Crux For Technical Talent

Build Your Career in Cybersecurity -
YOUR WAY

01.
Contract/ fractional
Want flexibility and variety? Indicate your target areas of work and your availability, and we will match you with opportunities
You name your own bill rate. You control what you make.
02.
Contract to hire
Sometimes it makes sense both ways to 'try before you buy.' We will match you up with opportunities that allow you to get to know a company and the people before committing to a full time role
03.
Full time
Get matched with full time job opportunities via our job board and proprietary roles that we are recruiting for

How it works

Cyber River
01.
Join Crux
Abstract Art
02.
Help us get to know you
Abstract Lightbulb
03.
Access jobs custom tailored to you
Cyber City
04.
Receive ongoing career resources and guidance
Abstract Heart
05.
Find work you love
05.
Find work you love

Recent Jobs

Managing Director Americas Head of Information Security
BNP Paribas
State
New Jersey
Remote Elig.
On-site
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
290.00
-
Not disclosed
350
Chief Information Security Officer
Trupanion
State
Washington
Remote Elig.
Hybrid
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
200.00
-
Not disclosed
250
Deputy CISO
New Relic
State
Oregon
Remote Elig.
Hybrid
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
202.00
-
Not disclosed
252
1656680739576.jpeg
On-site
State
North Carolina
Remote Elig.
On-site
Not disclosed
Seniority
Senior
Domain
Architecture & design
Salary ($K)
-
Not disclosed
Securely Provision

Please review the following job description:

Responsible for developing and maintaining the technical IT/cyber security capabilities necessary for safeguarding the firm's information systems and applications (software development lifecycle), including every phase of the SDLC and software stack. Design, plan, test and implement phases of cybersecurity technology projects.

  • Lead the development and maintenance of the technical IT/cyber capabilities including all phases of the software development lifecycle and software stack which includes threat modeling of application designs, static application security testing (SAST), software composition analysis (SCA), dynamic application security testing (DAST), and penetration testing.
  • Develop cybersecurity engineering strategies (long-term complex plans intended to achieve operational and financial results).
  • Partner with architecture and strategy teams on the evaluation, testing, selection, and architectural design of new information security technologies and the integration of existing technologies into new use cases.
  • Develop/invent highly innovative solutions within multiple information security technologies, theories and/or techniques that impact CIS strategy.
  • Develop security designs for systems and networks with multilevel security requirements.
  • Set the team's direction and communicate individual and team priorities and deliverables against expected results. Make leadership decisions within established policies, procedures, and established objectives.
  • Lead highly complex and visible projects with notable risk and complexity.

Required Qualifications:

  • Bachelor’s degree and ten to twelve years of experience in systems engineering or an equivalent combination of education and work experience
  • Strong functional and technical knowledge of information/cyber security capabilities with deep expertise in one or more of the following areas: Encryption, Data Security, Application Security, End Point Security, Identity and Access Management, Windows/Unix/Linux Systems Security, Mainframe Security, Perimeter Security, Network Security, Mobility Security, Cloud Security, Cyber Security, Cryptography, or Authentication Systems
  • Strong understanding of service lifecycle management, strategic planning, and the cyber security landscape

Preferred Qualifications:

  • Master’s degree or MBA and ten years of experience in business analysis or an equivalent combination of education and work experience
  • Banking or financial services experience. Prior management experience
  • Experience in leading large-scale complex projects from beginning to end.
  • ISSEP Certification
  • Other security certifications (e.g. CCNA Security, GSEC, GCED, GPPA, etc.)
  • Other technical Certifications (e.g. CCNA, RHCE, MCSE, etc.)
  • Certification in Information Security Management (e.g. Certified Information Systems Security Professional (CISSP), Certified in Risk and Information Systems Control (CRISC) or Certified Information Security Manager (CISM)), or related security certification(s)

OTHER JOB REQUIREMENTS / WORKING CONDITIONS

  • Sitting: Constantly (More than 50% of the time)
  • Visual / Audio / Speaking: Able to access and interpret client information received from the computer and able to hear and speak with individuals in person and on the phone.
  • Manual Dexterity / Keyboarding: Able to work standard office equipment, including PC keyboard and mouse, copy/fax machines, and printers.
  • Availability: Able to work all hours scheduled, including overtime as directed by manager/supervisor and required by business need.
  • Travel: Minimal and up to 10%

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation:

All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.

Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.

No items found.
1656680739576.jpeg
On-site
State
North Carolina
Remote Elig.
On-site
Not disclosed
Seniority
Senior
Domain
Identity & access management
Salary ($K)
-
Not disclosed
Oversee and Govern

Job Description Summary

We are currently seeking a Cybersecurity Senior Engineer with hands-on experience managing multiple IGA platforms like Oracle Identity Manager and Sailpoint, and has an understanding of Connector bundles functionality, SOD Module and Role Mining.

Company Overview

Truist is an Equal Opportunity Employer that does not discriminate on the basis of race, gender, color, religion, citizenship or national origin, age, sexual orientation, gender identity, disability, veteran status, or other classification protected by law. Truist is a Drug Free Workplace.

Regular or Temporary:

Regular

Language Fluency:

English (Required)

Work Shift:

1st shift (United States of America)

  • Develop and maintain the technical IT/cyber capabilities including all phases of the software development lifecycle and software stack which includes threat modeling of application designs, static application security testing (SAST), software composition analysis (SCA), dynamic application security testing (DAST), and penetration testing.
  • Lead efforts related to designing, planning, enhancing, and testing all cybersecurity technologies used throughout the enterprise including base-lining current systems, trend analysis, and capacity planning as required for future systems requirements and new technologies.
  • Analyze information to determine, recommend, and plan the use of new information security technologies, or modifications to existing equipment and systems that will provide capability for proposed project or workload, efficient operation and effective use of allotted resources
  • Lead the implementation of new information security technologies or integration of existing technologies including initial configuration, installation, change management, and operational handoff
  • Use sophisticated analytical thought through models, testing, and experience to exercise judgment and identify innovative solutions.
  • Responsible for technical support of information security technologies providing expert problem analysis and resolution in a timely manner
  • Leads teams or projects with moderate resource requirements, risk, and complexity.
  • Design, Develop, implement, and maintain identity and access management solutions and systems.
  • Troubleshoot, identify, and resolve technical identity and access management related issues.
  • Improve identity and access management solutions and systems for protection against evolving threats and efficiency.
  • Coach other members of the organization on the best practices that should be followed in identity and access management.
  • Stay up-to-date on the IGA solution framework, technology and industry best practices.
  • Act as IGA technical expert & provide expertise on roadmap, security strategy & alignment of strategy for business needs.
  • Work with internal BU, understand the ask, translate business requirement to technical solutions & implement it

Required Qualifications:

  • Bachelor’s degree and eight years of experience in systems engineering or administration or an equivalent combination of education and work experience
  • Deep specialized and/or broad functional knowledge in applied enterprise information security technologies including but not limited to firewalls, intrusion detection/prevention systems, network operating systems, identity management, database activity monitoring, encryption, content filtering, and Mainframe security
  • Previous experience in leading complex IT projects

Preferred Qualifications:

  • Hands on managing multiple IGA platforms like Oracle Identity Manager, Sailpoint,
  • Understanding of Connector bundles functionality, SOD Module and Role Mining.
  • Master’s degree or MBA Previous experience in the banking industry
  • Experience conducting, preparing and presenting analysis, findings and recommendations
  • Cyber security certifications such as CISA, CISSP
  • Extensive hands-on knowledge of identity and access management best practices, procedures, and software solutions such as Oracle Identity Governance, SailPoint.
  • Extensive knowledge and experience with identity and access management technology, such as single sign-on (SSO), two-factor authentication, privileged access management

General Description of Available Benefits for Eligible Employees of Truist Financial Corporation: All regular teammates (not temporary or contingent workers) working 20 hours or more per week are eligible for benefits, though eligibility for specific benefits may be determined by the division of Truist offering the position. Truist offers medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan to teammates. Teammates also receive no less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during their first year of employment, along with 10 sick days (also prorated), and paid holidays. For more details on Truist’s generous benefit plans, please visit our Benefits site. Depending on the position and division, this job may also be eligible for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan. As you advance through the hiring process, you will also learn more about the specific benefits available for any non-temporary position for which you apply, based on full-time or part-time status, position, and division of work.

No items found.
1672755875327.jpeg
On-site
State
Florida
Remote Elig.
On-site
Not disclosed
Seniority
Senior
Domain
Architecture & design
Salary ($K)
-
Not disclosed
Securely Provision

Senior Security Specialist, Information Security - Security Solution Architect

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences.

The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.

The Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:

  • Secure the Magic by protecting information systems and platforms.
  • Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.
  • Strengthen the business through optimizing execution, application, and technology used to protect the Company.
  • Innovate by investing in core capabilities to enhance operational efficiency.
  • Assist in the development of solutions that meet or exceed company security requirements and are tailored to address the needs of the Segment.
  • Ensure solutions align with business objectives and regulatory requirements.
  • Contribute to the development of execution plans to implement short and long term security goals.
  • Conduct security risk assessments to identify vulnerabilities and gaps in new and existing systems.
  • Propose mitigation strategies and integrate them into the overall architecture.
  • Work with Segment teams to integrate solutions into existing infrastructures, applications, and cloud platforms.
  • Collaborate with business leaders, project managers, and technical teams to ensure security considerations are factored into all technology projects.
  • Contribute to the development of security policies, standards, and best practices to maintain compliance and improve overall security posture.
  • Stay informed about information security trends, tools, and technologies to stay ahead of emerging threats.
  • Assist in designing systems to detect and respond to security breaches or incidents effectively.
  • Evaluate third party service provider integrations for compliance with information security policies and standards and prepare appropriate documentation.

Required Qualifications:

  • Eight years of related IT experience.
  • Knowledge of cybersecurity frameworks (e.g. NIST, ISO27001)
  • Demonstrated experience with encryption, system and network security, cloud security and identity management
  • Strong understanding of security tools (e.g. SIEM systems, firewalls, anti-malware)
  • Working knowledge of cloud platforms (e.g. AWS, Azure, Google Cloud)
  • Experience with security assessment methods and penetration testing techniques
  • Demonstrated experience in identifying risk and development of mitigation plans
  • Demonstrated experience in a security program for a large and complex organization
  • Knowledge of security related legislation/regulations with emphasis on PCI and Privacy
  • Strong problem solving skills with an ability to develop creative alternatives to complex problems, as well as continuous improvement process skills
  • Demonstrated ability to handle sensitive information
  • Ability to establish credibility and working relationships with a wide range of personnel, including operations, management, executive, and legal staff
  • Demonstrated professional written, verbal, and presentation communications skills
  • Proven ability to work effectively in a fast-paced environment as part of a high performance team
  • Security accreditation (e.g., CISSP, GCIH, CISM, etc.)

Preferred Qualifications:

  • Major cloud provider platform certification (e.g. AWS Solution Architect, Google Cloud Engineer, Microsoft Solution Architect, etc.)

NA

No items found.
Managing Director Americas Head of Information Security
BNP Paribas
State
New Jersey
Remote Elig.
On-site
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
290.00
-
Not disclosed
350
Chief Information Security Officer
Trupanion
State
Washington
Remote Elig.
Hybrid
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
200.00
-
Not disclosed
250
Deputy CISO
New Relic
State
Oregon
Remote Elig.
Hybrid
Seniority
Executive
Domain
Cross-domain/ leadership
Salary ($K)
202.00
-
Not disclosed
252