Senior Information Security Analyst - Attack Surface Management Lead Brigham and Women's HospitalSenior Information Security Analyst - Attack Surface Management LeadSomerville, MA$93,953.60–$136,739.20 / yearThis role will help lead the function into a risk-driven, validation-focused capability that identifies meaningful exposure, prioritizes remediation based on exploitability and business impact, and connects findings to detection engineering, threat hunting, threat intelligence, and broader Cyber Defense priorities. The Mass General Brigham Senior Information Security Analyst - Attack Surface Management Function Lead will be responsible for advancing and coordinating the MGB Attack Surface Management capability across vulnerability discovery, penetration testing, attack surface analysis, and attack simulation.
Technical Delivery Manager State StreetTechnical Delivery ManagerQuincy, MassachusettsThis is an exciting opportunity to join an evolving team as we transform Security Operations into a product-led, customer-visible service model to deliver applications, platforms, and Data & AI workstreams to support end users and stakeholders. As an essential partner in our shared success, you’ll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most.
Lead Security Governance & Risk Engineer KlaviyoLead Security Governance & Risk EngineerBoston, MA$156,000–$234,000 / yearContribute to weekly risk huddles, monthly risk reviews, and the quarterly Technology Risk Committee (CIO, CISO, CTO), preparing accurate, succinct, decision-ready risk materials and translating high-severity findings into clear business impact. Reporting to the Senior Manager, Security Risk Engineering and operating as a second line of defense, you will run the technology and third-party risk register, lead AI risk governance and ISO 42001 readiness, and build the automation that gives Klaviyo a continuously updated, quantified view of its risk posture.
Staff Perimeter Defense Engineer State Street CorporationStaff Perimeter Defense EngineerBoston, MA$120,000–$202,500 / yearYou will lead the strategy, architecture, and engineering of perimeter security capabilities, helping protect the organization from external threats targeting enterprise networks, internet-facing services, applications, and remote access environments. Lead security initiatives involving next-generation firewalls, web application firewalls (WAF), DDoS protection, secure web gateways, remote access security, API protection, and Zero Trust technologies.
Senior Information System Security Officer (ISSO) - Marlborough, MA RTX CorpSenior Information System Security Officer (ISSO) - Marlborough, MAMarlborough, MAExperience providing technical security consultation for complex, cross-domain, heterogeneous classified networked environments in collaboration with internal/external Customers, Information Technology (IT). Experience working with and/or supporting computer technologies (such as: databases, operating systems, computer network hardware, software programs, hardware troubleshooting or electronics).
Product Security Officer WerfenProduct Security OfficerBedford, Massachusetts$160,000–$190,000 / yearFull timeWork with project or program teams on planning and scheduling, clarifying and defining scope of work, utilizing deliverable milestone methods and critical path scheduling, resource planning and allocation, and developing task and project estimates for cybersecurity requirements and related gaps, epics, stories, and defects. This includes Product Security communications content such as: Product Labeling, Completion of security inquiries, Complaint and vulnerability investigation and reports, Provide consistent cybersecurity and privacy guidance to Werfen and customers.
NewInformation System Security Engineer (ISSE) Cyber Defense TechnologiesInformation System Security Engineer (ISSE)Westford, MassachusettsResponsibilities: Systems Administration: Administer, maintain, upgrade, and ensure the readiness of several classified virtual enterprise systems and corresponding technologies (VMware, Cisco, Palo Alto, Windows Domain, Linux). Documentation & Procedures: Collaborate with the ISSO team and program/project staff to create, implement, and maintain procedural documents and operations (configuration management, continuous monitoring, business continuity, disaster recovery, etc.).
Cybersecurity, AVP - Technical Product Manager State StreetCybersecurity, AVP - Technical Product ManagerQuincy, Massachusetts$90,000–$157,500 / yearThis is an exciting opportunity to join an evolving team as we transform Security Operations into a product-led, customer-visible service model to deliver applications, platforms, and Data & AI workstreams to support our end users and stakeholders. In this role, you will: Partner with our Cyber Operations Teams to design and deliver solutions for end users and stakeholders from our Cyber Defense Centre, Threat Hunt and Threat Intelligence teams.
NewSr. Product Security Engineer MedtronicSr. Product Security EngineerNewton, MinnesotaIf you are applying to perform work for Medtronic, Inc. (“Medtronic”) in any position which will involve performing at least two (2) hours of work on average each week within the unincorporated areas of Los Angeles County, you can find here a list of all material job duties of the specific job position which Medtronic reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of a conditional offer of employment. The following benefits and additional compensation are available to those regular employees who work 20+ hours per week: Health, Dental and vision insurance, Health Savings Account, Healthcare Flexible Spending Account, Life insurance, Long-term disability leave, Dependent daycare spending account, Tuition assistance/reimbursement, and Simple Steps (global well-being program).
Vulnerability Management Engineer eTeam Inc.Vulnerability Management EngineerBoston, MATooling Integration & Engineering: Experience designing and implementing integrations between vulnerability platforms and enterprise systems (e.g., ServiceNow CMDB, SecOps, SIEM) to support automated workflows and governance processes. "As a senior technical resource, the engineer provides subject matter expertise, mentoring, and strategic guidance, translating complex technical risks into clear, actionable insights for both technical teams and executive leadership.
Information Security Risk And Compliance Analyst Car GurusInformation Security Risk And Compliance AnalystBoston, MA$84,000–$106,000 / yearThe analyst works closely with security, engineering, legal, internal audit, privacy, finance, procurement and business stakeholders to build scalable processes, improve operational maturity and reduce organizational risk. The information security risk and compliance analyst supports the organization's governance, risk, and compliance program by managing security risk, ensuring regulatory compliance and partnering across the business to strengthen the company's security posture.
Senior Radar Systems Engineer MKS2 TechnologiesSenior Radar Systems EngineerTewksbury, MAMKS2 Technologies, LLC, an award-winning high growth small business, creates innovative and customer-centric technology solutions in the areas of Cyber Security, Instructional Design and Training, Software Engineering and IT Support Services to improve the security and well-being of our clients. Experience with systems software, systems hardware, systems requirements, systems integration, and/or systems test.
Director Security Engineering Johnson ControlsDirector Security EngineeringWestford, Massachusetts$142,000–$200,000 / yearJohnson Controls Fire Solutions is seeking a strategic and influential Director, Product Security & Security Strategy to lead the cybersecurity vision, governance, and execution framework across a global portfolio of fire detection, suppression, life safety, connected devices, cloud platforms, mobile applications, and digital services. The Director will establish scalable security processes, lead cybersecurity risk and vulnerability management programs, drive Cyber Resilience Act (CRA) readiness and execution, and develop the organization's AI security threat response and governance capabilities.
Information System Security Manager (ISSM) Systems Planning and AnalysisInformation System Security Manager (ISSM)Lincoln, MassachusettsFull timeSPA provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work. BS in cybersecurity, computer science, information assurance, or similar field plus 8+ years of cybersecurity experience on medium‑to‑large IT or software programs, including at least 4 years in an ISSM or equivalent leadership role.
NewVice President, Information Security - Remote Spring HealthVice President, Information Security - RemoteBoston, MARemote$250,000–$291,000 / yearLead audit readiness and certification execution for information security programs, including evidence collection, technical control validation, remediation tracking, and partnership with the CISO, Legal, Privacy, and Compliance teams on frameworks such as HITRUST, SOC 2, ISO 27001, HIPAA, and PCI DSS. Experience leading or supporting HITRUST CSF, SOC 2, ISO 27001, PCI DSS, and comparable certification programs through strong technical controls, remediation management, evidence support, audit readiness, and cross-functional partnership.
Secure Configuration Systems Engineer State StreetSecure Configuration Systems EngineerQuincy, MassachusettsYou will work collaboratively with other engineers and promote software and platform configuration best practices across the organization by designing solutions with monitoring, auditing, reliability, and security at their core and be active in evaluating and recommending new technologies. Deep experience with cloud DevOps tooling and expertise in container native systems and associatedsecurity and scaling considerations – ability to work with and build tooling that works in a multi/hybridcloud environment with modern CI/CD, IaC, DataOps, and DevSecOps best practices.
Security Analyst - Tier 3 Seven AISecurity Analyst - Tier 3Boston, MassachusettsAs a Tier 3 Security Analyst at 7AI, you will serve as the technical leader and point of escalation for junior analysts who are analyzing and triaging 7AI Agents’ investigations, identifying correct execution, and reducing risk for customers. We are seeking curious, detail-oriented, technical experts who thrive on solving complex, high-stakes puzzles and are deeply customer-obsessed to continue our mission of building the world’s first Agentic Security Platform.
System Analysis Engineer The Charles Stark Draper LaboratorySystem Analysis EngineerCambridge, MassachusettsResponsibilities include the elucidation of mission needs, definition of use cases/CONOPS, functional system modeling, requirement tree development and flow-down, analysis-based requirement trades/balancing, simulation-based performance trades/analysis, simulation-based requirements verification, test strategy development, test design, and requirements management through product life-cycle. Draper supports many programs to improve work-life balance including workplace flexibility, employee clubs ranging from photography to yoga, health and finance workshops, off site social events and discounts to local museums and cultural activities.
Senior Director, Chief Information Security Officer Scholar RockSenior Director, Chief Information Security OfficerCambridge, MASummary of Position: Scholar Rock is seeking a Senior Director, Cybersecurity to serve as the company’s Chief Information Security Officer, responsible for building and scaling enterprise cybersecurity capabilities that protect the organization’s people, data, technology assets, intellectual property, and business operations. This role is ideal for a cybersecurity leader who has successfully led multiple cybersecurity functions and is ready to assume broader enterprise cybersecurity leadership responsibilities in a lean, high-growth biotechnology environment.
NewProfessional Services Consultant BitSight TechnologiesProfessional Services ConsultantBoston, Massachusetts$85,000–$105,000 / yearPreferred experience or knowledge in: Hands-on experience conducting or supporting vendor security assessments, security audits, or compliance evaluations (GRC, internal audit, risk management backgrounds welcome). This range reflects the minimum and maximum target for new hire salaries for the position across all US locations, is based on a full-time work schedule, and is Bitsight’s good faith estimate as of the date of this posting.