NewSpecialist Director, Managed Security Testing KPMGSpecialist Director, Managed Security TestingBoston, MA$169,005–$370,530 / yearIf you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation.
NewSenior Associate, SAP Security & Controls KPMGSenior Associate, SAP Security & ControlsBoston, MAIf you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. Qualifications: Three years of recent experience in any of the following areas: SAP audit (GITCs and business process), SAP controls, SAP security design/re-design, SAP GRC implementation, SAP ERP implementations, or business process transformation.
NewSenior Associate, Workday Security KPMGSenior Associate, Workday SecurityBoston, MA$96,045–$206,080 / yearIf you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation.
SR Cloud Security Engineer BJ's Wholesale ClubSR Cloud Security EngineerMarlborough, MA$100,000–$131,500This is a hands‑on engineering role responsible for evaluating cloud and application designs, operating cloud security tooling, and driving remediation of security findings in partnership with engineering and platform teams. Support and continuously improve enterprise vulnerability management and patching workflows, including SLAs, exception handling, and escalation paths.
Staff Network Security Engineer (Information Security) - US Citizen Palo Alto NetworksStaff Network Security Engineer (Information Security) - US CitizenBoston, MassachusettsProactively collaborate with cross-functional teams including Network Engineering, Cloud Engineering, and SREs to integrate security controls into infrastructure and deployment workflows. For candidates who receive an offer at the posted level, the starting base salary (for non-sales roles) or base salary + commission target (for sales/com-missioned roles) is expected to be the annual range listed below.
Virtual Chief Information Security Officer (vCISO) iCorpsVirtual Chief Information Security Officer (vCISO)Woburn, MAThis pillar covers identity-first security and zero trust adoption, cloud posture across Microsoft 365, Azure, AWS, and Google Cloud, endpoint and detection strategy, MDR and XDR partnerships, ransomware resilience and tested recovery, third-party and supply chain risk, and the secure adoption of generative AI. Set and run the security program so the client is aligned to the frameworks that apply: NIST CSF 2.0, ISO 27001:2022, CMMC 2.0 (meaningful given our DoD-adjacent client base), SOC 2, HIPAA, PCI DSS 4.0, US state privacy laws led by CCPA, SEC cyber disclosure where applicable, and cyber insurance attestations.
Chief Information Security Officer (CISO) Massachusetts Institute of TechnologyChief Information Security Officer (CISO)Cambridge, MACHIEF INFORMATION SECURITY OFFICER (CISO), Information Systems and Technology (IS&T), establishes and leads the enterprise-wide information security strategy across MIT. The CISO leads other overall direction and implementation of the information security policies, programs, and procedures to protect information security assets.
NewAssoc Dir, Information Security Governance Risk & Compliance Les Laboratoires Servier SASAssoc Dir, Information Security Governance Risk & ComplianceBoston, MA$179,000–$212,000 / yearThe role provides oversight of information security risk management, policy governance, compliance, third-party risk management, control assurance, audit readiness, and risk reporting while directing operational execution through subordinate managers, analysts, contractors, and service providers. This is a high visibility leadership role with the opportunity to build and scale a modern GRC capability aligned to Servier's global cybersecurity strategy, enterprise risk expectations, regulatory obligations, and business growth.
Remote Information Security Architect Global Channel ManagementRemote Information Security ArchitectFramingham, MassachusettsRemoteExperience with fully owning epics, features and stories to provide guidance to product / platform teams and other teams as needed; Manages and performs product evaluations, recommends and implements products/services for Information Security that support strategic operational needs and security requirements. Remote Information Security Architect duties: Is sought out as a trusted advisor and assists in the creation of security designs, requirements, risk monitoring and mitigation guidance in alignment with industry best practices and regulatory requirements.
Information Security Architect - AI Wolters KluwerInformation Security Architect - AIWaltham, MA$107,500–$188,400 / yearThis dedicated role will streamline evaluations, accelerate secure adoption, and strengthen enterprise resilience by embedding AI risk management into both governance and technical design. The successful candidate will combine deep security expertise with a forward-looking grasp of AI governance, enabling the organization to innovate confidently and securely.
Virtual Chief Information Security Officer (vCISO) iCorps Technologies IncVirtual Chief Information Security Officer (vCISO)Woburn, MAThis pillar covers identity-first security and zero trust adoption, cloud posture across Microsoft 365, Azure, AWS, and Google Cloud, endpoint and detection strategy, MDR and XDR partnerships, ransomware resilience and tested recovery, third-party and supply chain risk, and the secure adoption of generative AI. Set and run the security program so the client is aligned to the frameworks that apply: NIST CSF 2.0, ISO 27001:2022, CMMC 2.0 (meaningful given our DoD-adjacent client base), SOC 2, HIPAA, PCI DSS 4.0, US state privacy laws led by CCPA, SEC cyber disclosure where applicable, and cyber insurance attestations.
Information Security Analyst NEPC CareersInformation Security AnalystBoston, MassachusettsMaintain the risk register, including risk descriptions, owners, mitigation plans, status updates, and supporting records, and work alongside Business Analysts and process owners to identify and document operational risks, control gaps, and dependencies revealed through incidents, investigations, or project work. This role is responsible for monitoring and investigating alerts and vulnerabilities, coordinating response and remediation efforts, maintaining clear documentation, and supporting core security governance activities such as the risk register, committee records, and audit evidence.
NewInformation Security Officer Sompo International Holdings LimitedInformation Security OfficerBoston, MA$180,000–$225,000 / yearExperience maintaining a fast-changing security program with continuous improvement driven by changes in: threat intelligence and adversary tactics operational metrics company priorities Leadership experience managing a hybrid team of: direct reports (including ongoing professional development) matrix reports managed services and specialist contractors. Technical familiarity with security patterns, operations and controls for traditional (Windows), cloud, and SaaS environments Systematic thinking - understanding the place of security controls within the larger operating environment, anticipating issues and engaging colleagues to minimize disruption (or the potential for it).
NewInformation Security Officer Sompo InternationalInformation Security OfficerBoston, MA$180,000–$225,000 / yearExperience maintaining a fast-changing security program with continuous improvement driven by changes in: threat intelligence and adversary tactics operational metrics company priorities Leadership experience managing a hybrid team of: direct reports (including ongoing professional development) matrix reports managed services and specialist contractors. Technical familiarity with security patterns, operations and controls for traditional (Windows), cloud, and SaaS environments Systematic thinking - understanding the place of security controls within the larger operating environment, anticipating issues and engaging colleagues to minimize disruption (or the potential for it).
Senior Associate, Information Security - Forensics Publicis Groupe SASenior Associate, Information Security - ForensicsBoston, MA$100,000–$120,000 / yearExperience with forensics tools such as FTK, EnCase, Autopsy to collect and analyze file system artifacts, process history, application artifacts, memory collection and analysis for physical and cloud systems (Windows, Mac, Linux). 4 or more years of experience in an analytical role of either forensics analyst (Linux, Windows, or MacOS), threat analyst, incident response, SOC analyst, or security engineer/ consultant.
Information Security Manager Massachusetts Institute of TechnologyInformation Security ManagerCambridge, MAINFORMATION SECURITY MANAGER, The Massachusetts Green High Performance Computing Center (MGHPCC), to serve as the primary security leader across MGHPCC and the AI Computing Resource (AICR) at the heart of the Massachusetts AI Hub. This senior, hands-on role spans security architecture, risk management, compliance, and policy for a nationally recognized academic research computing consortium.
Business Information Security Officer HCC Life Insurance CompanyBusiness Information Security OfficerWakefield, MA$156,700–$345,800 / yearThis leader will partner closely with TMHCC's CISO, enterprise security function, architecture, infrastructure, engineering, business leadership, and technology teams to align security strategy with business priorities while driving practical, measurable improvements across the technology landscape. Reporting to the Chief Business Technology Officer, North America P&C, this role works across business units to improve transparency, accelerate security outcomes, and strengthen the organization's ability to operate securely and resiliently.
Information Security Architect State Street CorpInformation Security ArchitectQuincy, MA$120,000–$202,500 / yearThis role emphasizes the implementation of advanced security frameworks, including cryptography, data protection strategies for data at rest, in motion, and in use, and the deployment of technologies such as Data Security Posture Management (DSPM), Cloud Access Security Brokers (CASB), and Security Service Posture Management (SSPM). As an essential partner in our shared success, you'll benefit from inclusive development opportunities, flexible work-life support, paid volunteer days, and vibrant employee networks that keep you connected to what matters most.
Chief Information Security Officer ImprivataChief Information Security OfficerWaltham, MAAt Imprivata, we deliver unified access and security management programs that eliminate friction, empowering healthcare and mission-critical organizations to work smarter, faster, and more securely. Reporting directly to the Chief Technology Officer, the CISO will be responsible for establishing and maintaining the enterprise vision, strategy, and program to ensure information assets and technologies are adequately protected.
Information Systems Security Manager (Issm) - SME AvintInformation Systems Security Manager (Issm) - SMEBedford, MA$165,000–$175,000 / yearIn this role, you’ll be part of a high-performing team responsible for implementing and overseeing all phases of the Risk Management Framework (RMF) while supporting day-to-day cybersecurity operations. Perform the Information System Security Engineer (ISSE) duties in an Information Assurance Workforce System Architecture and Engineering (IASAE) position as outlined in AFI 33-200, AFI 33-210 and AFMAN 33-285 for assigned systems.