Crux For Technical Talent

Build Your Career in Cybersecurity -
YOUR WAY

01.
Contract/ fractional
Want flexibility and variety? Indicate your target areas of work and your availability, and we will match you with opportunities
You name your own bill rate. You control what you make.
02.
Contract to hire
Sometimes it makes sense both ways to 'try before you buy.' We will match you up with opportunities that allow you to get to know a company and the people before committing to a full time role
03.
Full time
Get matched with full time job opportunities via our job board and proprietary roles that we are recruiting for

How it works

Cyber River
01.
Join Crux
Abstract Art
02.
Help us get to know you
Abstract Lightbulb
03.
Access jobs custom tailored to you
Cyber City
04.
Receive ongoing career resources and guidance
Abstract Heart
05.
Find work you love
05.
Find work you love

Recent Jobs

Managing Director Americas Head of Information Security
BNP Paribas
State
New Jersey
Remote Elig.
On-site
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
290.00
-
Not disclosed
350
Chief Information Security Officer
Trupanion
State
Washington
Remote Elig.
Hybrid
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
200.00
-
Not disclosed
250
Deputy CISO
New Relic
State
Oregon
Remote Elig.
Hybrid
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
202.00
-
Not disclosed
252
1672755875327.jpeg
On-site
State
California
Remote Elig.
On-site
Not disclosed
Seniority
Senior
Domain
Governance, Risk & compliance
Salary ($K)
139
-
186
Not disclosed
Oversee and Govern
139

Summary Information About the Role and Company Overview

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance and protect these exciting experiences.

The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney’s information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando.

Corporate is required to address security control gap issues identified through various assessment programs. A cybersecurity corrective action job involves developing and implementing plans to address security gaps and vulnerabilities. This includes issues identified through internal assessments against corporate policy, vulnerability scanning, penetration testing, and regulatory issues identified through compliance program assessments such as PCI and EU data privacy.

  • Manage reviews of reports, assessments, and findings to identify remediation and/or corrective action needed.
  • Manage coordination with IT and business partners to facilitate necessary remediation and corrective action.
  • Manage verification of remediation and corrective action activity to ensure it achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards.
  • Document and review open items in status reports, including next steps, dependencies, and stakeholders.
  • Manage communication of results to stakeholders, including technical and non-technical audiences.
  • Provide recommendations to improve security posture.
  • Contribute in improving security baselines and standards.
  • Stay updated on evolving security guidelines and incorporate them into IT and business practices.
  • Stay informed on emerging threats and vulnerabilities.
  • Proactively recommend adjustments to mitigate risks.

Required Qualifications & Skills:

  • A minimum of 10 years of related cybersecurity experience
  • Demonstrated experience managing corrective action.
  • Ability to manage and work well with individuals and teams with varying technical and business backgrounds.
  • Deep understanding of security frameworks and standards.
  • Significant relationship management skills.
  • Analytical thinking and attention to detail.
  • Established problem-solving skills with an ability to develop creative alternatives to complex problems, as well as continuous improvement process skills
  • Demonstrated ability to handle confidential information.
  • Managerial experience in a security program for a large and complex organization.

Required Education:

  • Bachelor's degree or equivalent experience in Cyber Security, Computer Science, Management Information Systems, or related field.

The hiring Range for this position in California is $138,900.00 to $186,200.00 per year. The base pay actually offered will take into account internal equity and also may vary depending on the candidate's geographic region, job-related knowledge, skills and experience among other factors. A bonus and/or long-term incentive units may be provided as part of the compensation package, in addition to the full range of medical, financial, and/or other benefits, dependent on the level and position offered.

No items found.
1519856213195.jpg
Hybrid
State
North Carolina
Remote Elig.
Hybrid
Not disclosed
Seniority
Experienced
Domain
Security Operations
Salary ($K)
73
-
132
Not disclosed
Operate and Maintain
73

JOIN TARGET CYBERSECURITY AS A CYBERSECURITY ENGINEER - SIEM

About Us

Working at Target means helping all families discover the joy of everyday life. We bring that vision to life through our values and culture. Learn more about Target here.

Working at Target means the opportunity to help all families discover the joy of everyday life. Caring for our communities is woven into who we are, and we invest in the places we collectively live, work and play. We prioritize relationships, fuel and develop talent by creating growth opportunities, and succeed as one Target team. At our core, our purpose is ingrained in who we are, what we value, and how we work. It’s how we care, grow, and win together.

  • Use your technology acumen to apply and maintain knowledge of current and emerging technologies within specialized area(s) of the technology domain.
  • Evaluate new technologies and participate in decision-making, accounting for several factors such as viability within Target’s technical environment, maintainability, and cost of ownership.
  • Initiate and execute research and proof-of-concept activities for new technologies.
  • Lead or set strategy for testing and debugging at the platform or enterprise level.
  • In complex and unstructured situations, serve as an expert resource to create and improve standards and best practices to ensure high-performance, scalable, repeatable, and secure deliverables.
  • Lead the design, lifecycle management, and total cost of ownership of services.
  • Provide the team with thought leadership to promote re-use and develop consistent, scalable patterns.
  • Participate in planning services that have enterprise impact.
  • Provide suggestions for handling routine and moderately complex technical problems, escalating issues when appropriate.
  • Gather information, data, and input from a wide variety of sources; identify additional resources when appropriate, engage with appropriate stakeholders, and conduct in-depth analysis of information.
  • Provide suggestions for handling routine and moderately complex technical problems, escalating issues when appropriate.
  • Develop plans and schedules, estimate resource requirements, and define milestones and deliverables.
  • Monitor workflow and risks; play a leadership role in mitigating risks and removing obstacles.
  • Lead and participate in complex construction, automation, and implementation activities, ensuring successful implementation with architectural and operational requirements met.
  • Establish new standards and best practices to monitor, test, automate, and maintain IT components or systems.
  • Serve as an expert resource in disaster recovery and disaster recovery planning.
  • Stay current with Target’s technical capabilities, infrastructure, and technical environment.
  • Develop fully attributed data models, including logical, physical, and canonical.
  • Influence data standards, policies, and procedures.
  • Install, configure, and/or tune data management solutions with minimal guidance.
  • Monitor data management solution(s) and identify optimization opportunities.

Requirements:

  • 4-year degree or equivalent experience
  • 2+ years of software development experience
  • Demonstrates familiarity with current and emerging technologies in own scope of responsibility, and develops ability to apply these technologies
  • Demonstrates and continuously builds upon domain-specific knowledge
  • Demonstrates proficiency in at least one computer language
  • Understands the concepts of distributed programming and applies it to their domain
  • Problem solver who can tackle complex technical challenges
  • Maintains technical knowledge within areas of expertise
  • Eagerness to learn technologies, programming languages and full-stack engineering
  • Enjoys pairing with senior engineers and other teams to solution difficult requirements.

The pay range is $73,200.00 - $131,700.00. Pay is based on several factors which vary based on position. These include labor markets and in some instances may include education, work experience and certifications. In addition to your pay, Target cares about and invests in you as a team member, so that you can take care of yourself and your family. Target offers eligible team members and their dependents comprehensive health benefits and programs, which may include medical, vision, dental, life insurance and more, to help you and your family take care of your whole selves. Other benefits for eligible team members include 401(k), employee discount, short term disability, long term disability, paid sick leave, paid national holidays, and paid vacation. Find competitive benefits from financial and education to well-being and beyond at https://corporate.target.com/careers/benefits.

This position will operate as a Hybrid/Flex for Your Day work arrangement based on Target’s needs. A Hybrid/Flex for Your Day work arrangement means the team member’s core role will need to be performed both onsite at the Target HQ MN location the role is assigned to and virtually, depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target. Click here if you are curious to learn more about Minnesota.

Benefits Eligibility

Please paste this url into your preferred browser to learn about benefits eligibility for this role: https://tgt.biz/BenefitsForYou_D

Americans with Disabilities Act (ADA)

In compliance with state and federal laws, Target will make reasonable accommodations for applicants with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process, please reach out to candidate.accommodations@HRHelp.Target.com.

Application deadline is: 03/30/2025

No items found.
1519856213195.jpg
Hybrid
State
North Carolina
Remote Elig.
Hybrid
Not disclosed
Seniority
Experienced
Domain
Penetration testing
Salary ($K)
128
-
231
Not disclosed
Protect and Defend
128

JOIN TARGET CYBERSECURITY AS A LEAD ENGINEER - RED TEAM

About Us

Target is an iconic brand, a Fortune 50 company, and one of America’s leading retailers.

Target as a tech company? Absolutely. We’re the behind-the-scenes powerhouse that fuels Target’s passion and commitment to cutting-edge innovation. We anchor every facet of one of the world’s best-loved retailers with a strong technology framework that relies on the latest tools and technologies—and the brightest people—to deliver incredible value to guests online and in stores. Target Technology Services is on a mission to offer the systems, tools and support that guests and team members need and deserve. We drive industry-leading technologies in support of every angle of the business, and help ensure that Target operates smoothly, securely and reliably from the inside out. Our high-performing teams balance independence with collaboration, and we pride ourselves on being versatile, agile and creative. Use your skills, experience, and talents as a member of a world-class cyber security team!

About Red Team

Target's Red Team uses adversary simulation to uncover risk in our environment, provide training opportunities to defenders, and measure the processes and technology defending the organization. We leverage a high level of collaboration between teams as we drive organizational improvement. Our objective-driven operations are supplemented with direct training and development, Purple Team work, and consulting within the company on security risk. As a Red Team Lead Engineer, you will conduct and lead operations, contribute to the team, influence team direction, and collaborate with partner teams.

  • Consult on, design, and execute adversary emulation operations
  • Conduct research into real-world threat actor tactics, techniques, and procedures to develop proof-of-concept tools and playbooks
  • Bypass preventative and detective security controls to accomplish operational goals
  • Partner with the Cyber Security Incident Response Team and other stakeholders in the organization to identify improvement opportunities
  • Collaborate with Cyber Threat Intelligence, Detection, and Threat Hunting engineers and analysts on research
  • Work with non-security engineering teams to educate, and collaborate on operational objectives
  • Develop strategic adversary emulation objectives and operational plans
  • Execute adversary emulation operations to surface risk in the organization
  • Work with partner teams to plan cooperative engagements
  • Lead and train operators
  • Communicate effectively with and directly support defenders
  • Present findings and operational work to groups in a clear and professional manner
  • Study the techniques of Threat Actors, and apply that lens to operational work
  • Partner with other Team Members to improve tools and procedures
  • Manage work effectively in the team’s project management tools (Github/JIRA)
  • Respond to the quick-changing needs and priorities of the team
  • Read and write code to accomplish red team goals
  • Deeply understand red team infrastructure

Required Qualifications:

  • Four years minimum experience in offensive security and/or defensive security
  • Demonstrates strong offensive security knowledge
  • Demonstrates strong understanding of the impact of Red Team work on an organization and its customers
  • Prioritizes process improvement
  • Seeks out cross-functional collaboration opportunities
  • Clearly and respectfully communicates technical issues in a training or mentorship setting
  • Resolves complex technical issues with minimal assistance
  • Builds strong commitment within a team to support the appropriate priorities
  • Stays current on relevant technologies with self-directed learning

Preferred Qualifications:

  • Deep Red Team adversary emulation experience
  • Experience working on or with Blue Teams, including Incident Response, or Detection
  • Experience working in large, complex organizations
  • Python, C#, Rust, Go, or C skills
  • Solving difficult problems, and creatively subverting systems
  • Ability to replicate the tools and techniques of in-the-wild threat actors
  • Follows Threat Actor trends impacting organizational security

This position may be considered for a Remote or Hybrid (known internally at Target as "Flex for Your Day") work arrangement based on Target's needs.  A Remote work arrangement means the team member works full-time from home or an alternate location that's not a Target location, does not have a desk at a Target location and may travel to HQ up to 4 times a year.  A Hybrid/Flex for Your Day work arrangement means the team member's core role may be performed either remote or onsite at a Target location depending upon what your role, team and tasks require for that day. Work duties cannot be performed outside of the country of the primary work location, unless otherwise prescribed by Target.

Benefits Eligibility

Please paste this url into your preferred browser to learn about benefits eligibility for this role: https://tgt.biz/BenefitsForYou_E

Americans with Disabilities Act (ADA)

In compliance with state and federal laws, Target will make reasonable accommodations for applicants with disabilities. If a reasonable accommodation is needed to participate in the job application or interview process, please reach out to candidate.accommodations@HRHelp.Target.com.

Application deadline is: 03/30/2025

No items found.
Managing Director Americas Head of Information Security
BNP Paribas
State
New Jersey
Remote Elig.
On-site
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
290.00
-
Not disclosed
350
Chief Information Security Officer
Trupanion
State
Washington
Remote Elig.
Hybrid
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
200.00
-
Not disclosed
250
Deputy CISO
New Relic
State
Oregon
Remote Elig.
Hybrid
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
202.00
-
Not disclosed
252