We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary The Executive Director - Business Information Security Officer (BISO) will serve as a senior leader and trusted security advisor supporting all CVS Health lines of business, with accountability for leading the BISO team and driving mission, vision, and governance model. This individual will provide senior‑level leadership, strategic and tactical guidance for a world‑class enterprise cybersecurity program. As a business enabler, the BISO is an effective communicator with the technical aptitude to embed security strategy and risk‑based decision‑making into all aspects of the business. The BISO understands security risks, threats, vulnerabilities, control frameworks, and security technologies and translates their impact in business terms. The BISO must be capable of working closely with senior IT business leaders, executive leadership, and business subject matter experts (SMEs). This role requires demonstrated leadership, exceptional organizational skills, strong business and financial acumen, and the ability to influence and drive change at scale across the organization. <
Jobs in United States
It Security Analyst in United States
2,670 active opportunities · Updated October 2026
Showing
15 jobs
Explore current it security analyst jobs across United States. Filter by work mode, employment type, experience, department, date posted and distance.
We are hiring a Security Software Engineer to design and implement the hardware-backed security foundations used across OpenAI’s device ecosystem. A central focus of this role is hardening the boundary between our policy systems and the HSMs that protect sensitive cryptographic keys. This boundary determines which operations may be performed, what may be signed, which policies must be satisfied, and how changes to trusted software and policy are authorized. You will develop security-critical software and firmware within, or immediately adjacent to, an HSM trust boundary. Depending on your background, this may include HSM trusted applications, firmware services, cryptographic mechanisms, device drivers, PKCS#11 components, secure-provisioning protocols, or signing-policy enforcement systems. This is a hands-on software-engineering role. You will be expected to design systems, write and review production code, debug across hardware and software boundaries, and carry projects from initial requirements through deployment. It is not an HSM administration, PKI operations, compliance, or architecture-only position. In This Role, You Will Design and implement security-critical software and firmware for HSMs, secure elements, trusted execution environments, and hardware roots of trust. Build and harden the policy-to-HSM boundary responsible for authorizing certificate issuance and cryptographic signing operations. Develop HSM trusted applications, firmware components, host interfaces, device drivers, SDKs, or cryptographic service integrations. Implement or extend cryptographic interfaces such as PKCS#11, OpenSSL providers or engines, platform key-storage APIs, or comparable hardware-security interfaces. Build firmware and software that cryptographically enforces key generation, provisioning, usage, rotation, recovery, and destruction policies. Design and implement HSM-backed certificate authority, code-signing, key-management, and device-identity systems. Develop end-to-end
From $115K/yr
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software. * Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab. An overview of this role As the Manager, IT SOX PMO, you'll own information technology (IT)-specific Sarbanes-Oxley (SOX) compliance activities and serve as a subject matter expert for IT general controls (ITGCs) and IT application controls (ITACs). You will be an individual contributor, reporting to the Senior Director, SOX PMO Leader within the Chief Accounting Officer's organization, you'll directly support the Senior Manager, IT SOX PMO in strengthening GitLab's IT SOX program, preparing new and changing processes and systems for SOX requirements, and advancing automation in a high-growth technology environment. You'll combin
Every day, tens of millions of people come to Roblox to explore, create, play, learn, and connect with friends in 3D immersive digital experiences– all created by our global community of developers and creators. At Roblox, we’re building the tools and platform that empower our community to bring any experience that they can imagine to life. Our vision is to reimagine the way people come together, from anywhere in the world, and on any device. We’re on a mission to connect a billion people with optimism and civility, and looking for amazing talent to help us get there. A career at Roblox means you’ll be working to shape the future of human interaction, solving unique technical challenges at scale, and helping to create safer, more civil shared experiences for everyone. The Account Security (AccSec) pod sits within the Accounts team (part of the broader Safety organization) and is at the heart of building a safe and civil platform for users of all ages. Account Security is especially challenging at Roblox because it is open to all ages. As the EM of AccSec pod (7+ ICs) you will work closely with peers throughout Roblox and the creator community to reduce the impact of account takeover (i.e. compromise) for Roblox players, creators, and the broader community. This is a role that requires entrepreneurship. We are looking for the EM of the AccSec pod to, in collaboration with product partners, to formulate a strategy for how to reduce ATO, reduce the impact of any remaining ATO and build community trust in the security of their accounts. Examples of past and current efforts include: Cryptographically binding user secrets to hardware backed secrets. Detecting client side tampering by Browser extensions. Integration with Passkeys. Post-login modeling for ATO detection. Reducing incentives for bad actors by making assets more recoverable. While this is a security team that focuses heavily on product and infrastructure changes to improve security, we also c
We're on a mission to build the best platform in the world to defend the enterprise from code-to-cloud-to-runtime. Used by thousands of companies globally, Datadog security products uniquely leverage Datadog’s unified security and observability platform so Security, DevOps and SRE can collaborate rapidly and seamlessly to deliver better detection, prioritization and remediation. Our product and engineering culture values pragmatism, honesty, and simplicity to solve hard problems the right way. In this competitive market, the Group Product Manager for Code Security will play a mission-critical role in providing product and strategy leadership to grow Datadog’s market share through differentiation, innovation and compelling customer value. This leader will lead a talented and growing team of product managers and work with world class engineers to build and grow multiple Code Security products that play an essential role for our customers’ code security programs, and growing Datadog into a security industry leader. At Datadog, we place value in our office culture - the relationships and collaboration it builds, and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You’ll Do: Run and grow multiple Code Security products to meet revenue and business targets with the goal of building a multi-hundred million dollar annual business. Lead and own product strategy and roadmap for accountable security products, fully aligned to revenue and business goals and with compelling differentiation and customer value. Ensure predictable roadmap execution across direct and partner teams to achieve product and business outcomes required to meet the revenue and business goals. Analyze and develop pricing and packaging strategies to maximize revenue through attaching deep understanding of market dynamics and other strategic leverage points. Drive GTM strategy with GTM partner teams
About the Team The B2B Marketing team contributes to OpenAI's broader mission of ensuring responsible and widespread adoption of artificial intelligence. We are responsible for developing and executing strategies that drive awareness, engagement, and usage for OpenAI's products and platform. We take a data-driven approach to understand our customers' needs and challenges, ensuring that their voices are reflected in product development and messaging. We then partner closely with Product, Engineering, Growth, Sales, Research, Comms, and Design teams to create a cohesive customer experience across all our channels. About the Role We're looking for an enterprise Product Marketing Manager to own the administrator and governance experience across ChatGPT Work and Codex. IT administrators, security teams, and deployment owners are often the difference between an AI product being available and an organization actually putting it to work. This role will define how OpenAI earns the trust of the people responsible for approving, deploying, managing, and expanding AI inside their organizations. You will translate a fast-moving set of enterprise capabilities into a clear, practical story covering setup, access, controls, governance, security, usage, and value. You will own the administrator audience as a dedicated product marketing discipline, partnering closely with Product, Security, Sales, Customer Success, Growth, Customer Education, and other Marketing teams. Your job is not simply to announce new features. It is to help administrators understand what has changed, what they can control, how to deploy responsibly, and why expanding access is the right decision for their organization. In this role, you will: Own the IT administrator and governance audience: Build a deep understanding of the needs, decisions, objections, and workflows of workspace administrators, IT leaders, security teams, and enterprise deployment owners. Define the enterprise administration and governance s
NVIDIA DGX Cloud is an AI Factory designed to power the next generation of AI and industrial-scale breakthroughs. As a Principal Engineer for Security Architecture, within our Security Engineering organization, you will own a core security domain of the AI factory: the architecture, the paved road that delivers it, and much of the code underneath. You will hold the security design bar across DGX Cloud from inside the teams doing the building, and this is a founding seat on a new team. Security Engineering is a new organization at DGX Cloud, accountable for the security outcome of the platform, and Security Architecture is the function inside it that holds the design bar. Security here is fleet horizontal and stack vertical, so your work will cross every DGX Cloud engineering organization: you will embed with the teams building GPU clusters, control planes, and services, join their designs as a participant rather than an approver, and leave behind systems in which an entire class of risk is no longer possible. There is no architecture review board here and no approval queue. You are a senior IC with deep security domain knowledge, and the security bar holds because you helped set it and then helped ship it. What You Will Be Doing: Own a Security Domain End to End: Take architectural ownership of a core domain of DGX Cloud security, from the design through the system running in production. That could be tenant and GPU workload isolation, workload identity, infrastructure and network, supply-chain provenance, hardened baselines and patching, or deploy-time policy and admission control. Embed with the Teams Building It: Join the design early, write the code, and help land it. The posture is not "you did this wrong." It is "here are the considerations we need to meet, I will help, let's go to work." Build Paved Roads, Not
NVIDIA DGX Cloud is an AI Factory designed to power the next generation of AI and industrial-scale breakthroughs. As the Distinguished Engineer for Security Architecture, within our Security Engineering organization, you will set the security design bar for an AI factory of hundreds of thousands of GPUs, and then build against it alongside the teams. This is the founding architecture seat in a new organization. Security Engineering is a new organization at DGX Cloud, accountable for the security outcome of the platform, and this is the architecture function inside it. You will define the security design standard for DGX Cloud, a bar that sits above the company floor, and hold it from inside the teams doing the building. Security here is fleet horizontal and stack vertical, so your scope runs from the hardware root of trust and the hardened baseline, through tenancy and GPU workload isolation, to the services and APIs built on top, across every DGX Cloud engineering organization. A small team of Principal Engineers will report to you and hold the bar at domain depth. This is still a hands-on seat, and you stay in the design with them. You will also serve as DGX Cloud's technical interface into NVIDIA's central security organization. There is no architecture review board here and no approval queue; the bar holds because the strongest security engineers in the room helped set it and helped ship it. What You Will Be Doing: Set the DGX Cloud Security Bar: Own the security design standard across DGX Cloud (tenancy, GPU workloads, identity, supply chain, and isolation) and make it concrete. Reference architectures, golden paths, and requirements engineers can actually build against, not a policy library. Hold the Bar by Building: Embed with engineering teams on real work: join the design, learn the code, help ship the thing rather than grade it afterward.
From $145.7K/yr
About Pinterest: Millions of people around the world come to our platform to find creative ideas, dream about new possibilities and plan for memories that will last a lifetime. At Pinterest, we’re on a mission to bring everyone the inspiration to create a life they love, and that starts with the people behind the product. Discover a career where you ignite innovation for millions, transform passion into growth opportunities, celebrate each other’s unique experiences and embrace the flexibility to do your best work. Creating a career you love? It’s Possible. At Pinterest, AI isn't just a feature, it's a powerful partner that augments our creativity and amplifies our impact, and we’re looking for candidates who are excited to be a part of that. To get a complete picture of your experience and abilities, we’ll explore your foundational skills and how you collaborate with AI. Through our interview process, what matters most is that you can always explain your approach, showing us not just what you know, but how you think. You can read more about our AI interview philosophy and how we use AI in our recruiting process here . About Pinterest Pinterest is a visual discovery company that helps millions of people find inspiration and take action on the things they care about. Within EPD, the Security team plays a critical role in enabling that experience safely and reliably—protecting users, safeguarding the business, and ensuring the company can move quickly with the right controls in place. What is especially exciting about this team is the combination of mission and leverage: the work touches core platform health, trust, abuse prevention, resilience, compliance, and internal engineering rigor. For a Staff TPM, this creates an unusually high-impact seat at the table to help shape how Security plans, prioritizes, and executes across Product and Engineering, while partnering closely with Platforms, Trust & Safety, and Growth on some of the company’s most conse
From $212K/yr
Airbnb was born in 2007 when two hosts welcomed three guests to their San Francisco home, and has since grown to over 5 million hosts who have welcomed over 2 billion guest arrivals in almost every country across the globe. Every day, hosts offer unique stays and experiences that make it possible for guests to connect with communities in a more authentic way. The Community You Will Join: Airbnb's Security Engineering organization protects a global community of millions of Hosts and guests. The Cloud & Data Security team is responsible for the security of the infrastructure and data platforms that Airbnb runs on - spanning cloud environments, data infrastructure, identity and access, and the paved roads that engineering teams build on every day. We partner closely with other Information Security teams, Cloud Infrastructure, Data Platform, and Enterprise teams to make secure the easiest path for engineers to take. The Difference You Will Make: As the Engineering Manager for Cloud & Data Security, you will lead a team of security engineers responsible for securing Airbnb's cloud infrastructure, data platforms, and the controls that govern how sensitive data is accessed and moved. You will set the team's technical direction, coach engineers through complex architectural work, and partner across the company to raise the bar on how Airbnb builds and operates its infrastructure. You will own the team's roadmap, its people, and its outcomes, building a durable, high-trust function that shifts security left through paved roads, automation, and deep partnership with the teams you protect. A Typical Day: Lead and grow a team of security engineers focused on cloud infrastructure security, data security, and identity and access controls. Set and drive the team's roadmap in alignment with organizational security priorities, balancing embedded partnership with high-leverage automation and paved-road investment. Partner with Infrastructure, Data Platform, and Application Se
At Snowflake, we are powering the era of the agentic enterprise. To usher in this new era, we seek AI-native thinkers across every function who are energized by the opportunity to reinvent how they work. You don’t just use tools; you possess an innate curiosity, treating AI as a high-trust collaborator that is core to how you solve problems and accelerate your impact. We look for low-ego individuals who thrive in dynamic and fast-moving environments and move with an experimental mindset — who rapidly test emerging capabilities to discover simpler, more powerful ways to deliver results. At Snowflake, your role isn't just to execute a function, but to help redefine the future of how work gets done. Company Overview We are building the next generation of cloud security infrastructure, focusing on advanced Data Exfiltration Protection (DXP) and unified Data Movement Policies (DMP). Our mission is to provide seamless, context-aware security that protects sensitive data without hindering developer velocity. We are looking for a visionary Principal Engineer to lead the technical strategy and architecture for our Data Movement and Perimeter control systems. Role Summary As a Principal Engineer in the Data Protection group, you will be the technical lead for the Data Exfiltration Protection (DXP) and Data Movement Policy (DMP) initiatives. You will bridge the gap between high-level security policy and low-level system enforcement, ensuring that our perimeter controls are robust, scalable, and deeply integrated with context-aware access policy frameworks. You will be responsible for the architectural evolution of our egress control systems, moving from simple IP-based rules to sophisticated, content-aware, and identity-driven data movement governance. AS A PRINCIPAL SOFTWARE ENGINEER - IDENTITY, DATA SECURITY AND TRUST AT SNOWFLAKE YOU WILL: Architectural Leadership: Lead the design and implementation of the Data Movement Policy (DMP) framework, ensuring it can handle complex
From $115.2K/yr
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software. * Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab. An overview of this role As an Intermediate Software Engineer on GitLab’s Vulnerability Management team, you’ll help build the core security workflows that GitLab Ultimate customers use to triage, prioritize, and act on vulnerabilities. You’ll work primarily in Ruby on Rails on backend systems, including security dashboards, vulnerability reports, and ingestion pipelines. You’ll take ownership of well-defined projects, solve technical problems with support from experienced team members, and collaborate with other engineers. You’ll also have opportunities to contribute beyond the backend when the work requires it. You will join a
From $116K/yr
We're looking for someone to join the Datadog Procurement team and help expand the Strategic Sourcing group. Make an impact by being a trusted subject matter expert in several buying categories and continuing to prove the value that Strategic Sourcing brings to the organization. At Datadog, we place value in our office culture - the relationships and collaboration it builds and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You'll Do: Lead strategic sourcing for enterprise SaaS and IT categories - owning net-new purchases and complex, high-spend renewals through a documented, collaborative evaluation process, with action plans built well ahead of renewal dates. Own software license and subscription strategy, right-sizing entitlements, minimizing shelfware, and replacing last-minute buying with forward-looking renewal and demand planning. Lead the IT hardware procurement team responsible for purchasing, sourcing, and replenishment (laptops, peripherals, networking, office AV), balancing demand with headcount and multi-region growth while leveraging OEM/distributor relationships and buying scale. Lead the transformation of IT Procurement (hardware and SaaS licenses) from transactional to strategic - standardizing processes, introducing supplier-management discipline, and establishing operational metrics and KPIs. Develop strong, trusted relationships with stakeholders and collaborate on strategizing the purchase plan, negotiating pricing and other business terms with vendors on net-new purchases and complex, high-spend renewals, partnering cross-functionally with Procurement Operations, Legal, Security, IT, and Office Operations to ensure compliant, scalable execution. Create pricing models based on vendor proposals to quantify various buying scenarios related to our future growth and current demand Manage and develop a direct report, with
From $154K/yr
Datadog’s Implementation Services team helps customers implement and deploy Datadog quickly and successfully. Our team of architects leads the discovery, design, build, and launch of the Datadog platform to help customers accelerate time to value and get the most out of their investment. As a Senior Services Architect focused on Security and Cloud SIEM, you will help customers design, implement, and operationalize Datadog’s security capabilities across cloud, infrastructure, application, and log data sources. You will lead structured, outcome-driven professional services engagements delivered through a day-based professional services delivery model, partnering directly with customers through co-development working sessions, architecture workshops, implementation planning, and operational handoff. This role is ideal for someone who combines customer-facing consulting experience with strong cybersecurity knowledge, hands-on Cloud SIEM implementation skills, and an understanding of security control frameworks such as NIST 800-53, the NIST Cybersecurity Framework, CIS Controls, MITRE ATT&CK, SOC 2, PCI, HIPAA, ISO 27001, or similar standards. At Datadog, we place value in our office culture — the relationships and collaboration it builds and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You’ll Do: Design and guide execution of Datadog implementations, focusing on Security and Cloud SIEM deployment, including discovery, requirements gathering, technical architecture, deployment planning, and launch. Partner with customers to map security requirements, controls, and monitoring objectives to Datadog capabilities, including frameworks such as NIST 800-53, NIST Cybersecurity Framework, CIS Controls, MITRE ATT&CK, SOC 2, PCI, HIPAA, ISO 27001, or similar standards. Advise customers on security data strategy, including log source prioritization, parsing, normalizat
From $156K/yr
As organizations rapidly adopt AI applications and agentic systems, security teams need visibility and control over how these technologies are being used. Datadog's AI & Data Security product helps customers discover, secure, and govern AI usage across their environments ensuring sensitive data is properly managed from model training through production. As a Product Manager II for AI & Data Security, you will own capabilities for AI discovery, posture management, and data security; giving customers complete visibility into their AI applications, agents, and enabling ecosystem, with prioritized actions to operate AI systems securely. You'll partner with engineering, design, security research, and GTM teams to define and ship platform capabilities that help organizations adopt AI at scale. At Datadog, we place value in our office culture - the relationships and collaboration it builds and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You’ll Do: Own the roadmap for AI & Data Security capabilities, including AI and data discovery & posture management. Define how security teams can assess and manage the security posture of AI-enabled systems, including configuration risks, sensitive data exposure, and policy violations. Work closely with engineers and designers to deliver new product capabilities end-to-end, from early concept through launch and iteration. Partner with Datadog security researchers to identify emerging risks in AI systems and translate them into actionable product features. Engage with customers to understand how they are adopting AI and validate solutions that help them operate these systems securely. Collaborate with go-to-market teams to enable adoption and communicate the value of AI security capabilities to customers. Who You Are: You have 3+ years of product management experience building technical products, ideally in security,
Other cities to consider
More places hiring for this role
Get new it security analyst jobs in United States by email
Daily job updates · Unsubscribe anytime