11,794 Cybersecurity Jobs (September 2026) - Apply with AI

Explore cybersecurity jobs across areas like security engineering, cloud security, GRC, IAM, SOC operations, and application security in September 2026. You'll find a mix of remote, hybrid, and on-site roles, with openings that range from hands-on technical work to risk, compliance, and security program support. Create an account to explore the full feed and auto-apply with LiftmyCV AI Agent.

Live Status:
Sep 21, 2026
11,794+ Active Roles
Updated Daily
Take-Two Interactive Software, Inc.

Information Security Engineer

On-site
Take-Two Interactive Software, Inc.Toronto, Ontario, Canada

WHO WE ARE Take-Two Interactive Software, Inc. is a leading developer, publisher, and marketer of interactive entertainment for consumers around the globe. The Company develops and publishes products principally through Rockstar Games, 2K, Private Division, and Zynga. Our products are currently designed for console gaming systems, PC, and Mobile, including smartphones and tablets, and are delivered through physical retail, digital download, online platforms, and cloud streaming services. The Company’s common stock is publicly traded on NASDAQ under the symbol TTWO. While our offices (physical and virtual) are casual and inviting, we are deeply committed to our core tenets of creativity, innovation and efficiency, and individual and team development opportunities. Our industry and business are continually evolving and fast-paced, providing numerous opportunities to learn and hone your skills. We work hard, but we also like to have fun and believe that we provide a great place to come to work each day to pursue your passions. THE CHALLENGE Take-Two Security's goal is to empower our label divisions to securely develop triple-A game content. The Information Security Engineer will analyze and implement security systems across the Take-Two technology stack. You will collaborate with Infrastructure, Security Engineering Ops, and Architecture teams to build, maintain, and improve existing security systems across Endpoint, Network, Cloud and Data Security, SOC applications. This includes developing new tools as needed. You will assess network security firewall change requests internally and across subsidiaries to ensure secure connectivity. You will also regularly work with Security colleagues in the studio teams to address their priorities alongside our own. WHAT YOU’LL TAKE ON Enhance our Information Security posture through EDR/DLD/CSPM/NSM management for enterprise endpoint computing, virtualization, cloud and network security. Identify misconfigurations or security control gaps, manage vulnerabilities, and automate endpoint asset discovery across the enterprise network and cloud, working with Security IT teams. Review and respond to events using Security monitoring systems and process technical change requests for Infrastructure, Engineering, and Ops. Ensure T2's compliance within Security applications with regular KPI or Risk Indicators. Possible participation in incident response with on-call availability. Map system defenses and monitoring capabilities against threat frameworks like MITRE ATT CK and OWASP to build defenses for Take-Two assets. Use project tools for objective tracking and accurate project scoping. Contribute to technical writing for T2 Information Security Policies, Standards, and technical project documentation, adhering to frameworks (e.g., NIST, CIS, ISO 27001). Periodically contribute to the T2 Risk management program by reviewing endpoint, network, cloud asset configurations, patching, and vulnerability scan results. Develop programmatic automations and scripting for Security system updates. Contribute to AI Security program analysis and periodic control review. WHAT YOU BRING Service-oriented attitude and tempered ego. BA/BS or equivalent experience in computer science or related field. 3-5 years in a Security Analyst, Security Engineering, or Network Security Engineering environment. Experience with endpoint detection response platforms, and other enterprise security infrastructure platforms, SIEM, SOAR, DLD/P. Knowledge of Security threat frameworks like MITRE ATT CK and OWASP. Experience with programming languages (Python, C, C++, C#, PowerShell, VBScript) for programmatic automation. Proficiency in analyzing and understanding security concepts relevant to enterprise security. Experience in a result-oriented, retail media driven environment with key result timelines. WHAT WE OFFER YOU Great Company Culture . Ranked as one of the most creative and innovative places to work, creativity, innovation, efficiency, diversity and philanthropy are among the core tenets of our organization and are integral drivers of our continued success. Growth . As a global entertainment company, we pride ourselves on creating environments where employees are encouraged to be themselves, inquisitive, collaborative and to grow within and around the company. Work Hard, Play Hard. Our employees bond, blow-off steam, and flex some creative muscles – through corporate boot camp classes, company parties, game release events, monthly socials, and team challenges. Benefits . Medical, dental, vision, pension plan, employee stock purchase plan, commuter benefits, in-house wellness program, broad learning development opportunities, a charitable giving platform with company match and more! Perks. Fitness allowance, employee discount programs, free games events, stocked pantries and the ability to earn up to $500+ per year for taking care of yourself and more. The pay range for this position in Ontario at the start of employment is expected to be between $71,400 and $105,660 per year. However, base pay offered is based on market location, and may vary further depending on individualized factors for job candidates, such as job-related knowledge, skills, experience, and other objective business considerations. Subject to those same considerations, the total compensation package for this position may also include other elements, including a bonus and/or equity awards and eligibility to participate in our 401(K) plan and Employee Stock Purchase Program. Regular, full-time employees are also eligible for a range of benefits at the Company, including: medical, dental, vision, and basic life insurance coverage; 14 paid holidays per calendar year; paid vacation time per calendar year (ranging from 15 to 25 days) or eligibility to participate in the Company’s discretionary time off program; up to 10 paid sick days per calendar year; paid parental and compassionate leave; wellbeing programs for mental health and other wellness support; family planning support through Maven; commuter benefits; and reimbursements for fitness-related expenses. The use of Artificial Intelligence is not being used to screen candidates. The position is for an existing vacancy. As an equal opportunity employer, Take-Two Interactive Software, Inc. (“Take-Two”) is committed to fostering and celebrating the diverse thoughts, cultures, and backgrounds of its talent, partners, and communities throughout its organization. Consistent with this commitment, Take-Two does not discriminate or retaliate against any employee or job applicant because of their race, color, religion, sex (including pregnancy, sexual orientation, and gender identity), national origin, age, disability, and genetic information (including family medical history), or on the basis of any other trait protected by applicable law. If you need to report a concern or have questions regarding Take-Two’s equal opportunity commitment, please contact [email protected] Please be aware that Take-Two does not conduct job interviews or make job offers over third-party messaging apps such as Telegram, WhatsApp, or others. Take-Two also does not engage in any financial exchanges during the recruitment or onboarding process, and the Company will never ask a candidate for their personal or financial information over an app or other unofficial chat channel. Any attempt to do so may be the result of a scam or phishing exercise. Take-Two’s in-house recruitment team will only contact individuals through their official Company email addresses (i.e., via a take2games.com email domain). If you need to report an issue or otherwise have questions, please contact [email protected] We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

Posted 6 days ago

RG

Information Security Engineer

On-site
Revantage Global Services India Private LimitedBengaluru

Position Summary Reporting to the CISO, the Information Security Engineer is responsible for implementing, maintaining, and continuously improving enterprise cybersecurity technologies that protect the organization's systems, applications, cloud environments, and data. This role works closely with infrastructure, cloud, networking, application development, and security operations teams to identify risk, implement security controls, respond to security events, and improve the organization's overall security posture. The successful candidate combines technical expertise with strong analytical skills and a collaborative mindset to help reduce cyber risk while enabling business innovation. Work Hours: US CT with rotational on call US nights and weekends, and US India holidays Essential Responsibilities · Design, implement, administer, and support enterprise security technologies across cloud, on-premises, and SaaS environments. · Monitor security posture and proactively identify risks, vulnerabilities, and misconfigurations. · Conduct vulnerability assessments and coordinate remediation activities across technology teams. · Support security incident detection, investigation, containment, and recovery activities. · Assist in implementation and administration of Identity and Access Management (IAM), MFA, Privileged Access Management (PAM), and Zero Trust initiatives. · Develop security automation using scripting and orchestration tools to improve operational efficiency. · Implement security hardening standards for servers, workstations, cloud services, and enterprise applications. · Participate in architecture reviews and technology projects to ensure security requirements are incorporated early in the design process. · Support regulatory compliance initiatives including NIST CSF, CIS Controls, PCI DSS, HIPAA, GDPR, GLBA, and other applicable standards. · Develop documentation including standards, procedures, diagrams, and operational runbooks. · Evaluate emerging threats and recommend security improvements. · Participate in incident response activities, including after-hours, when required. · Participate in a rotating holiday coverage schedule, including Indian holidays, to ensure uninterrupted support for a U.S.-based enterprise. · Provide support outside normal business hours as operational needs dictate, including incident response and critical production events. · Support a 24×7 operational environment through scheduled rotation, on-call responsibilities, and business continuity requirements. · Perform other duties as assigned. Competencies · Strong understanding of enterprise cybersecurity principles and best practices. · Experience with Microsoft Azure, AWS, or Google Cloud security services. · Knowledge of endpoint, network, identity, email, and cloud security technologies. · Familiarity with SIEM, EDR/XDR, vulnerability management, and security monitoring platforms. · Working knowledge of scripting languages such as PowerShell, Python, or Bash. · Understanding of Identity and Access Management concepts including SSO, OAuth, OpenID Connect, and Active Directory. · Strong troubleshooting and analytical skills. · Excellent written and verbal communication skills. · Ability to collaborate effectively across technical and business teams. · Proficient in the best practices for the secure use of Generative AI tools including ChatGPT, Claude, Microsoft Copilot, Google Gemini, and similar enterprise AI platforms. · Experience designing, implementing, and maintaining security controls for Artificial Intelligence (AI) and Generative AI technologies, including governance, data protection, model security, prompt and output security, monitoring, risk management, and compliance with organizational policies and applicable regulatory requirements. Qualifications Education Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or related field, or equivalent professional experience. Experience · 3–6 years of hands-on cybersecurity or information security engineering experience. · Experience securing Windows, Linux, cloud, and SaaS environments. · Experience supporting enterprise security technologies. · Familiarity with cloud security architecture and enterprise infrastructure. · 2+ years hands-on administrator-level experience with enterprise security tools including: · MS Defender, · CrowdStrike's Falcon MDR, ITP, Shield, Recon+, Cloud, and NG SIEM, · Wiz, · Zscaler ZIA, ZPA, ZDX, ZTA, · Proofpoint TAP, DLP, · And extracting reports/metrics from all these tools Certifications · CompTIA SecAI+ · CrowdStrike Certified SIEM Engineer · CrowdStrike Certified Falcon Administrator · CrowdStrike Certified Falcon Responder · CrowdStrike Certified Falcon Hunter · Zscaler Digital Transformation Engineer · Zscaler Digital Experience Administrator · Azure Security Engineer Associate · Certified Cloud Security Professional Job Applicant Privacy Notice EEO Statement The Company is an equal opportunity employer. In accordance with applicable law, we prohibit discrimination against any applicant, employee, or other covered person based on any legally recognized basis, including, but not limited to: veteran status, uniformed servicemember status, race, color, caste, immigration status, religion, religious creed (including religious dress and grooming practices), sex, gender, gender expression, gender identity, marital status, sexual orientation, pregnancy (including childbirth, lactation or related medical conditions), age, national origin or ancestry, citizenship, physical or mental disability, genetic information (including testing and characteristics), protected leave status, domestic violence victim status, or any other consideration protected by federal, state or local law. We are committed to providing reasonable accommodations, if you need an accommodation to complete the application process, please email [email protected]

Posted 1 week ago

IMC

Information Security Engineer

On-site
IMCMumbai, India

IMC Trading seeks an Information Security Engineer to enhance its Security Operations Centre. The role involves collaboration with multiple departments to mitigate cyber risks while supporting regulatory duties in India. Responsibilities include analyzing security incidents, improving technical controls, and developing incident response frameworks. Candidates should have a genuine passion for cybersecurity, prior SOC experience, and familiarity with Indian regulatory requirements. In this role, there is ample opportunity to expand your knowledge and innovate security strategies.

Posted 1 week ago

WN

Information Security Engineer

On-site
Westpac New Zealand LtdWestpac on Takutai Square

As an Information Security Engineer at Westpac, you will be instrumental in safeguarding the technology environment. Your responsibilities include identifying vulnerabilities, assessing risks, enhancing cybersecurity tools, and responding to security threats. This hands-on role focuses on platform upgrades and collaboration with teams to elevate Westpac's cybersecurity maturity. You will bring experience in cybersecurity, manage various security tools, and understand networking technologies and standards. Additionally, at Westpac, you will enjoy supportive work perks and be part of a diverse organization committed to growth and recognition.

Posted 1 week ago

P

Information Security Engineer

On-site
pgMUMBAI GENERAL OFFICE

Job Location MUMBAI GENERAL OFFICE Job Description P G was founded over 180 years ago as a simple soap and candle company. Today, we're the world’s largest consumer goods company and home to iconic, trusted brands that make life a little bit easier in small but meaningful ways. We've spanned three centuries thanks to three simple ideas: leadership, innovation and citizenship. The insight, innovation and passion of hardworking teams have helped us grow into a global company that is governed responsibly and ethically, that is open and visible, and that supports good causes and protects the environment. This is a place where you can be proud to work and do something that matters. Dedication from Us: You'll be at the core of breakthrough innovations, be given exciting assignments, lead initiatives, and take ownership and responsibility, in creative workspaces where new insights thrive. All the while, you'll receive outstanding training to help you become a leader in your field. It is not just about what you'll do, but how you'll feel: encouraged, valued, purposeful, challenged, heard, and inspired. What we Offer: Continuous mentorship – you will collaborate with peers and receive both formal training as well as day-to-day mentoring from your manager dynamic and encouraging work environment– employees are at the centre, we value every individual and support initiative, promoting agility and work/life balance. Roles Responsibilities: Program Governance: Own the end-to-end Infosec Data Privacy program — run the Governance Board and fortnightly project reviews, maintain the annual action plan, and drive the Privacy Council / Champions / RoPA Owner operating rhythm. Data Privacy Compliance: Own the RoPA lifecycle (new reviews, monthly attestation, approvals, migration) and drive regulatory compliance, notably DPDP, coordinating SPOCs across global systems. Mock Audits (Infosec Privacy): Plan and run mock audits per internal guidance — sampling (~30% of RoPAs), reviewing all SCOPE elements, driving closures, and supporting 2LOD/GIA audit readiness. Quality Continuous Assurance: Own the Infosec Data Privacy Scorecard (App Reg, BIA, iRisk, RoPA, Pen Test, WIZ, VSS, Access Mgmt), track gaps, drive root-cause analysis and remediation. Stakeholder Management Reporting: Present progress, gaps, and risks to ILT and leadership; partner with 2LOD, Legal, Purchases, and BU SPOCs; manage TPRM governance for Infosec Privacy. About us We produce globally recognized brands, and we grow the best business leaders in the industry. With a portfolio of trusted brands as diverse as ours, it is paramount our leaders are able to lead with courage the vast array of brands, categories and functions. We serve consumers around the world with one of the strongest portfolios of trusted, quality, leadership brands, including Always®, Ariel®, Gillette®, Head Shoulders®, Herbal Essences®, Oral-B®, Pampers®, Pantene®, Tampax® and more. Our community includes operations in approximately 70 countries worldwide. Visit http://www.pg.com to know more. We are an equal opportunity employer and value diversity at our company. We do not discriminate against individuals on the basis of race, color, gender, age, national origin, religion, sexual orientation, gender identity or expression, marital status, citizenship, disability, HIV/AIDS status, or any other legally protected factor. At P G, the hiring journey is personalized every step of the way, thereby ensuring equal opportunities for all, with a strong foundation of Ethics Corporate Responsibility guiding everything we do. All the available job opportunities are posted either on our website - pgcareers.com, or on our official social media pages, for the convenience of prospective candidates, and do not require them to pay any kind of fees towards their application.” Job Qualifications Strong program/project management — governance drum-beats, action tracking, and executive reporting. Deep knowledge of Data Privacy compliance (RoPA, DPDP, consent/notice, retention, DSR) and Information Security controls. Experience running audits/mock audits and building compliance scorecards and quality dashboards. Executive-ready communication; ability to distill complex compliance data into crisp leadership updates. Certifications like CISSP / CISM a strong plus. Job Schedule Full time Job Number R000158612 Job Segmentation Experienced Professionals

Posted 1 week ago

AJ Bell

Information Security Engineer

Hybrid
AJ Bell., Manchester or London - Hybrid, United Kingdom

AJ Bell is seeking an Information Security Engineer to work closely with the Chief Information Security Officer. This role involves hands-on contributions to designing and enhancing security controls, systems, and infrastructure. You will play a vital role in ensuring the organization can effectively detect and respond to threats while enabling secure business operations. Ideal candidates will have experience in implementing enterprise security platforms and knowledge of risk management tools.

Posted 1 week ago

Wells Fargo International Solutions Private LTD

Information Security Engineer

On-site
Wells Fargo International Solutions Private LTDBengaluru, India

About this role: Wells Fargo is seeking a Information Security Engineer. In this role, you will: Participate in security consulting on small projects for internal clients to ensure uniformity with corporate information, security policy, and standards Track or remediate vulnerabilities and security issues Review and correlate security logs Assist with the design, documentation, testing, maintenance, and troubleshooting of security solutions related to networking, cryptography, cloud, authentication and directory services, email, internet, applications, and endpoint security Provide technical support for security related issues Utilize industry leading security solutions and best practices to implement one or more components of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity Collaborate and consult with peers, colleagues and managers to resolve issues and achieve goals Interface with more experienced technologists Required Qualifications: 2+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education Desired Qualifications: 2+ years of platform/technology/information security experience within complex corporate IT environments and with enterprise application integrations. 2 years of experience in migration and implementation of IAM in any cloud environment. Strong understanding of identity management account and entitlement lifecycle, federated identity management, onboarding and off-boarding, privilege accumulation, role-based access control, and authentication, authorization, and accounting Strong foundation on Azure / GCP Cloud Platform and understanding of the Azure / Google Cloud Infrastructure components Sound knowledge of DevOps model and implementation with exposure to working with CI/CD pipeline Exposure to Cloud computing (AWS, Google cloud, Azure, OpenStack), Cloud concepts best practices, Expertise with IPsec, VPN, Load Balancing, RRAS, encryption keys, Routing Protocols, SSH, cloud security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies Experience in web based IAM related protocols such as SAML, SPML, XACML, SCIM, OpenID and OAuth. Federation concepts and technology such as ADFS and Oracle IAM products. Experience with Directories, SSO, Federation, Delegated administration, API gateways, and SOA services Experience working with Agile or other Rapid Application Development methodologies Has leadership skills. Excellent verbal, written, and interpersonal communication skills. Good negotiation, conflict resolution and decision making skills. Strong problem solving and analytical skills with high attention to detail and accuracy Work Location - Bangalore / Hyderabad Job Expectations Design and implement cloud infrastructure using Terraform across GCP (preferred), Azure, or AWS. Deliver scalable and secure cloud solutions, with primary focus on GCP environments. Develop automation scripts using Python and Shell/PowerShell scripting. Implement and manage IAM policies, access controls, and security best practices across cloud platforms (GCP/Azure/AWS). Support multi-cloud environments, adapting to project requirements across GCP, Azure, or AWS. Collaborate with DevOps teams to integrate deployments into CI/CD pipelines. Ensure compliance with security standards, governance policies, and auditing requirements. Troubleshoot and optimize cloud infrastructure for performance and cost. Contribute to cloud architecture, design reviews, and best practices. Support incident response and cloud security investigations when required. Support in Implementation of secure IAM cloud process for all IAM users including policy creation, MFA, audit, and incident response. Support and manage the lifecycle of the cloud Support and manage the successful technical delivery of IAM in the Cloud and related services Become the subject-matter expertise across all IAM topics as it relates to the cloud Participate in Identity and Access Management enterprise governance processes and drive IAM standards adoption Provide a high level of customer service through comprehensive communication Observe project delivery protocol and ensure timely escalation of status, issues, and risks Review and management of technical security roadmaps related to cloud security and IAM within a cloud security context Supports the application and tool rationalization efforts to consolidate to strategic platform where possible and minimize redundancy. Assists customers in identifying security solutions to incorporate potential Cloud/3P SaaS access Ensures compliance with corporate security policies and adherence to best practices. Assists in computer security incident response activities and the technical investigations of security-related incidents Posting End Date: 15 Sep 2026 *Job posting may come down early due to volume of applicants. We Value Equal Opportunity Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic. Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit’s risk appetite and all risk and compliance program requirements. Candidates applying to job openings posted in Canada: Applications for employment are encouraged from all qualified candidates, including women, persons with disabilities, aboriginal peoples and visible minorities. Accommodation for applicants with disabilities is available upon request in connection with the recruitment process. Applicants with Disabilities To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo . Drug and Alcohol Policy Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more. Wells Fargo Recruitment and Hiring Requirements: a. Third-Party recordings are prohibited unless authorized by Wells Fargo. b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.

Posted 2 weeks ago

J

Information Security Engineer

On-site
jciSao Joao da Madeira-Sao Joao da Madeira-Portugal

What you will do At Johnson Controls, we’re seeking a skilled Information Security Engineer to join our Global Information Security team. In this role, you’ll collaborate with cybersecurity, IT, and business teams to design and implement robust security architectures, standards, and controls that protect our systems and data . You’ll play a key role in ensuring compliance, assessing security posture, and guiding secure technology deployments across the enterprise. How you will do it Design Architecture Develop and implement enterprise-wide security reference architectures. Ensure alignment with global security standards and policies. Approve final designs and validate builds for compliance. Follow the Security Posture Assessment process, which involves research, validation, and evaluation of all new initiatives, with phase gates reviews presented to all stakeholders during the process Security Assessment Compliance Conduct security posture assessments for new initiatives. Identify and mitigate risks in third-party solutions. Ensure adherence to regulatory and internal security requirements. Collaboration Consulting Partner with service management and stakeholders to gather requirements. Act as a trusted advisor to business units and IT teams. Provide expert input on security standards, roadmaps, and infrastructure. Documentation Communication Create high-quality technical documentation, white papers, and presentations. Communicate complex security concepts clearly to technical and non-technical audiences. Continuous Improvement Stay current on emerging threats, vulnerabilities, and technologies. Recommend improvements in network, identity, and infrastructure security. What we look for Required 3+ years of experience in information security, including deploying security solutions, security of application in corporate environment. Strong understanding of attacker techniques, threat landscapes, vulnerability management, and security monitoring. Broad technical expertise in: Endpoint and platform security (Windows, Linux, mobile) Identity and access management (IAM), PKI, encryption/tokenization, data protection Cloud security (AWS, Azure, GCP) Network security (web proxies, reverse proxies, load balancing, IDS/IPS, firewall, wireless, and remote connectivity, TCP/IP protocol, and remote access security techniques/products) Excellent communication skills—both written and verbal. Ability to work independently and collaboratively in a global team. High integrity and discretion in handling confidential matters. Preferred Bachelor’s degree in Computer Science, Engineering, or a related field (or equivalent experience). Familiarity with compliance frameworks (PCI-DSS, HIPAA, FISMA, SOX). Overview of NIST standards and security architecture frameworks (e.g., SABSA, TOGAF). Experience in security operations or incident analysis. Certifications Certified Information Systems Security Professional (CISSP) Certified Information Systems Security Professional - Information Systems Security Architecture Professional (CISSP-ISSAP) Certified Cloud Security Professional (CCSP) Certified Information Security Manager (CISM) Certified Information Systems Auditor (CISA) Certified Ethical Hacker (CEH) Cisco Certified Network Associate Security (CCNA Security) Cisco Certified Network Associate (CCNA) Cisco Certified Network Professional Security (CCNP Security) Cisco Certified Network Professional (CCNP) Server Platform Certifications (Microsoft, Linux) About Us Johnson Controls, a global leader in thermal management, mission-critical building systems, energy efficiency, and decarbonization, helps customers use energy more productively, reduce carbon emissions, and operate with the precision and resilience required in rapidly expanding industries such as data centers, healthcare, pharmaceuticals, advanced manufacturing, and higher education. For more than 140 years, Johnson Controls has delivered performance where it really matters. Backed by advanced technology, lifecycle services and an industry-leading field organization, we elevate customer performance, turn goals into real-world results and help move society forward. #LI-BB1 #LI-Hybrid

Posted 2 weeks ago

IEL Integrity Express Logistics

Information Security Engineer

On-site
IEL Integrity Express LogisticsCincinnati

As the Information Security Engineer at Integrity, you are responsible for protecting Integrity Express Logistics’ systems, networks, applications, and data by developing, implementing, and maintaining effective information security controls and practices. This role combines hands-on security engineering with risk assessment, vulnerability management, incident response, and continuous improvement of the Company’s information security capabilities. The Information Security Engineer partners closely with Technology, Engineering, Infrastructure, and other business teams to identify security risks, implement appropriate safeguards, and support secure technology operations. This position monitors the evolving threat landscape, evaluates vulnerabilities, responds to security incidents, and helps ensure security considerations are incorporated into technology solutions and business processes. This position reports to the Senior Vice President, Technology Solutions. ** Must be able to work onsite in Cincinnati, OH on a weekly basis or as business needs require. Core Responsibilities Security Engineering, Infrastructure, Controls Design, implement, configure, maintain, and continuously improve security technologies, infrastructure, and controls that protect the Company's applications, endpoints, networks, systems, and data. Configure, administer, and troubleshoot security tools and technologies, including endpoint protection, firewalls, authentication and access controls, intrusion detection and prevention systems, content filtering, and network monitoring solutions. Partner with Technology and Engineering teams to support secure system configurations, architectures, and implementations. Evaluate and recommend enhancements to security tools, controls, and technologies to strengthen the Company's security posture. Vulnerability Management, Security Testing, Risk Assessment Conduct security risk assessments and vulnerability evaluations to identify potential weaknesses, threats, and areas of exposure. Perform and/or coordinate internal and external vulnerability scans, analyze findings, prioritize risks, and drive remediation efforts with appropriate stakeholders. Conduct or coordinate security testing activities, including vulnerability scanning, phishing simulations, configuration reviews, and other control effectiveness assessments. Track remediation progress and provide recommendations to reduce risk and improve control effectiveness. Security Monitoring, Threat Management, Incident Response Monitor security systems, logs, and alerts to identify suspicious activity, potential security incidents, and emerging threats. Investigate security events, document findings, and coordinate incident response, containment, recovery, and remediation activities. Maintain awareness of evolving cybersecurity threats, attack techniques, vulnerabilities, and industry trends, evaluating potential impacts to the Company. Recommend and implement improvements to detection, response, and monitoring capabilities to reduce future risk. Security Program, Application Security, Advisory Support Support the development, implementation, maintenance, and continuous improvement of the Company's information security program, policies, standards, procedures, and technical controls. Partner with Engineering, Infrastructure, and Technology teams to integrate security considerations into the design, implementation, and operation of systems and applications. Provide guidance and recommendations related to operating systems, networks, databases, web applications, cloud environments, and other technology platforms. Assist in translating security requirements into practical and scalable solutions that support business and technology objectives. Security Awareness, Documentation, Continuous Improvement Partner with stakeholders to develop and deliver security awareness initiatives, training programs, and employee education related to cybersecurity best practices. Provide guidance on information security responsibilities, phishing awareness, data protection, and emerging security risks. Maintain accurate documentation of security configurations, incidents, risks, controls, assessments, and remediation activities. Identify opportunities to improve security processes, operational effectiveness, and the overall maturity of the Company's security program. Perform other duties and responsibilities as assigned. Knowledge/Skills/Experience Required Qualifications Bachelor’s degree in Computer Science, Information Security, Information Technology, Cybersecurity, or a related field, or an equivalent combination of education and relevant experience. Minimum of 5 years of experience in information security, cybersecurity engineering, security operations, or a related technology security role. Demonstrated experience implementing, operating, and maintaining enterprise security technologies, systems, and controls. Experience identifying, assessing, prioritizing, and remediating security vulnerabilities and technology risks. Working knowledge of network, endpoint, operating system, application, database, and infrastructure security principles. Experience with security technologies such as endpoint protection, firewalls, identity and authentication solutions, intrusion detection/prevention, content filtering, vulnerability management, and network or security monitoring tools. Knowledge of cybersecurity principles, security protocols, access controls, vulnerability management, and incident response practices. Experience investigating and responding to security incidents and documenting findings and corrective actions. Ability to analyze complex technical information, identify potential risks, and develop practical solutions. Strong analytical, technical, and problem-solving skills. Strong written and verbal communication skills, including the ability to communicate security risks and recommendations to both technical and non-technical stakeholders. Ability to work effectively across Technology, Engineering, Infrastructure, and business teams while managing multiple priorities. Preferred Qualifications Experience supporting or helping mature an enterprise information security program. Experience with cloud security, identity and access management, security information and event management (SIEM), vulnerability management, and endpoint detection and response (EDR) technologies. Familiarity with recognized cybersecurity frameworks and standards, such as NIST Cybersecurity Framework, CIS Controls, or similar industry frameworks. Relevant professional certification such as CISSP, Security+, GIAC, CISM, or another information security certification. Experience working in an environment where security controls must balance operational requirements, business needs, and technology risk. Physical Requirements Ability to sit or stand at a desk for prolonged periods of time. Ability to lift up to 15 lbs. This position operates primarily in a remote work environment. Occasional work outside of normal business hours may be required to support software releases, production issues, or other critical technology initiatives. Limited travel may also be necessary for meetings, training, and company-sponsored events. We are committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at [email protected] or call 1-888-374-5138 ext. 4. US Based Employees - At IEL, we are committed to providing equal employment opportunities for all persons, regardless of age, ancestry, color, religious creed (including religious dress or grooming practice), family and medical care leave status, disability (mental and physical) including HIV and AIDS, marital status, medical condition (including cancer and genetic characteristics), genetic information, military status, protected veteran status, status as a victim of domestic violence or stalking, familiar status, national origin, race, sex, pregnancy, childbirth, breastfeeding or related medical condition, gender identity or expression, sexual orientation and or any other category protected by law.

Posted 2 weeks ago

AC

Information Security Engineer

On-site
Appian CorporationMcLean, Virginia

Here at Appian, our values of Intensity and Excellence define who we are. We set high standards and live up to them, ensuring that everything we do is done with care and quality. We approach every challenge with ambition and commitment, holding ourselves and each other accountable to achieve the best results. When you join Appian, you’ll be part of a passionate team dedicated to accomplishing hard things, together. Information Security Engineer I Are you ready to build the security systems that protect a global enterprise automation platform from modern cyber threats? As a Security Engineer, you will design and implement advanced detection technologies to shield our critical infrastructure. Location: McLean, VA | Work Model: On-site (5 days/week) About the Team The Appian Information Security department continuously evaluates the global threat landscape to protect Appian operations and service offerings. Our mission is to build, monitor, and scale robust security tools and processes that shield critical corporate and customer assets from emerging threats, international security concerns, and vulnerabilities, ensuring our AI-Powered Process Automation platform remains resilient and secure. The Opportunity At Appian, we believe our greatest innovations spring from in-person collaboration. Joining our team at our McLean headquarters means you will work alongside elite security architects in a high-velocity environment that prioritizes your professional growth. This role offers an unparalleled launchpad to transition academic knowledge into real-world impact, giving you direct ownership over intrusion detection capabilities and cloud-based defense strategies for our Enterprise-Grade Orchestration ecosystem. What You’ll Do Build and scale internal security systems to enable Appian InfoSec to quickly adapt, monitor, and defend against modern attacker techniques. Analyze and investigate complex security-related data pulled from a wide range of security products, logging devices, and endpoint monitors. Design and implement enhanced detection technologies across various Appian systems to proactively surface potential anomalies and vulnerabilities. Conduct comprehensive risk analysis on infrastructure assets and provide actionable recommendations for remediation or mitigation. Execute dedicated security engineering projects that directly improve Appian’s overarching intrusion detection, scanning, testing, and response capabilities. Required Qualifications Education: Minimum of a Bachelor’s degree in Computer Science, Cyber Security, Computer Engineering, or a closely related STEM field of study. Experience: Progressive internship, co-op, or academic project experience centered on cyber security engineering or threat analysis. Technical Mastery: Hands-on programming or scripting experience in one or more languages, specifically Java , Python , or C/C++ . Core Fundamentals: A strong, foundational understanding of network fundamentals and internet protocols, including TCP/IP networking, DNS , and DHCP . Preferred Qualifications Familiarity with administration and security best practices for both Windows and Linux/Unix operating systems. Fundamental knowledge of cloud-based infrastructures (SaaS, PaaS, IaaS) and modern network security architectures. We value experience with enterprise platforms such as Salesforce or ServiceNow , as these skills translate well into our Enterprise-Grade Orchestration environment. Tools and Resources Training and Development: During onboarding, we focus on equipping new hires with the skills and knowledge for success through department-specific training. Continuous learning is a central focus at Appian, with dedicated mentorship and the First-Friend program being widely utilized resources for new hires. Growth Opportunities: Appian provides a diverse array of growth and development opportunities, including our leadership program tailored for new and aspiring managers, a comprehensive library of specialized department training through Appian University, skills based training, and tuition reimbursement for those aiming to advance their education. This commitment ensures that employees have access to a holistic range of development opportunities. Community: We’ll immerse you into our community rooted in respect starting on day one. Appian fosters inclusivity through our 8 employee-led affinity groups . These groups help employees build stronger internal and external networks by planning social, educational, and outreach activities to connect with Appianites and larger initiatives throughout the company. Benefits Appian offers a comprehensive benefits package designed to support your health, wellbeing, and financial future. Benefits may include health coverage, Employee Assistance Program (EAP) with free mental health support, life and disability insurance, an Employee Stock Purchase Program (ESPP), a retirement/pension plan, wellness dollars, tuition reimbursement, family-forming benefits and more. Benefits vary by country—please ask your Talent Acquisition contact for details specific to the location you are applying to. About Appian Appian provides AI automation for mission-critical work. We automate complex processes in large enterprises and governments. Our platform is known for its unique reliability and scale. We’ve been automating processes for more than 25 years and understand enterprise operations like no one else. For more information, visit appian.com . [Nasdaq: APPN] Follow Appian: LinkedIn , Youtube , Instagram , Facebook Appian is an equal opportunity employer that strives to attract and retain the best talent. All qualified applicants will receive consideration for employment without regard to any characteristic protected by applicable federal, state, or local law. Appian provides reasonable accommodations to applicants in accordance with all applicable laws. If you need a reasonable accommodation for any part of the employment process, please contact us by email at [email protected] . Please note that only inquiries concerning a request for reasonable accommodation will be responded to from this email address. Appian's Applicant Candidate Privacy Notice

Posted 3 weeks ago

Keyfactor, Inc.

Information Security Engineer

Remote
Keyfactor, Inc.United States; Remote (Cleveland or Atlanta preferred)

About Keyfactor Our mission is to securely connect the world: humans, machines, and AI. Keyfactor is the leader in trust infrastructure for AI and machines, helping the world's largest enterprises and government agencies take control of the cryptographic identities that safeguard every digital interaction. Behind the platform is a global team of people who care deeply about the work and each other. We move fast, think big, and show up for one another every day. If you're looking for work that matters and a team that brings out your best, we hope you'll trust your future with Keyfactor! Title: Information Security Engineer Location: USA; Remote ( Atlanta or Cleveland preferred) Experience: Mid-Level Job Function : Corporate IT Employment Type : Full-Time Industry: Computer Network Security About the position We are seeking an experienced Information Security Engineer with a strong background in implementing and managing general information security frameworks, including ISO 27001:2022 and SOC 2 Type II. This role involves designing, maintaining, and improving our security infrastructure to ensure compliance with regulatory standards and support continuous monitoring efforts. The ideal candidate will play a key role in safeguarding the organization’s data and infrastructure while driving adherence to evolving security best practices. Responsibilities Evaluate the security posture of systems, platforms, and cloud environments, establish appropriate security baselines, and drive implementation and hardening to close identified gaps. Quickly develop proficiency in new SIEM, EDR, and other security platforms as the environment evolves; configure, tune, and integrate these tools with SaaS applications and diverse data sources to expand visibility and detection coverage. Evaluate and optimize security playbooks, runbooks, and processes based on lessons learned, tooling changes, and evolving threats, ensuring documentation and workflows keep pace with the organization's security operations maturity. Experience conducting vulnerability assessments, system audits, and risk analysis using industry-standard scanning tools to support a proactive security posture. Manage and implement continuous monitoring processes to ensure the organization maintains compliance with a variety of information security frameworks, including ISO 27001:2022 and SOC 2 Type II. Experience with government compliance standards such as FedRAMP (NIST SP 800-53) and CMMC is preferred. This role focuses on ensuring robust security practices and adapting to evolving compliance requirements. Actively monitor, analyze, and respond to security alerts and incidents, performing investigations, incident handling, and recommending corrective actions. Minimum Qualifications, Education, and Skills 5+ years of experience in information security or a similar role Proficiency in vulnerability scanning tools (Nessus, Burpsuite, Tenable, etc…) and interpreting scan results for remediation. Strong knowledge of security standards Demonstrated experience in continuous monitoring, network security, firewalls, VPNs, IDS/IPS, and endpoint protection. Strong analytical skills and a meticulous approach to problem-solving Demonstrated capability to deliver results on-time and to a defined schedule. Relevant certifications (e.g., CISSP, CompTIA Security+, CAP) are strongly preferred Familiarity with cloud security principles Experience with security automation and continuous monitoring tools PKI knowledge a plus Knowledge of scripting languages (Python, PowerShell) to automate security processes Experience with government-regulated environments (AWS GovCloud, Azure Government) preferred #LI-NA1 Compensation Salary will be commensurate with experience. Culture, Career Opportunities and Benefits We build teams that continually strive to get better than the day before. You will be challenged daily and given opportunities to grow personally and professionally. We balance autonomy and structure to create an entrepreneurial environment to spur creativity and new ideas. Here are just some of the initiatives that make our culture special: Second Fridays (a company-wide day off on the second Friday of every month minus November and December due to the Holiday schedule). Please note that this benefit is subject to change. Comprehensive benefit coverage globally. Paid Parental Leave is available to new parents. Structure varies based on regional/government requirements. In regions where government-paid leave doesn’t exist, like in the U.S., the company offers generous paid parental leave, along with comprehensive adoption and fertility support. Competitive time off globally. Dedicated employee-focused ambassadors via Key Contributors Culture Committees. DIVERSE Commitment, a call to action for a more inclusive and diverse future in business, society, and technology. The Keyfactor Alliance Program to support DEIB efforts. Wellbeing resources, wellness allowance, mindfulness app free membership, Wellness Wednesdays. Global Volunteer Day, company non-profit matching, and 3 volunteer days off. Monthly Talent development and Cross Functional meetings to support professional development. Regular All Hands meetings – followed by group gatherings. Our Core Values Our core values are extremely important to how we run our business and what we look for in every team member: Trust is paramount. We deliver security software and solutions where trust and openness are of the highest importance for our customers. We are honest and a trusted partner in every aspect of business. Customers are core. We strategize, operate, and execute through a customer-centric view. We prioritize the security interests of our customers, and we act as if their data were our own. Innovation never stops, it only accelerates. The speed of change is accelerating. We are committed, through investment and focus, to stay ahead of the innovation curve. We deliver with agility . We thrive in high-paced and continually changing environments. We navigate through newly added variables, adjust accordingly, while driving towards our strategic goals. United by respect . Respect for all is what unites us. We promote diversity, inclusivity, equity, and acting with empathy and openness, both in our business and in our communities. Teams make “it” happen. Vision and goals are not individually achievable – they require teamwork. We pride ourselves in operating as a cohesive team, creating promoters and partners, and winning as one. Keyfactor is a proud equal opportunity employer including but not limited to veterans and individuals with disabilities. REASONABLE ACCOMMODATION: Applicants with disabilities may contact a member of Keyfactor’s People team via [email protected] and/or telephone at 1.216.785.2990 to request and arrange for accommodations at any time. Keyfactor Privacy Notice

Posted 3 weeks ago

Ascensus LLC

Application Security Engineer, Information Security

On-site
Ascensus LLCDresher, PA

Ascensus is the leading independent technology and service platform powering savings plans across America, providing products and expertise that help nearly 16 million people save for a better today and tomorrow. Section 1: Position Summary Reporting to the BISO, the Application Security Engineer is responsible for the application security program. This position requires a passion for data protection, possesses a combination of either application development and/or security experience, strong communication and organizational skills, collaborative abilities, self-motivation, innovation, efficiency and attention to detail. This position will perform a variety of application security responsibilities across Ascensus and be the primary resource for our application security program. This role serves as a trusted application security advisor to Ascensus scrum teams to drive best practices for application security, to help ensure the confidentiality, integrity and availability of our web and application program interfaces (API). The Application Security Engineer is deeply involved with our application scrum teams and is instrumental in helping define the strategy to meet the information security organizations high level goals, while still being embedded within the scrum team processes and serve as a subject matter expert in secure development practices. This is a critical role at Ascensus requiring strategic thinking, taking initiative, and proactive interaction at many levels. This role will receive strong support of the Head of Technology and the Information Security Leadership, to effectively execute on defined organizational goals and strategic plans. Section 2: Job Functions, Essential Duties and Responsibilities Responsible for protecting, securing, and proper handling of all confidential data held by Ascensus to ensure against unauthorized access, improper transmission, and/or unapproved disclosure of information that could result in harm to Ascensus or our clients. Our I-Client service philosophy and our Core Values of People Matter, Quality First and Integrity Always® should be visible in your actions on a day to day basis showing your support of our organization In conjunction with security and development leadership develops a comprehensive, agile, and innovative DevSecOps approach that supports all phases of the software development lifecycle (SDLC), identifies and effectively manage risk. Provide security consultation to scrum teams, application owners, and technology teams on relevant security controls and secure SDLC process Participate in sprint planning meetings and various decision-making sessions to ensure that security requirements and considerations are built into the development practices Conduct application security analysis, including architecture review, analysis of data flows, penetration testing support, and threat modeling Build and monitor compliance with application security policies, coding standards, and security controls in support of mitigating threats Responsible for the deployment and integration of services to support SAST, DAST and SCA functions. Assist development teams in performance of static and dynamic testing, triage findings and provide remediation guidance where necessary Assist with other tasks and projects as assigned Supervision N/A Section 3: Experience, Skills, Knowledge Requirements Secure Software Development A minimum of 7 years’ experience in Secure Software Development and/or DevSecOps (preferred) Ability to define software security and privacy requirements Solid understanding of threat modeling, risk, and mitigation from internal and external threats Experience with development of system security architecture diagrams and security architecture specification per security architecture standards Experience performing software security design reviews Experience running security testing tools into a CI/CD pipeline including tools such as Static and Dynamic Application Security Testing (SAST/DAST) and Software Composition Analysis (SCA) Experience with application testing tools (e.g., Burp Suite, Fiddler, Zap, Wireshark, Metasploit) Experience with configuration WAF, API Gateway, API Security Tools Solid understanding of the most common application and API security risks (OWASP Top 10, SANS/CWE Top 25) Solid understanding of application, database and network vulnerability testing principles Working knowledge of the Microsoft Security Development Lifecycle (SDL), OWASP Software Assurance Maturity Model (SAMM), or Building Security in Maturity Model (BSIMM) Experience with assessing secure adoption of third-party components such as open source or commercial software .NET/Java Experience a plus Information Security Understanding of information security frameworks such as ISO27001, NIST, CSA and operating in a environment regulated against FFIEC, SEC and/or HIPAA requirements Solid understanding f authentication and authorization systems Solid understanding of cryptographic standards(e.g., encryption, hashing, key management, digital signatures, etc.) Ability to provide vulnerability remediation guidance and mentoring to product development software engineers Ability to translate security risks to business impact Experience running or managing vulnerability assessments using automated tools (e.g., Nessus, Qualys, etc) as well as managing penetration testing engagements. Understanding of privacy regulations as it relates to the handling and protection of information. Experience with fraud detection and analysis as it relates to custom developed applications DevSecOps Experience integrating automated testing tools into a CI/CD pipeline Experience in implementing Cloud security controls following owing Cloud Security Alliance (CSA) or Cloud Service Provider (CSP) best practices (Azure, AWS, etc.) Experience implementing and supporting security automation tools (e.g., K8 and CSP platform configuration, hardening, and monitoring). We are proud to be an Equal Opportunity Employer Be aware of employment fraud. All email communications from Ascensus or its hiring managers originate from @ascensus.com or @futureplan.com email addresses. We will never ask you for payment or require you to purchase any equipment. If you are suspicious or unsure about validity of a job posting, we strongly encourage you to apply directly through our website.

Posted 2 days ago

How LiftmyCV Helps with Cybersecurity Jobs Search

LiftmyCV combines AI matching, resume generation, and auto-apply to streamline every step of your cybersecurity jobs job search-from discovery to interview.

Discover Cybersecurity Jobs Across 11,794+ Openings

AI scans millions of listings across 10+ job boards and surfaces the most relevant roles for your profile.

Learn more →

Create Job-Specific Materials for Cybersecurity Jobs Roles

Auto-generates tailored resumes and cover letters matched to each job description and ATS requirements.

Learn more →

Auto-Apply and Automate Cybersecurity Jobs Applications

Set your preferences and let the AI agent apply to matching jobs automatically, with full tracking and control.

Learn more →
Marina Galkina

Marina Galkina

Senior HR Manager, Lead Tech Recruiter, and Career Consultant

Cybersecurity Salary Data in September 2026

This section summarizes salary information pulled from cybersecurity job postings active in September 2026. Use it to compare pay ranges across 11,794+ current listings, where compensation details are available.

Average Salary

$117k

$148k

$178k

25th

50th

75th

Based on 11,794 roles currently tracked by LiftmyCV. Last updated on Aug 26, 2026

Salary Distribution

Entry636 jobs
$79k$92K$114k
Mid4,567 jobs
$100k$123K$160k
Senior6,591 jobs
$139k$160K$187k

Based on 11,794 roles currently tracked by LiftmyCV. Last updated on Aug 26, 2026

Cybersecurity Jobs salary ranges based on 11,794 job listings tracked by LiftmyCV
Experience Level25th PercentileMedian (50th)75th PercentileSample Size
Overall$117,025$147,750$177,62511,794
Entry-Level$79,150$92,002.5$113,71811
Mid-Level$99,550$122,500$159,75079
Senior-Level$138,712.5$160,000$186,962.5114

"Cybersecurity hiring in 2026 often splits into a few distinct tracks. Employers may be more cautious on broad generalist titles, while still moving quickly for security engineers, cloud security, application security, GRC, IAM, detection and response, and product-facing security roles. What usually changes the conversation is proof of scope: the systems you protected, the incidents you handled, the controls you owned, or the audits and frameworks you worked through. In this category, specificity tends to matter more than polished summaries."

Marina's Market Take

Senior HR Leader & Lead Tech Recruiter

How to Land a Cybersecurity Job in 2026

Cybersecurity jobs cover several distinct lanes, and applications usually work better when you pick one and stay precise. A security analyst application should read differently from one aimed at cloud security, GRC, identity and access management, or application security. In 2026, the clearest signal is fit for the exact lane: incident response and SIEM work for analyst roles, policy and audit exposure for GRC, IAM platforms and access controls for identity roles, and secure SDLC or code review for AppSec openings.

Positioning matters most when your background overlaps adjacent IT, engineering, or compliance work. If you have SOC experience, call out alert triage, log analysis, ticket handling, and tools such as Splunk, Microsoft Sentinel, or CrowdStrike. If your path is closer to governance, show control testing, risk registers, ISO 27001, SOC 2, or vendor security reviews. For cloud security roles, be explicit about AWS, Azure, GCP, Terraform, Kubernetes, and misconfiguration remediation. Generic security language tends to blur together.

Your search strategy should follow the same lane logic. Search titles like Security Analyst, GRC Analyst, IAM Engineer, Cloud Security Engineer, and Application Security Engineer separately, because the screening criteria are usually narrow by September 2026. Watch for postings that bury the real function under broader titles like Security Engineer or Information Security Specialist, then apply only when the daily work matches your evidence.

  • Lead with tools and environments you have actually used, not broad security interests.
  • Name the work you handled: investigations, detections, control mapping, access reviews, threat modeling, or vulnerability remediation.
  • Match certifications carefully to the lane when they support the role, especially for analyst, audit, or compliance-heavy openings.

For broader searches across cybersecurity listings, LiftmyCV can filter roles by lane and prioritize openings that line up with your actual security stack and day-to-day work.

Required Skills

cybersecurity
incident response
risk management
security operations
vulnerability management
threat detection
security monitoring
SIEM
network security
cloud security
identity access management
security compliance
penetration testing
security analysis
threat intelligence
security engineering
access control
firewall management

Resume Tips

For cybersecurity jobs, lead with the work that proves scope, systems, and risk judgment. Put SIEM platforms like Splunk, Microsoft Sentinel, or QRadar near the top if you’ve used them. The same goes for EDR tools such as CrowdStrike or Defender, cloud security work in AWS or Azure, IAM, vulnerability management, incident response, GRC, or security audit support. If you hold Security+, CISSP, CISM, CEH, or cloud security certifications, list them clearly with the active year or renewal date in 2026.

Cut generic IT bullets that only say you “supported users” or “maintained systems” unless they connect directly to access control, patching, logging, hardening, phishing response, compliance evidence, or threat detection. A cybersecurity resume should show what you protected, what you investigated, and what changed after your work. If your background leans technical, show detection engineering, triage, scripting, or remediation. If it leans compliance or governance, show policy work, control testing, audit prep, vendor risk, or frameworks such as NIST, ISO 27001, SOC 2, or PCI DSS.

Weak: “Responsible for monitoring security alerts and helping with incidents.”
Strong: “Triaged alerts in Splunk and CrowdStrike, investigated phishing and endpoint incidents, and reduced repeat malware infections by tightening email controls and endpoint isolation procedures.”

Use job titles and section headings that match the posting. If a role is posted through Greenhouse, Lever, or Workable, LiftmyCV can help format the resume cleanly for ATS-based screening and tailor the language to a security analyst, GRC, SOC, or cloud security posting.

How to Prepare for Interviews

Cybersecurity interviews usually split between technical depth, judgment, and communication. For security analyst, engineer, SOC, cloud security, GRC, and application security roles, expect questions that test how you think through risk, not just whether you can recite terms. A common format is a scenario prompt such as: "You see unusual outbound traffic from a production server. What do you check first, how do you contain it, and who do you notify?"

Prepare a few detailed examples that show incident response, vulnerability triage, IAM decisions, audit support, secure SDLC work, or threat detection tuning. If you work across tools like SIEM, EDR, IDS/IPS, cloud logging, or ticketing systems, be ready to explain what you changed and what happened next. For GRC or compliance-focused cybersecurity jobs, expect policy, control mapping, and exception-handling discussions rather than only hands-on technical screens.

Some teams also use practical assessments in 2026, including log analysis, threat-modeling exercises, architecture reviews, or short write-ups after a security case. Practice explaining tradeoffs clearly, especially where security controls affect engineering, legal, or operations.

FAQ

Related Jobs

Land Your Next Cybersecurity Job with LiftmyCV

Use LiftmyCV to find cybersecurity roles that match your background, tailor your resume, and auto-apply without rewriting every application by hand. AI matching helps surface better-fit openings, and resume generation keeps the process moving.