AI Security Architecture and Risk, Sr Advisor Fiserv IncAI Security Architecture and Risk, Sr AdvisorBerkeley Heights, NJ$146,000–$244,800 / yearDefine the control requirements and thresholds that AI protection tooling enforces - guardrail thresholds for hallucination, PII/PHI exposure, prompt injection, and toxicity, plus data-access policy - and bring security leadership to the build-vs-buy strategy for that layer (e.g., Arize, Fiddler, Varonis, or equivalent). Help lead the enterprise AI security reference architecture - partnering with Cybersecurity Architecture and the AI Center of Excellence to define approved patterns and secure defaults for AI and agentic workloads, and to evaluate incoming designs against them.
Staff Security Engineer, GRC Oscar Health InsuranceStaff Security Engineer, GRCNew York, NY$245,916–$286,902 / yearAbout the role: As a Staff GRC Engineer, you will be a cloud-aware governance, risk, and compliance expert supporting Oscar's healthcare technology environment, with a specific focus on CMS Enhanced Direct Enrollment (EDE) platforms and stage 3 certification readiness. You will translate CMS EDE requirements, FedRAMP Moderate-aligned expectations, and NIST SP 800-53 controls into practical control designs, compliance-as-code patterns, evidence workflows, and risk management practices for AWS-hosted and Azure-hosted systems.
Regional Information Security Officer DBA: Zeiss GroupRegional Information Security OfficerWhite Plains, NY$136,000–$170,000 / yearThe Regional Information Security Officer (RISO) is a key member of the ZEISS regional IT and Information Security team (CIT-R) and the liaison with Corporate Information Security (CIT-I) reporting to and representing its head in the respective ZEISS region by mirroring CIT-I organization, acting as a 2nd line-of-defense function for all information security domains. Identify and recommend security awareness initiatives (i.e., baseline evaluation, training, testing) in the respective ZEISS region based on KPI or job function (e.g., Finance personnel, Executives, IT administrators, etc.), helping the organization to meet the security challenges arising from the latest security threats and trends.
Senior Product Security Engineer I Oscar Health InsuranceSenior Product Security Engineer INew York, NYTechnical Mentorship: Act as a technical resource and mentor to junior engineers, providing guidance to remove obstacles and develop smooth, highly functional workflows. About the role: As a Senior Product Security Engineer, you will be a key technical resource for the team, leading the security of the software development life cycle (SDLC) from design to completion.
Data Security Engineer Fiserv IncData Security EngineerBerkeley Heights, NJ$109,000–$182,400 / yearCertified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), or similar certifications, or an equivalent combination of training and experience. Experience designing and implementing AI/ML-driven security solutions for automated threat detection, endpoint protection, or network anomaly identification within enterprise environments.
CRO - Information Security & Risk Oversight Lead BloombergCRO - Information Security & Risk Oversight LeadNew York, NY$215,000–$290,000 / yearAttract, hire and manage a team of technical risk professionals to identify and measure threat-actor initiated risks and risk scenarios that may impact the confidentiality, integrity, and availability of information systems. Reporting directly to our Head of Technology Risk as part of the Chief Risk Office, you will provide independent oversight, technical consultation and credible challenge across the firm’s enterprise-wide information security program.
NewInformation Security Compliance Analyst Vestwell Holdings Inc.Information Security Compliance AnalystNew York, NY$90,000–$105,000 / yearThe compliance analyst''s responsibilities include reviewing our SOC controls and comparing them to actions today, coming up with new automations to confirm compliance, responding to RFPs, and building a library of knowledge to speed up the RFP response program. Manage cybersecurity risk processes, including risk registers, findings, vulnerabilities, remediation plans, ownership, escalation, and business acceptance within the Vestwell Governance, Risk and Compliance (GRC) solution.
Site Reliability Engineering Lead (Infrastructure, Security and Platforms) HadriusSite Reliability Engineering Lead (Infrastructure, Security and Platforms)New York, NY$200,000–$265,000 / yearTo do this, we're building the automated back office for financial firms, using AI to analyze millions of data points from emails to text messages, marketing copy, investment accounts, filings, and more to identify regulatory violations. We're the fastest growing company in the space and the emerging category leader, going from our launch out of the YC W23 batch to $XMs+ ARR in under 24 months and haven't slowed down since.
Red Team - Offensive Security Analyst - Manager Ernst & Young Global LtdRed Team - Offensive Security Analyst - ManagerHoboken, NJ$128,100–$239,600 / yearIf you have a disability and either need assistance applying online or need to request an accommodation during any part of the application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for candidate queries and finally select Option 2 for candidates with an inquiry which will route you to EY's Talent Shared Services Team (TSS) or email the TSS at ssc.customersupport@ey.com. To qualify for the role, you must have: 6+ years of relevant experience in one or more of the following areas: Red Teaming, Purple Teaming, Offensive Security Operations, Exploit Development, Penetration Testing, Security Research, or similar roles.
NewStaff Security Engineer, Strategy & Operations CVS Health CorpStaff Security Engineer, Strategy & OperationsNew York, NY$130,295–$284,280 / yearThe successful candidate will serve as a trusted advisor to senior leadership, owning executive dashboards, KPI frameworks, operational governance, and strategic initiatives that provide visibility into organizational health, security program maturity, infrastructure performance, and business outcomes. We are seeking a highly strategic, analytical, and operationally focused Staff Security Engineer, Strategy & Operations to support and drive operational excellence across the Health100 and PCW Security & Infrastructure organizations.
BISO (Business Information Security Officer) Phaxis LLCBISO (Business Information Security Officer)New York, NY$260,000 / yearLead and manage the cyber risk committee, presenting quarterly reports to CEO and other key stakeholders. Act as the primary security contact for technology, legal, finance, audit, compliance, news and product.
Senior Manager, Application Security Simpson Thacher & BartlettSenior Manager, Application SecurityNew York, New YorkThe Senior Manager, Application Security is responsible for defining, leading, and operationalizing the firm’s application security program across internally developed applications, SaaS platforms, APIs, databases, generative AI platforms, and emerging application architectures. Demonstrated success building, scaling, and operating enterprise-grade Application Security programs within large, complex organizations, preferably in hybrid environments (on-premises, multi-cloud, Kubernetes, and SaaS).
Global Network Security Engineer (Remote) Crane Co.Global Network Security Engineer (Remote)Stamford, CTRemoteThe ideal candidate will have a solid proficiency in networking and network security with a focus on enterprise firewall management, network segmentation, SD-WAN, SASE, ZTNA and NAC technologies. Provide oversight and work directly on the implementation, and administration of network security infrastructure including firewalls, networks sensors, and other network-based detective and preventive controls.
Senior Security Engineer, Identity & Access Management Valon Mortgage IncSenior Security Engineer, Identity & Access ManagementNY$180,000–$230,000 / yearIn this role, youll own the design, implementation, and operation of IAM systems for Valons enterprise identity stack that powers Valons workforce, and support security for customer-facing authentication and authorization capabilities embedded in ValonOS. As AI becomes central to how Valon builds and operates, our team is responsible for securing AI-powered systems and pipelines while also leveraging AI tools to optimize security and defense capabilities.
NewPrivacy & Security Program Manager NanitPrivacy & Security Program ManagerNew York, NYRemote$130,000–$150,000 / yearPartner with Product and Engineering teams to embed privacy-by-design and security-by-design principles into new features and products, including data mapping, privacy impact assessments (PIAs/DPIAs), and secure development practices. Conduct and support regular privacy and security risk assessments, audits and gap analyses across systems, vendors, products and business processes, and drive remediation of identified gaps.
NewPrivacy & Security Program Manager Udisense IncPrivacy & Security Program ManagerNew York, NYRemote$130,000–$150,000 / yearPartner with Product and Engineering teams to embed privacy-by-design and security-by-design principles into new features and products, including data mapping, privacy impact assessments (PIAs/DPIAs), and secure development practices. Conduct and support regular privacy and security risk assessments, audits and gap analyses across systems, vendors, products and business processes, and drive remediation of identified gaps.
Cyber Network Security Architecture - Senior Manager Deloitte Touche Tohmatsu LtdCyber Network Security Architecture - Senior ManagerMorristown, NJ$163,400–$322,100 / year8+ years of experience in the design and architecture of enterprise-level technical stacks, including VPNs, CDN solutions, Load Balancers, Subnetting, Next-Generation firewall design, and highly scalable security solutions like Secure Access Service Edge (SASE) technologies. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities.
Product Manager - Digital Security and Identity Fiserv IncProduct Manager - Digital Security and IdentityBerkeley Heights, NJ$120,000–$198,000 / yearYou will work closely with analysts, user experience designers, engineering, quality assurance, clients, and internal stakeholders to define product strategy, prioritize enhancements, and drive secure, scalable identity solutions that support client and business needs. Experience you'll need to have: 4+ years of experience in product management, including delivering software or platform capabilities in cybersecurity, identity and access management, fraud, authentication, or related security domains.
Director of Information Security Hofstra UniversityDirector of Information SecurityHempstead, NY$160,000–$170,000 / yearProvide leadership philosophy for the ITS Information Security team (currently two staff, in addition to the director), create and maintaining strong working relationships with other teams, build respect for the contributions of all and bring groups together to share information and resources and create better decisions, policies, and practices for the University. The Director leads the development and implementation of a security program that leverages collaborations and campus-wide resources, facilitates information security governance, advises senior leadership on security direction and resource investments, and designs appropriate policies to manage information security risk.
Principal Technical Consultant - Cloud and Application Security AHEAD, LLCPrincipal Technical Consultant - Cloud and Application SecurityNY$250,000–$300,000 / yearPrincipal Technical Consultants effectively lead client delivery engagements by executing the necessary project tasks, producing expected collateral, and presenting artifacts at any time throughout an engagement, while acting in a leadership capacity to the project team(s). Principal Technical Consultants are seasoned experts in information security, cloud security, application security and DevSecOps, threat management, and related technologies, with the ability to secure applications and APIs across the cloud-native software delivery lifecycle.