Talent.com
Information Security Engineer
Information Security EngineerPeraton • Portland, Oregon, United States
Information Security Engineer

Information Security Engineer

Peraton • Portland, Oregon, United States
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]
Responsibilities

**Position is Contingent Upon Award**

Peraton seeks innovative professionals who thrive in mission-critical environments and are passionate about protecting our national critical infrastructure. This is your chance to make an impact on one of the nation's vital organizations, working alongside leaders in cybersecurity engineering, operations, forensics, threat analysis, data science, and systems integration.

Join Peraton in supporting a large critical infrastructure operator to defend its corporate and operations networks from nation-state attacks, ensure the confidentiality, integrity, and availability of its systems and operations infrastructure, and comply with federal and industry cybersecurity regulation. As an information security engineer working alongside a state of the art 24-hour Cybersecurity Operations Center (CSOC), you will be responsible for leading the assessment, validation, and remediation of security controls across the organization. This role ensures that security risks are identified, prioritized, and effectively mitigated in alignment with regulatory requirements, security frameworks, and organizational risk tolerance.

Primary Responsibilities:

The Information Security Engineer will be responsible to:
  • Lead security control assessments across systems, applications, and infrastructure
  • Evaluate the effectiveness of technical, administrative, and operational security controls
  • Identify control gaps, weaknesses, and residual risk
  • Develop, track, and manage remediation plans in coordination with system owners
  • Prioritize remediation efforts based on risk, impact, and business context
  • Validate remediation actions and confirm control effectiveness post-fix
  • Maintain risk registers, control assessment documentation, and remediation evidence
  • Support internal and external audits, assessments, and regulatory inquiries
  • Communicate risk posture, trends, and remediation status to leadership
  • Work with stakeholders to continuously improve assessment and remediation processes and methodologies
  • Stay current on emerging threats and incorporate lessons learned into recommendations to policies, procedures, and cybersecurity systems and network modifications
  • Prepare reports and brief CSOC Manager, infrastructure stakeholders and corporate management on requests
Additional Responsibilities:
  • Contribute to the development and periodic review of security policies, standards, and control procedures
  • Provide advisory support to system owners and project teams during system design or major changes
  • Participate in tabletop exercises, risk workshops, and threat modeling sessions as a controls SME
  • Support onboarding and training of staff on control assessment and remediation processes
  • Assist with defining control metrics, KPIs, and maturity indicators
  • Review and provide input on third-party risk assessments and vendor security reviews
  • Support merger, acquisition, organizational role changes or system onboarding activities from a risk and controls perspective
  • Track emerging threats, regulatory changes, and framework updates to inform assessment strategy
  • Mentor junior risk analysts or assessment team members
  • Support executive reporting and briefings on risk trends and remediation progress

Qualifications

Required:
  • U.S. Citizenship Required
  • Must have the ability to obtain / maintain a DOE L Level or DOE Secret clearance
  • Degree in computer science, engineering, cybersecurity, information technology, risk management or related field
  • 8 years of experience with BS/BA; 6 years with MS/MA
  • Experience in cybersecurity compliance, analyst, governance, or risk management roles
  • Understanding of industry cybersecurity standards such as FISMA, NIST 800 series, ISO 27001 and regulatory compliance requirements
  • Experience with vulnerability assessment, enterprise risk assessments, and remediation workflows
  • Ability to analyze scan results and control findings to determine true risk to the organization
  • Experience creating and managing POA&Ms or remediation plans
  • Familiarity with patch management and configuration remediation processes
  • Ability to lead cross-functional remediation efforts without direct authority
  • Experience coordinating with engineering, IT, security, and compliance teams
  • Strong project management and prioritization skills
  • Strong analytical and problem-solving skills
Desired:
  • Hold technical and/or cybersecurity certification such as CISSP, GIAC GSEC, GIAC GCIH, CISA SSCP, CompTIA Security+
  • A master's degree in computer science, engineering, cybersecurity, information technology, or related field

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
All
[job_alerts.create_a_job]

Information Security Engineer • Portland, Oregon, United States

[internal_linking.similar_jobs]
Compliance Engineer II

Compliance Engineer II

Trimble • Lake Oswego, OR, United States
[job_card.full_time]
Shape the Future of Secure Innovation as our Next Cloud Compliance Engineer (FedRAMP Focus)!.Ready to make a tangible impact on global industries using cutting-edge AI and secure cloud infrastructu...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Network & Security Architect for Enterprise Transformation

Senior Network & Security Architect for Enterprise Transformation

Xinnovit • Portland, OR, United States
[job_card.full_time]
Xinnovit is a global leader in technology consulting, outsourcing, and workforce management solutions.Our mission is to enable our clients to become more agile and competitive with the help of inno...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Consultant - Offensive Security

Senior Consultant - Offensive Security

EY • Portland, OR, United States
[job_card.full_time]
At EY, we are committed to shaping your future with confidence and helping you advance your career within a diverse and globally connected environment.Join us and contribute to building a better wo...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Strategic Application Security Architect

Strategic Application Security Architect

Lamwork • Portland, OR, United States
[job_card.full_time]
A cybersecurity firm located in Portland, OR, seeks an Application Security Architect to conduct application security analysis, including code reviews and vulnerability management.This role involve...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Principal Full-Stack Engineer: Cloud, AI & Security Leader

Principal Full-Stack Engineer: Cloud, AI & Security Leader

Blue Shield of CA • Portland, OR, United States
[job_card.full_time]
A healthcare organization located in Portland, Oregon is looking for a Principal Full Stack Engineer to lead the solution architecture and delivery of innovative healthcare solutions.This role requ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cyber SDC - Attack & Penetration - Senior - Consulting - Location OPEN

Cyber SDC - Attack & Penetration - Senior - Consulting - Location OPEN

Ernst & Young Oman • Portland, OR, United States
[job_card.full_time]
At EY, we’re all in to shape your future with confidence.We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Offensive Security Consultant - Pen Testing Red Team

Senior Offensive Security Consultant - Pen Testing Red Team

Ernst & Young Oman • Portland, OR, United States
[job_card.full_time]
A global professional services firm is seeking a Senior Consultant in Offensive Security to enhance client security through proactive threat assessments.Responsibilities include managing penetratio...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Specialist for Retail

Security Specialist for Retail

Ross Stores, Inc. • Vancouver, WA, United States
[job_card.full_time]
Become part of a team that recognizes your contribution!.Join Ross, a leading off-price retail chain with over 2,200 stores, and bring your talents to a company with a strong commitment to success ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Specialist

Security Specialist

Security Industry Specialists • Portland, OR, United States
[job_card.full_time]
The Security Specialists, under the direct supervision of the Shift Supervisor, ensures SIS standards and policies are met in overall field services, operations and functions in assigned area such ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Application Security Architect

Application Security Architect

Lamwork • Portland, OR, United States
[job_card.full_time]
APPLICATION SECURITY ARCHITECT RESUME EXAMPLE.Updated: July 26, 2024 - The Application Security Architect designs and implements robust security measures for products and services, ensuring complia...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Offensive Security - Researcher

Offensive Security - Researcher

Portland Staffing • Portland, OR, United States
[job_card.full_time]
Apple's Security Engineering & Architecture organization is responsible for the security of all Apple products.Passionate about safeguarding our users, we believe that the best defense requires a g...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Controls Assessor

Security Controls Assessor

UltraViolet Cyber • Portland, OR, United States
[job_card.full_time]
UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions.Founded and operated by security practitioners w...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Training and Awareness Specialist

Security Training and Awareness Specialist

Peraton • Portland, OR, United States
[job_card.full_time]
Security Training and Awareness Specialist.Position is Contingent Upon Award**.Peraton seeks innovative professionals who thrive in mission-critical environments and are passionate about protecting...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Penetration Tester: Web/API Security Lead (Remote)

Senior Penetration Tester: Web/API Security Lead (Remote)

Ernst & Young Oman • Portland, OR, United States
[filters.remote]
[job_card.full_time]
A leading global consulting firm is seeking a Cybersecurity – Attack and Penetration Tester to join their team.This role involves identifying and exploiting vulnerabilities in systems and applicati...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cyber SDC - Attack & Penetration - Senior - Consulting - Location OPEN

Cyber SDC - Attack & Penetration - Senior - Consulting - Location OPEN

EY • Portland, OR, United States
[job_card.full_time]
At EY, we’re all in to shape your future with confidence.We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
INFORMATION TECHNOLOGY SPECIALIST

INFORMATION TECHNOLOGY SPECIALIST

US Army • Portland, OR, United States
[job_card.full_time] +1
ELIGIBLE FOR UP TO A $10K SIGNING BONUS.TALK TO YOUR RECRUITER FOR DETAILS.THIS POSITION REQUIRES AN ENLISTMENT IN THE U.As an Information Technology Specialist, you'll manage, maintain, process, a...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Security Practice Lead (Nationwide)

Security Practice Lead (Nationwide)

Presidio Networked Solutions, LLC • Lake Oswego, OR, United States
[job_card.full_time]
Presidio, Where Teamwork and Innovation Shape the Future.AtPresidio, we're at the forefront of a global technology revolution, transforming industries throughcutting-edge digital solutions and next...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Specialist Director, SAP Security Operations

Specialist Director, SAP Security Operations

KPMG • Portland, OR, United States
[job_card.full_time]
KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down.In this ever-changing market envi...[show_more]
[last_updated.last_updated_variable_days] • [promoted]