CrawlJobs Logo

Engineer 2 - Cyber Security Engineering

comcastcorporation.com Logo

Comcast

Location Icon

Location:
India , Chennai

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Can you learn quickly while interacting with colleagues, end users and Third-Party contacts across all Comcast line of business all while having fun. Are you analytical with a focus for details. Do you like to learn about risk management frameworks like ISO. NIST 800-53 while working with workflow tools such as ServiceNow? Do you like to work in a dynamic environment with a lot of interaction on a day-to day basis with people all across the Comcast national footprint? If yes, we want to hear from you!

Job Responsibility:

  • Review the TPSA risk management process from start to finish while completing QA reviews for multiple risk assessments in parallel
  • Ensure processes are properly defined and formally documented for consistent execution
  • Validate compliance with Payment Card Industry (PCI) Data Security Standards (DSS), SOC reports and ISO27001 Certifications as needed during the Third Party security assessment
  • Document risk exceptions when necessary and ensure they obtain proper approval
  • Provide input to Legal on Third Party contracts as requested
  • Obtain an understanding of Comcast’s third party tools used to monitor Third Parties
  • Ensure Third Parties are properly decommissioned during the termination process to remove residual risk to Comcast
  • Create weekly, monthly and ad-hoc reports as needed to represent Key Performance and Risk Indicators as they apply to the Third Party Security Assurance program
  • Identify opportunities for process improvements to deliver increased operational efficiency in the process
  • Participate in projects with a Third Party Security Assurance component and ensure they are delivered on time
  • Participate in creating Business Requirements and User Acceptance Testing for enhancements to current tools such as ServiceNow
  • Respond to internal business partners questions and provide awareness information on roles and responsibilities
  • Review Third Party Provider contract revisions for compliance requirements
  • Write risk reports and work with vendors to implement remediation responses

Requirements:

  • Bachelor's Degree
  • 2-5 Years relevant work experience
  • Solid experience in reviewing SOC, ISO and PCI Reports
  • Exposure to Technical skills including audit, business analysis, change management, IT Risk Management, operation systems and data sources knowledge, performance metrics and reporting, technical problem resolution, project management, and vendor management
  • Must be able to communicate with all levels of management both at the bank and at the Third-Party Provider both written and verbally
  • Information Security - Knowledge of information security principles, practices, and technologies to evaluate the security measures of third parties effectively
  • Ability to work with 3rd parties – external communication, ability to influence and work with 3rd parties like vendors & partners (staff Aug., hardware, software, law firms, and other kind) both in USA and internationally
  • Communication and Collaboration – Solid communication skills to work with internal stakeholders and third parties to ensure risk management processes are understood
  • Adaptability and Learning - Given the evolving nature of risks, the ability to stay updated on emerging threats and adapt risk management strategies accordingly
  • Documentation and Record Management: Maintaining accurate records of assessments, contracts, and risk management activities for auditing and reporting purposes
  • Audit and Assessment Skills - Proficiency in conducting audits and vulnerability assessments and testing to evaluate the security posture of third parties
  • Data Analysis - Analytical skills to assess data and reports related to third party risk, enabling data-driven decision-making
  • Exposure and basic understanding of the following risk domains/technologies: o Database and application security o System/Access Administration o Infrastructure security / technologies o Network Architecture o Security Event Logging & Monitoring o Key Management/Tokenization o Database/Application/Network Layer Secure Protocols o Physical and Environmental Security o Secure Software/Code Development o Change Management o Vulnerability Management
What we offer:
  • Paid Time off
  • Physical Wellbeing benefits
  • Financial Wellbeing benefits
  • Emotional Wellbeing benefits
  • Life Events + Family Support benefits

Additional Information:

Job Posted:
March 03, 2026

Employment Type:
Fulltime
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Engineer 2 - Cyber Security Engineering

Software Cyber Security Engineer III

As a Software Cyber Security Engineer III with a strong focus on secure software...
Location
Location
United States , Stafford
Salary
Salary:
117700.00 - 170750.00 USD / Year
karlstorz.com Logo
KARL STORZ
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science or a related field. Master’s Degree preferred
  • Minimum of 5 years of experience with a bachelor’s degree or 3 years with a master’s degree in security-focused software engineering roles
  • Proficiency in Angular, C#, .NET, SQL Server, Web API, NodeJS, JavaScript
  • Expertise in secure coding practices, vulnerability management, and penetration testing
  • Strong knowledge of cryptography, encryption algorithms, and authentication techniques
  • Experience with security tools such as Burp Suite, OWASP ZAP, Nessus, Metasploit
  • Familiarity with cloud security and DevSecOps practices in AWS, Azure, or GCP
  • Strong understanding of product development life cycles and system-level design
Job Responsibility
Job Responsibility
  • Secure Software Development: Design, develop, and maintain secure software solutions by embedding security best practices across the Software Development Life Cycle (SDLC)
  • Vulnerability Assessment & Penetration Testing: Identify and mitigate security vulnerabilities through regular assessments, code reviews, and penetration testing
  • Security Protocols & Encryption: Implement and improve security protocols, encryption techniques, and authentication mechanisms to protect sensitive data
  • Incident Response & Investigation: Investigate security incidents, identify root causes, and implement corrective actions to prevent future threats
  • Collaboration & Mentorship: Partner with product managers, architects, and engineering teams to integrate security requirements into development processes. Mentor junior engineers in secure coding practices
  • Compliance & Standards: Ensure software compliance with internal and external security standards such as OWASP Top 10, SOC 2, and GDPR
  • Automation & Tooling: Develop and automate security tools and processes to enhance overall security posture
What we offer
What we offer
  • Medical / Dental / Vision including a state-of-the-art wellness program and pet insurance
  • 3 weeks vacation, 11 holidays plus paid sick time
  • Up to 8 weeks of 100% paid company parental leave
  • includes maternal/ paternal leave, adoption, and fostering of a child
  • 401(k) retirement savings plan providing a match of 60% of the employee’s first 6% contribution (up to IRS limits)
  • Section 125 Flexible Spending Accounts
  • Life, STD, LTD & LTC Insurance
  • Tuition pre-imbursement up to $5,250 per year
  • Fitness reimbursement of up to $200 annually
  • Fulltime
Read More
Arrow Right

Operations Support Engineer - Cyber Security

Provides Operational Support for all applications and infrastructure used within...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelors degree required, preferably in computer science, engineering or related area of study
  • Typically 4+ years of relevant experience
  • Minimum of 2 years of experience in support of at least two areas: End-user Support, Incident Management, Application Software or Database Support, HP-UX, Linux, VMWare & Microsoft platforms, Deployment of Security Patches/Hotfixes for Enterprise Applications, Troubleshooting of operating system and networking issues
  • Experience supporting Windows or Linux server technology, complex enterprise systems with geographically distributed users
  • Excellent troubleshooting techniques and analytical skills
  • Strong verbal and written communication skills
  • Ability to operate within a team independently and understand when to escalate issues to management
  • Advanced Cyber and IT security knowledge
  • Advanced understanding of Cyber and IT security risks, threats and prevention measures
  • Advanced secure system architecture and infrastructure design and development skills
Job Responsibility
Job Responsibility
  • Support applications managed by Cyber Security including end-user handling, problem/ticket resolution, escalations to engineering and IT, and performing application work on servers on behalf of engineering teams
  • Provide Change Management support to Cyber Security including submission of Requests for Change (RFCs), and modification and approvals of RFCs
  • Represent Cyber Security on Major Incidents involving Cyber Security applications
  • Achieve fast resolutions to MIs
  • Facilitate server access for Cyber Security employees through various processes and tools
  • Procure cloud servers for Cyber Security teams and resolve any issues with access or availability
  • Deploy and maintain state-of-the-art security applications and appliances
  • Write and maintain support and process documents (e.g. playbooks, install docs)
  • 24 x 7 On-call support on rotation basis (approximately one week every eight weeks)
  • Early shift work may be required, starting at 6 AM local time
What we offer
What we offer
  • Health & Wellbeing benefits
  • Personal & Professional Development programs
  • Unconditional Inclusion environment
  • Comprehensive suite of benefits supporting physical, financial and emotional wellbeing
  • Fulltime
Read More
Arrow Right

Senior Security Engineer, Blockchain

Join us in building the future of finance. Our mission is to democratize finance...
Location
Location
United States , Menlo Park
Salary
Salary:
187000.00 - 220000.00 USD / Year
robinhood.com Logo
Robinhood
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 4+ years of experience conducting cyber security assessments
  • 3+ years of experience engineering security solutions
  • 2+ years of experience specializing in assessing and securing blockchain applications and infrastructure
  • Deep understanding of blockchain technologies, protocols, exploits, and frameworks and associated security risks
  • Security domain knowledge across many cyber security disciplines
  • Outside-the-box thinking (adversary mentality)
  • Experience communicating effectively with technical/non-technical and executive-level audiences
  • Working knowledge of Go or Python for interacting with security tooling APIs
Job Responsibility
Job Responsibility
  • Perform proactive assessments covering infrastructure, secure and resilient architecture, data security (including privacy), identity and access management, application and product security for our Crypto business
  • Prioritize and drive the reduction of discovered security issues, vulnerabilities, and risks by partnering with the business to provide recommendations and solutions
  • Work with technical leads to develop strategies, programs, systems and tools that enhance our approach in keeping our products, data, and customers safe and secure
  • Collaborate with partner security teams to help safeguard Robinhood’s data and infrastructure
  • Provide technical expertise on Robinhood’s Security and Privacy solutions, policies, procedures, and standards
  • Stay up to date on the direction of emerging security, privacy, blockchain technologies, and industry trends
What we offer
What we offer
  • Performance driven compensation with multipliers for outsized impact, bonus programs, equity ownership, and 401(k) matching
  • 100% paid health insurance for employees with 90% coverage for dependents
  • Lifestyle wallet - a highly flexible benefits spending account for wellness, learning, and more
  • Employer-paid life & disability insurance, fertility benefits, and mental health benefits
  • Time off to recharge including company holidays, paid time off, sick time, parental leave, and more
  • Exceptional office experience with catered meals, events, and comfortable workspaces
  • Fulltime
Read More
Arrow Right

Cyber Security Specialist

Cybersecurity is an always-on field, so you’ll stay advised of all the latest tr...
Location
Location
Netherlands , Nieuwegein
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A completed HBO or WO education with a focus on IT or Cybersecurity
  • At least 2 years of experience as a cybersecurity specialist in the field of security engineering, security monitoring and/or incident response
  • Certifications such as GSEC, GCIH, Security+ or certifications in Azure (e.g. AZ900 and AZ500), Microsoft SC-200, AWS, Splunk or Elastic
  • Languages: Dutch (required) and English
Job Responsibility
Job Responsibility
  • Conduct threat analysis, incident response
  • Ensure assets meet security standards, maintain confidentiality, and contribute to safeguarding the systems
  • Implement new solutions to protect companies against incidents
  • Share knowledge with colleagues
What we offer
What we offer
  • Mobility options (including a company car), insurance coverage, meal vouchers, eco-cheques
  • Continuous learning opportunities through the Sopra Steria Academy
  • Opportunity to connect with fellow Sopra Steria colleagues at various team events
Read More
Arrow Right

Senior Security Engineer

The Senior Security Engineer will provide hands-on technical leadership within t...
Location
Location
United Kingdom , Leeds; Thame
Salary
Salary:
65000.00 - 75000.00 GBP / Year
pexa.co.uk Logo
PEXA UK
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proactive, can-do attitude to get things done quickly and efficiently
  • Strong collaboration and communication skills
  • Willingness to contribute ideas to the security programme
  • Demonstratable first-hand experience in achieving organisational adherence to security best practices
  • Experience in the practical protection of a remote working laptop estate and SaaS cloud solutions
  • Experience in identity and access management solutions
  • Experience in device business automation and updates
  • Experience in the security aspects of cloud web application hosting and defence measures like WAF
Job Responsibility
Job Responsibility
  • Maintenance and Operational Security: Ensure all security solutions remain operationally effective
  • Ensure technical teams timely patch applications, systems, software, and hardware
  • Maintain and audit secure configurations for devices, applications, and cloud environments
  • Access Control and Identity Management: Conduct regular user and privileged account reviews
  • Manage and monitor Privileged Identity Management (PIM) profiles and elevated access accounts
  • Coordinate with IT and HR for onboarding/offboarding
  • Tool, Infrastructure, and Encryption Management: Maintain and optimise security infrastructure and tools
  • Oversee encryption key and certificate management
  • Work with vendors and internal teams to ensure tools remain current
  • VPN, Network & Firewall Security: Design, configure, and maintain secure VPN and Zero-Trust network solutions
What we offer
What we offer
  • Your growth: We encourage you to hit your personal and professional learning and development goals with our tailored programs and tools
  • Your wellness: We care about your holistic wellbeing
  • Your work/life blend: We want to help you create your ideal work/life blend
  • Fulltime
Read More
Arrow Right

Application Security Engineer

We are expanding our team to include a Security Engineer to be 100% focused on o...
Location
Location
United States
Salary
Salary:
175000.00 USD / Year
corporatetools.com Logo
Corporate Tools
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Solid fundamentals in webapp and network pentesting (2+ years)
  • 4+ years of professional experience in Ruby on Rails or equivalent and Vue or a Frontend equivalent framework
  • Experience with Linux and cloud environment testing
  • Understanding of security issues for desktop, virtual, cloud services and network infrastructures
  • Working knowledge of information systems security standards/practices (e.g., access control and system hardening, system audit and log file monitoring, security policies, and incident handling)
  • Experience with secure network protocols and encryption of communications between networked hosts
  • Experience in IT systems and security policies, standards, industry trends, and techniques
  • Experience with assessing APT threats, Penetration Testing, Vulnerability Management, attack methodologies, forensics analysis techniques, malware analysis, attack surface comprehension, Cyber Threat Emulation operations, Cyber Advanced Threat Emulation Team operations and research, identification, and/or verification of new APT TTPs
  • Fundamental understanding of security knowledge of testing mobile, native applications, web applications, distributed and database systems
  • Must be detail-oriented and possess strong problem-solving skills and ability to analyze for potential future issues
Job Responsibility
Job Responsibility
  • Understand and safely use various open source penetration testing tools and when appropriate, emulating hacker tactics, techniques, procedures
  • Create security vulnerability reports for both technical and executive audiences
  • While in-between assessments, you will be expected to help our security engineers think through solutions to problems you find
  • Automate tasks and script at a basic level to enhance penetration testing processes
  • Passion for learning new technologies and processes, and contributing to refining existing capabilities
  • Communicate with stakeholders (technical and non-technical), both verbal and written
  • Stay up to date on 0 day exploits for tech stacks we use
What we offer
What we offer
  • 100% employer-paid medical, dental and vision for employees
  • Annual review with raise option
  • 22 days Paid Time Off accrued annually, and 4 holidays
  • After 3 years, PTO increases to 29 days. Employees transition to flexible time off after 5 years with the company—not accrued, not capped, take time off when you want
  • Paid Parental Leave
  • Up to 6% company matching 401(k) with no vesting period
  • Quarterly allowance
  • Open concept office with friendly coworkers
  • Creative environment where you can make a difference
  • Trail Mix Bar
  • Fulltime
Read More
Arrow Right

Exploitation Analyst

As cyber threats evolve and proliferate at a rapid pace, Altamira Technologies i...
Location
Location
United States , Annapolis Junction
Salary
Salary:
Not provided
altamiracorp.com Logo
Altamira Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Degree in Network Engineering, Systems Engineering, Information Technology, or related field (e.g., General Engineering, Computer Engineering, Electrical Engineering, Computer Science, Computer Forensics, Cyber Security, Software Engineering, Information Assurance, or Computer Security)
  • 18 semester hours of military training/coursework in networking, computer science, or cyber topics is equivalent to an associates degree
  • Relevant experience in computer or information systems design/development/analysis
  • Experience may include engineering hardware and/or software, programming, computer/network security, vulnerability analysis, penetration testing, computer forensics, information assurance, systems engineering, and/or network and systems administration
  • Completion of military training in a relevant area such as JCAC (Joint Cyber Analysis Course) will be considered towards the relevant experience/education requirement
  • In some cases, foreign language proficiency may also be used to satisfy experience requirements
  • recent Interagency Language Roundtable (ILR) scores are required to substantiate your proficiency level
  • Active TS/SCI with polygraph
  • Specific labor category determined by years of experience + educational degrees: Level 1: 2 years applicable experience with a bachelors degree, OR 4 years applicable experience with associate degree
  • Level 2: 2 years applicable experience with a PhD, OR 3 years applicable experience with a masters degree, OR 5 years applicable experience with a bachelors degree, OR 7 years applicable experience with an associate degree
Job Responsibility
Job Responsibility
  • Apply deep understanding of adversary networks, network defenses, and cyber network operational capabilities to develop exploitation plans and make operational adjustments as plans are executed
  • Be part of a team, working together with government, military, and contractor personnel to develop shared understandings of intelligence needs, mission relevance, and areas of expertise
  • Apply innate curiosity and analytical talent to form hypotheses, critically assess and choose analysis techniques, then query, merge, enrich, evaluate, and pivot within data to attain and share insights
  • Distill, document, contextualize and share findings--including any new tradecraft that you develop--with teammates, stakeholders, and intelligence consumers
Read More
Arrow Right

Exploitation Analyst

As cyber threats evolve and proliferate at a rapid pace, Altamira Technologies i...
Location
Location
United States , Annapolis Junction
Salary
Salary:
Not provided
altamiracorp.com Logo
Altamira Technologies
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active TS/SCI with polygraph
  • Degree in Network Engineering, Systems Engineering, Information Technology, or related field (e.g., General Engineering, Computer Engineering, Electrical Engineering, Computer Science, Computer Forensics, Cyber Security, Software Engineering, Information Assurance, or Computer Security)
  • Relevant experience in computer or information systems design/development/analysis
  • Experience may include engineering hardware and/or software, programming, computer/network security, vulnerability analysis, penetration testing, computer forensics, information assurance, systems engineering, and/or network and systems administration
  • 18 semester hours of military training/coursework in networking, computer science, or cyber topics is equivalent to an associates degree
  • Completion of military training in a relevant area such as JCAC (Joint Cyber Analysis Course) will be considered towards the relevant experience/education requirement
  • In some cases, foreign language proficiency may also be used to satisfy experience requirements
  • recent Interagency Language Roundtable (ILR) scores are required to substantiate your proficiency level
  • Level 1: 2 years applicable experience with a bachelors degree, OR 4 years applicable experience with associate degree
  • Level 2: 2 years applicable experience with a PhD, OR 3 years applicable experience with a masters degree, OR 5 years applicable experience with a bachelors degree, OR 7 years applicable experience with an associate degree
Job Responsibility
Job Responsibility
  • Apply deep understanding of adversary networks, network defenses, and cyber network operational capabilities to develop exploitation plans and make operational adjustments as plans are executed
  • Be part of a team, working together with government, military, and contractor personnel to develop shared understandings of intelligence needs, mission relevance, and areas of expertise
  • Apply innate curiosity and analytical talent to form hypotheses, critically assess and choose analysis techniques, then query, merge, enrich, evaluate, and pivot within data to attain and share insights
  • Distill, document, contextualize and share findings--including any new tradecraft that you develop--with teammates, stakeholders, and intelligence consumers
Read More
Arrow Right