementing advanced cyber security technology in a complex environment
a. 5+ years of experience; Hands-on experience in security engineering, hands-on experience in building, designing, and maintaining enterprise security tools.
2) Scripting experience (using Python, Go, or other equivalent languages)
a. 5+ years of experience.
3) Hands-on Experience with automation technologies
a. 3+ Years of experience; Terraform, Ansible, CloudFormation, etc.
4) Linux Experience.
a. 5+ years of experience; Ability to construct and maintain complex network infrastructures.
Technology requirements:
• Engineer and administer security platforms including SIEM/SOAR systems, endpoint detection and response, vulnerability management, anomaly detection, and cloud analysis.
• Experience in managing the Brinqa vulnerability management platform and experience with Groovy programming language
• Must have 5+ years of scripting experience (using Python or other equivalent languages)
• Hands-on Experience in public cloud infrastructures like AWS (Amazon Web Services)
Nice to Have Skills / Preferred Requirements
1) Security and Cloud certifications are a plus. (CISSP, Splunk Admin, AWS Solution architect).
2) Media/entertainment or distributed global network experience.
Soft Skills
1) Hands-on technical experience with networking and computing system architectures, specifically, the security aspects thereof.
2) Thorough understanding of information security principles, techniques, principles, policy frameworks, and best practices
3) Hands-on technical experience with compliance and regulatory frameworks and how they affect architecture designs and review
Education / Certifications
1) None required, but certifications preferred.
About MediSys Health Network & The Transformation Group+ (TTG)
The Transformation Group+ (TTG) is a dedicated healthcare Managed Service Organization (MSO) and professional services firm. TTG’s team of healthcare specialists, analysts, and developers is united by a mission to strengthen healthcare operations through smart, reliable, and purpose‑driven technology. Our deep understanding of clinical and operational workflows allows us to build solutions that go beyond IT, helping providers deliver better care, improve outcomes, and work more efficiently.
MediSys HealthNetwork provides the financial foundation and long‑term stability for The Transformation Group+ (TTG). While your employment and benefits will be backed by MediSys — offering the job security — your day‑to‑day work will be with TTG, supporting a diverse portfolio of hospitals, clinics, and health networks.
Work location
Hybrid work schedule (3 days in office, 2 days remote) - first 90 days are on fully in office
If located outside of the NYC/Long Island area, fully remote options are available.
Travel may be required based upon client needs.
Job Description
The Transformation Group+ (TTG) is a healthcare‑specific Managed Services Organization (MSO) delivering high‑impact IT, security, and compliance services to provider organizations nationwide. We are seeking a Senior Information Security Director who can operate at the intersection of hands‑on engineering, strategic advisory, and leadership execution.
This role is responsible for assessing, implementing, and managing comprehensive security programs for healthcare clients—spanning technical controls, governance, risk, compliance, and incident response. You will also support TTG’s internal security posture, ensuring our own environment reflects the standards we deliver to clients.
The ideal candidate brings deep technical expertise, strong client‑facing communication skills, and the ability to translate complex security requirements into practical, scalable solutions.
Responsibilities
Client Advisory & Engagement
- Lead security assessments for prospective and existing clients, identifying gaps, risks, and improvement opportunities across infrastructure, applications, cloud environments, and organizational processes.
- Present findings and recommendations to technical and non‑technical stakeholders with clarity and confidence.
- Serve as a trusted advisor on security architecture, compliance requirements, and best‑practice frameworks relevant to healthcare organizations.
Security Engineering & Operations
- Implement, configure, and manage security controls across Active Directory, Azure, IAM, endpoint protection, network security, and cloud environments.
- Oversee or support Epic Security administration, access governance, and template/role design.
- Develop and execute vulnerability management processes, including scanning, remediation planning, and reporting.
- Support or lead incident response activities, including triage, containment, investigation, documentation, and breach notification coordination.
Governance, Risk & Compliance
- Conduct ongoing risk assessments, threat/vulnerability analyses, and control evaluations aligned with healthcare regulatory requirements (e.g., HIPAA, HITECH) and industry frameworks.
- Develop, maintain, and implement security policies, standards, and procedures for both TTG and client organizations.
- Support audit readiness and audit response activities for internal and client environments.
- Lead or contribute to Disaster Recovery and Business Continuity planning, testing, and program management.
Program Leadership & Continuous Improvement
- Design and oversee security program components such as monitoring, logging, SIEM use cases, DLP, identity governance, and access review processes.
- Drive continuous improvement initiatives across security operations, compliance workflows, and client service delivery.
- Deliver or coordinate security awareness training and promote a culture of security across TTG and client organizations.
- Collaborate with TTG leadership to ensure alignment between security strategy, operational execution, and client needs.
Qualifications
- 7+ years of experience in Information Security, with a blend of engineering, consulting, and program leadership responsibilities.
- Team player with strong collaboration skills, a positive attitude, and solution-oriented mindset.
- Demonstrated ability to communicate complex concepts to business stakeholders, and lead client-facing meetings, operating as a service provider to deliver value.
- Strong understanding of healthcare regulatory requirements and security frameworks (HIPAA, NIST CSF, CIS Controls, SOC 2, etc.).
- Hands‑on experience with IAM, Azure security, AD hardening, endpoint security, vulnerability management, and incident response.
- Experience with Epic Security.
- Industry‑standard certifications strongly preferred: CISSP, CISM, HCISPP, Security+, CEH, or equivalent.
- Compensation
- The compensation for this role includes a salary or contract range of $150,000–$230,000. Candidates may be hired as either W‑2 employees or 1099 contractors, depending on the role and mutual preference. Additional benefits and perks may also be available, depending on the position and employment terms.
- This range and total compensation reflect several factors, including skills, experience, training, certifications, and organizational needs.
We are partnering with a leading healthcare technology organization, recognized for excellence and named a Best Place to Work, that is expanding to accelerate key technology initiatives.
We are seeking an experienced Azure Security Engineer to support and enhance an existing Azure environment. This role is ideal for someone comfortable stepping into a brownfield setup, assessing current configurations, identifying and remediating security gaps, and implementing structured improvements without disrupting ongoing operations.
This is a fantastic opportunity to join a respected player in clinical data intelligence and healthcare IT, where your expertise in Azure security will directly strengthen governance, compliance, and operational resilience in a mission-driven environment.
Position Overview:
Azure Security Engineer – Hybrid (Chicagoland area)
Contract Opportunity | 6+ Months (High Likelihood of Extension/Conversion)
You will collaborate closely with infrastructure, cloud, and security teams to enforce governance, strengthen security posture, and provide scalable recommendations using native Azure tools.
Key Responsibilities:
- Assess and remediate security gaps in an operational Azure environment
- Design and implement governance controls using Azure Policy
- Develop and manage Azure Blueprints to standardize secure deployments and ensure compliance
- Leverage native Azure security capabilities (e.g., Defender for Cloud, posture management, identity controls) to enhance overall cloud security
- Partner with cross-functional IT and security stakeholders on best practices
- Document configurations, controls, and implementation decisions for long-term scalability
Required Qualifications:
- 3–5 years of hands-on Azure experience with a strong security focus
- Proven experience in brownfield/existing Azure environments (critical for stepping into mature setups)
Strong expertise in:
- Azure Policy
- Azure Security capabilities (Defender for Cloud, security posture management, identity controls, etc.)
- Azure Blueprints
- Ability to assess, prioritize, and implement security improvements in a live operational environment
- Excellent communication skills and comfort working collaboratively
Preferred Qualifications:
- Certifications: AZ-500 (Microsoft Azure Security Engineer Associate) and/or SC-200 (Microsoft Security Operations Analyst)
- Familiarity with compliance frameworks and security governance initiatives
Work Arrangement:
- Hybrid based in the Chicagoland area
- 2–3 days onsite per week (Monday and Wednesday required; third day flexible)
- USC or Green Card only (no visa sponsorship)
Compensation & Details:
- Competitive W2 hourly rate
- Start: April 2026
- Duration: 6+ months with strong potential for extension or conversion to FTE
- Interview: Single step with hiring manager and team
This is an exclusive opportunity with a high-caliber organization that's investing in top talent to drive secure, innovative cloud solutions in healthcare.
If you're a hands-on Azure security pro ready to make an immediate impact in a brownfield environment, apply today or reach out directly to discuss! (Note: Full details shared on initial call; client name disclosed verbally.)
Beacon Hill is an Equal Opportunity Employer that values the strength diversity brings to the workplace. Individuals with Disabilities and Protected Veterans are encouraged to apply.
Completion of this form is voluntary and will not affect your opportunity for employment, or the terms or conditions of your employment. This form will be used for reporting purposes only and will be kept separate from all other records.
California residents: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.
Our Workforce Security team is seeking a contract professional to support our Vendor Security Program (VSP), with a primary focus on the coordination and operational management of third-party and vendor-related security support requests. Reporting into the Workforce Security team, you will work closely with security, privacy, governance, and business stakeholders to ensure requests are triaged, tracked, and communicated efficiently.
Requests may include technical reviews for engineering vendors, compliance and governance checks, and general vendor onboarding or integration support. You will not be responsible for performing technical reviews, but you will coordinate, convey outcomes, and ensure stakeholders are kept informed throughout the process. You will also provide key insights into optimizing our Business Process Engineering
This is a focused, hands-on role designed to provide essential support and accountability for our vendor security operations over an initial six-month period.
Key Responsibilities
- Coordinate the intake, triage, and assignment of security-related requests for corporate and engineering vendors
- Track and manage the health and status of ongoing requests, ensuring timely progress and accountability with supporting teams
- Clearly and effectively communicate status, requirements, and outcomes to internal stakeholders, including security engineers, IT, procurement, legal, and business units
- Serve as a point of contact for the Workforce Security team’s vendor security operations, facilitating alignment of requirements, status and updates
- Suggest and implement improvements to processes, documentation, and light automations that support the role
- Manage multiple concurrent requests from numerous and different areas of the corporate environment
- Excellent written and verbal communication skills, with the ability to convey technical details, process expectations, and security context to a variety of audiences
- Demonstrated ability to manage and coordinate multiple ongoing projects or requests in a fast-paced, complex environment
- Knowledge and experience in the areas of Business Process Engineering (BPE)
- Broad familiarity with information security disciplines and topics in the areas of Governance, Risk, and Compliance (GRC), Corporate Security, Product Security, and Infrastructure Security
- Willingness to learn the basics of technical, compliance, and governance-related vendor requests; willingness to be proactive in requesting personal clarity and support as necessary
- Experience with Jira and Google Workspace; ability to support or develop light automations (e.g., basic scripting in Python or JavaScript, workflow automations)
- Strong attention to detail and accountability in tracking and following up on operational tasks
- Ability to work collaboratively across numerous teams and adapt to evolving priorities and contexts
- Experience working on an operations team
- Experience with Third Party Risk Management (TPRM) is a plus
- $85-95/hr.