{"version":"0.1","company":{"name":"YubHub","url":"https://yubhub.co","jobsUrl":"https://yubhub.co/jobs/skill/least-privilege"},"x-facet":{"type":"skill","slug":"least-privilege","display":"Least Privilege","count":6},"x-feed-size-limit":100,"x-feed-sort":"enriched_at desc","x-feed-notice":"This feed contains at most 100 jobs (the most recently enriched). For the full corpus, use the paginated /stats/by-facet endpoint or /search.","x-generator":"yubhub-xml-generator","x-rights":"Free to redistribute with attribution: \"Data by YubHub (https://yubhub.co)\"","x-schema":"Each entry in `jobs` follows https://schema.org/JobPosting. YubHub-native raw fields carry `x-` prefix.","jobs":[{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_5d95b977-c34"},"title":"Solutions Engineer - Italy","description":"<p>We are looking for a Solutions Engineer to join our team in Milan, Italy. As a Solutions Engineer, you will be responsible for building sales presentations, product demonstrations, and educating customers on the best ways to cloud security and Identity and Access Management. You will work closely with customers to understand their technical needs and provide solutions that target those needs. You will also be responsible for advising a diverse set of customers on what is possible using Okta&#39;s Identity Platform.</p>\n<p>Key responsibilities include:</p>\n<ul>\n<li>Building sales presentations, product demonstrations, and educating customers on the best ways to cloud security and Identity and Access Management</li>\n<li>Working closely with customers to understand their technical needs and provide solutions that target those needs</li>\n<li>Advising a diverse set of customers on what is possible using Okta&#39;s Identity Platform</li>\n</ul>\n<p>Requirements include:</p>\n<ul>\n<li>A passion to serve the customer, which has played out in some customer-facing role like consulting or support, ideally sales engineering</li>\n<li>An ability to quickly communicate complex ideas around a technical topic, ideally on the fly at a whiteboard</li>\n<li>Experience with at least one standard network security protocol (eg. OIDC, OAuth2, SAML, LDAP)</li>\n<li>Experience in identity governance and administration (IGA): identity lifecycle management, access reviews, role-based access control (RBAC), and policy enforcement</li>\n<li>Experience in Privilege Access Management (PAM): familiarity with concepts such as least privilege, just-in-time (JIT) access, session monitoring, and vaulting privileged credentials to secure critical assets</li>\n<li>An understanding of core security concerns within a typical application (password hashing, SSL/TLS, encryption at rest, XSS, XSRF)</li>\n<li>Excellent communication skills and an ability to articulate business value</li>\n<li>Italian and English fluent</li>\n<li>An ability to disperse knowledge to a highly skilled and experienced audience</li>\n<li>Enjoy travel and meeting customers - Typically 10-25%</li>\n</ul>\n<p>Preferred skills include:</p>\n<ul>\n<li>Experience with Identity &amp; Access Management, Single Sign-on and API-based solutions</li>\n<li>Fluency in another European language</li>\n<li>Bachelor&#39;s degree in Engineering, Computer Science, MIS or a comparable field</li>\n<li>Software Developer experience</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_5d95b977-c34","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Okta","sameAs":"https://www.okta.com/","logo":"https://logos.yubhub.co/okta.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/okta/jobs/7672502","x-work-arrangement":"hybrid","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":"€90.000-€99.000 EUR","x-skills-required":["OIDC","OAuth2","SAML","LDAP","identity governance and administration","Privilege Access Management","least privilege","just-in-time (JIT) access","session monitoring","vaulting privileged credentials","password hashing","SSL/TLS","encryption at rest","XSS","XSRF"],"x-skills-preferred":["Identity & Access Management","Single Sign-on","API-based solutions","European languages","Bachelor's degree in Engineering, Computer Science, MIS or a comparable field","Software Developer experience"],"datePosted":"2026-04-18T15:49:37.941Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Milan, Italy"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"OIDC, OAuth2, SAML, LDAP, identity governance and administration, Privilege Access Management, least privilege, just-in-time (JIT) access, session monitoring, vaulting privileged credentials, password hashing, SSL/TLS, encryption at rest, XSS, XSRF, Identity & Access Management, Single Sign-on, API-based solutions, European languages, Bachelor's degree in Engineering, Computer Science, MIS or a comparable field, Software Developer experience"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_54eefd0f-bfc"},"title":"Technical Account Management Intern (Summer 2026)","description":"<p>Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organisations to safely embrace this new era.</p>\n<p>We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work. We&#39;re all in on this mission. If you are too, let&#39;s talk.</p>\n<p>As an intern, you will get hands-on experience in understanding how a Technical Account Manager partners with customers to ensure they achieve their identity goals with Okta and Auth0. The internship will prepare the candidate to be an individual collaborator in a customer-facing role.</p>\n<p>You will have the opportunity to gain experience in the following areas:</p>\n<p>Business: Customer&#39;s journey from prospect (not yet customer) to advocate (loyal customer) - Customer Success concepts such as recurring revenue, license activation &amp; adoption, and subscription management</p>\n<p>Technical: Understand Identity and Access Management, Cybersecurity, Zero Trust, and Least Privilege concepts - Opportunity to learn Okta&#39;s technology portfolio and earn official certifications on Okta&#39;s suite of products</p>\n<p>Functional: Proficiency in both business communication (including written and verbal) and communicating technical concepts in a consumable, clear, and concise manner - Develop presentation skills to external customers and executives - Collaborate with cross-functional teams in Okta and orchestrate the action to drive implementation, adoption, and best practices</p>\n<p>What You&#39;ll Get to Do:</p>\n<p>Learn to communicate the alignment of Okta&#39;s products and solutions with customer Identity goals through demonstrations, presentations, and storytelling.</p>\n<p>Observe Technical Account Managers to build knowledge of customer identity goals and use case scenarios, implementation plans and challenges, and IAM best practices to support customer outcomes.</p>\n<p>Support and participate in playbook initiatives and process development.</p>\n<p>Who We are Looking For:</p>\n<p>Currently pursuing a Bachelor&#39;s degree (graduating in December 2026 or Spring 2027) in, or has completed coursework in, a Technical field (Computer Science, Information Systems, Math, Statistics, Informatics, Data Science, or related field).</p>\n<p>A passion to serve the customer by learning how to communicate complex ideas and solutions to their business challenges.</p>\n<p>Ability to intern for 12 weeks.</p>\n<p>Excellent verbal and written communication skills.</p>\n<p>Ability to manage multiple projects simultaneously, perform customer research, generate reports, and analyze data.</p>\n<p>Analytical and problem-solving minded, detail and results-oriented, and a quick learner.</p>\n<p>Willingness to present in front of others and give presentations.</p>\n<p>Passionate for a career in SaaS / Cloud technology that requires technical acumen.</p>\n<p>Okta&#39;s Intern Program As an intern, you&#39;ll do real work that matters. While you&#39;re on board, you&#39;ll work on meaningful projects and have an opportunity to see what working at Okta is all about. You&#39;ll also have the support of your mentor and manager to help you develop new skills.</p>\n<p>Our interns have the opportunity to build a strong community - with their fellow interns, within their teams, and with the broader company. We want you to grow professionally and you&#39;ll do that through participating in events like our Executive Speaker Series and Brown Bags.</p>\n<p>And of course, we want you to have fun, too. Our internship program includes exciting opportunities to connect with your cohort beyond the office through classic local outings like Cubs games and the Chicago Architecture Boat Tour.</p>\n<p>The Okta Experience - Supporting Your Well-Being - Driving Social Impact - Developing Talent and Fostering Connection + Community</p>\n<p>We are intentional about connection. Our global community, spanning over 20 offices worldwide, is united by a drive to innovate. Your journey begins with an immersive, in-person onboarding experience designed to accelerate your impact and connect you to our mission and team from day one.</p>\n<p>Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran.</p>\n<p>We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.</p>\n<p>If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.</p>\n<p>Notice for New York City Applicants &amp; Employees: Okta may use Automated Employment Decision Tools (AEDT), as defined by New York City Local Law 144, that use artificial intelligence, machine learning, or other automated processes to assist in our recruitment and hiring process.</p>\n<p>In accordance with NYC Local Law 144, if you are an applicant or employee residing in New York City, please click here to view our full NYC AEDT Notice.</p>\n<p>Okta is committed to complying with applicable data privacy and security laws and regulations. For more information, please see our Personnel and Job Candidate Privacy Notice at https://www.okta.com/legal/personnel-policy/</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_54eefd0f-bfc","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Okta","sameAs":"https://www.okta.com/","logo":"https://logos.yubhub.co/okta.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/okta/jobs/7549331","x-work-arrangement":null,"x-experience-level":"internship","x-job-type":"internship","x-salary-range":null,"x-skills-required":["Identity and Access Management","Cybersecurity","Zero Trust","Least Privilege","Customer Success","Recurring Revenue","License Activation & Adoption","Subscription Management","Business Communication","Technical Concepts","Presentation Skills","Cross-Functional Teams","Implementation","Adoption","Best Practices"],"x-skills-preferred":[],"datePosted":"2026-04-18T15:48:20.426Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Chicago, Illinois"}},"employmentType":"INTERN","occupationalCategory":"Engineering","industry":"Technology","skills":"Identity and Access Management, Cybersecurity, Zero Trust, Least Privilege, Customer Success, Recurring Revenue, License Activation & Adoption, Subscription Management, Business Communication, Technical Concepts, Presentation Skills, Cross-Functional Teams, Implementation, Adoption, Best Practices"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_1248746a-13f"},"title":"Solutions Engineer","description":"<p>We are looking for a Solutions Engineer to join our UK&amp;I Solutions Engineering team. As a Solutions Engineer, you will be involved in all stages of the customer&#39;s development lifecycle and will use presentations, email, phone, and social media to connect with customers. You will build sales presentations, product demonstrations, and educate customers on the best ways to cloud security technology.</p>\n<p>You will empathise with customers and quickly discern their true technical needs by asking detailed and clarifying questions and presenting solutions that target those needs. You will use your technical savviness and business insights to advise a diverse set of customers on what is possible using Okta&#39;s Identity Platform.</p>\n<p>Responsibilities:</p>\n<ul>\n<li>Involved in all stages of the customer&#39;s development lifecycle and using presentations, email, phone, and social media to connect with customers</li>\n<li>Building sales presentations, product demonstrations, and educating customers on the best ways to cloud security technology</li>\n<li>Empathising with customers and quickly discerning their true technical needs by asking detailed and clarifying questions and presenting solutions that target those needs</li>\n<li>Using your technical savviness and business insights</li>\n</ul>\n<p>Requirements:</p>\n<ul>\n<li>A passion to serve the customer, which has played out in some customer-facing role like consulting or support, ideally sales engineering</li>\n<li>An ability to quickly communicate complex ideas around a technical topic, ideally on the fly at a whiteboard</li>\n<li>Experience with at least one standard network security protocol (eg. OIDC, OAuth2, SAML, LDAP)</li>\n<li>Experience in identity governance and administration (IGA): identity lifecycle management, access reviews, role-based access control (RBAC), and policy enforcement</li>\n<li>Experience in Privilege Access Management (PAM): familiarity with concepts such as least privilege, just-in-time (JIT) access, session monitoring, and vaulting privileged credentials to secure critical assets</li>\n<li>An understanding of core security concerns within a typical application (password hashing, SSL/TLS, encryption at rest, XSS, XSRF)</li>\n<li>Excellent communication skills and an ability to articulate business value</li>\n<li>An ability to disperse knowledge to a highly skilled and experienced audience</li>\n<li>Enjoy travel and meeting customers</li>\n</ul>\n<p>Nice to have:</p>\n<ul>\n<li>Experience with Identity &amp; Access Management, Single Sign-on and API-based solutions</li>\n<li>Fluency in another European language</li>\n<li>Bachelor&#39;s degree in Engineering, Computer Science, MIS or a comparable field</li>\n<li>Software Developer experience</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_1248746a-13f","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Okta","sameAs":"https://www.okta.com","logo":"https://logos.yubhub.co/okta.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/okta/jobs/7532932","x-work-arrangement":"hybrid","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["OIDC","OAuth2","SAML","LDAP","Identity Governance and Administration","Privilege Access Management","Least Privilege","Just-in-Time Access","Session Monitoring","Vaulting Privileged Credentials","Password Hashing","SSL/TLS","Encryption at Rest","XSS","XSRF"],"x-skills-preferred":[],"datePosted":"2026-04-18T15:47:53.759Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"London, United Kingdom"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"OIDC, OAuth2, SAML, LDAP, Identity Governance and Administration, Privilege Access Management, Least Privilege, Just-in-Time Access, Session Monitoring, Vaulting Privileged Credentials, Password Hashing, SSL/TLS, Encryption at Rest, XSS, XSRF"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_e743e74f-19e"},"title":"Data Center Security Specialist - Sandusky","description":"<p>The Data Center Security Specialist is responsible for implementing and enforcing physical security standards and policy in CoreWeave&#39;s data center spaces.</p>\n<p>The role involves managing facility access policies, conducting audits, and administering access requests and revocations.</p>\n<p>The Data Center Security Specialist will be a liaison between CoreWeave and its collocation partners, advocating for the highest level of security to protect CoreWeave&#39;s personnel, infrastructure, and intellectual property.</p>\n<p>The candidate will create and implement training programs for CoreWeave&#39;s employees, as well as visitors and contractors.</p>\n<p>To be successful in this role, you must have an in-depth knowledge of physical security principles and be passionate about making our facilities more secure.</p>\n<p>CoreWeave is searching for a candidate with a broad background in physical security and a commitment to continuing education and improvement.</p>\n<p>Desired skills include strong organizational discipline, writing skills, and comfort with public speaking.</p>\n<p>Top candidates will have an amiable personality and an aptitude for customer service.</p>\n<p>The position will require up to 25% travel, which may include international, to oversee site security and conduct training sessions.</p>\n<p>The position will report directly to the CoreWeave Area Data Center Security Manager.</p>\n<p>Responsibilities:</p>\n<ul>\n<li>Day-to-day administration of security policy at CoreWeave&#39;s data centers</li>\n</ul>\n<ul>\n<li>Work with our collocation partners to enforce security policy</li>\n</ul>\n<ul>\n<li>Produce timely audit reports</li>\n</ul>\n<ul>\n<li>Enforce a principle of &#39;least privilege&#39; for access</li>\n</ul>\n<ul>\n<li>Create security training programs</li>\n</ul>\n<ul>\n<li>Establish regular cadence for security training</li>\n</ul>\n<ul>\n<li>Create accessible archive of security policy documentation</li>\n</ul>\n<ul>\n<li>Onboard new employees</li>\n</ul>\n<ul>\n<li>Maintain a continuing security training program</li>\n</ul>\n<ul>\n<li>Inspections and Audits</li>\n</ul>\n<ul>\n<li>Regularly tour and inspect data centers</li>\n</ul>\n<ul>\n<li>Create inspection reports with findings</li>\n</ul>\n<ul>\n<li>Create program to remediate findings and track to successful conclusion</li>\n</ul>\n<ul>\n<li>Lead investigations of security incidents</li>\n</ul>\n<ul>\n<li>CoreWeave customers</li>\n</ul>\n<ul>\n<li>Be knowledgeable and have ownership of our customer&#39;s security programs</li>\n</ul>\n<ul>\n<li>Meet with CoreWeave customers or points-of-contact to ensure we are meeting their needs</li>\n</ul>\n<ul>\n<li>Strong time management, good technical writing, presentation, and documentation skills</li>\n</ul>\n<ul>\n<li>Ability to work with minimal supervision, attention to detail, follow-through and professionalism</li>\n</ul>\n<ul>\n<li>Perform other work-related duties as assigned</li>\n</ul>\n<ul>\n<li>Willingness to learn new technologies/toolsets as part of the job responsibilities</li>\n</ul>\n<p>Who You Are:</p>\n<ul>\n<li>Minimum of 5+ years in a physical security field. Law enforcement/military experience may be applicable if served in a physical security capacity.</li>\n</ul>\n<ul>\n<li>High school diploma or GED</li>\n</ul>\n<ul>\n<li>Degree in computer science, criminal justice, or a related field is preferable</li>\n</ul>\n<ul>\n<li>Strong analytical, diagnostic, and problem-solving skills</li>\n</ul>\n<ul>\n<li>Proficiency using office tools such as MAC/Windows/Google Workspace</li>\n</ul>\n<ul>\n<li>Prior Law Enforcement and Military background is considered to be valuable</li>\n</ul>\n<ul>\n<li>Applicants must have work authorization that does not require sponsorship from the company now or in the future</li>\n</ul>\n<p>Preferred:</p>\n<ul>\n<li>Electronic Physical Security Certifications, such as Genetec, Axis</li>\n</ul>\n<ul>\n<li>Professional certification (e.g. PSP, CPP, CPTED, etc.)</li>\n</ul>\n<ul>\n<li>IT and computer networking experience</li>\n</ul>\n<ul>\n<li>Prior experience as a people manager and team leader</li>\n</ul>\n<ul>\n<li>Physical Security design experience</li>\n</ul>\n<ul>\n<li>Project management experience</li>\n</ul>\n<p>Why Us?</p>\n<p>We work hard, have fun, and move fast!</p>\n<p>We&#39;re in an exciting stage of hyper-growth that you will not want to miss out on.</p>\n<p>We&#39;re not afraid of a little chaos, and we&#39;re constantly learning.</p>\n<p>Our team cares deeply about how we build our product and how we work together, which is represented through our core values:</p>\n<ul>\n<li>Be Curious at Your Core</li>\n</ul>\n<ul>\n<li>Act Like an Owner</li>\n</ul>\n<ul>\n<li>Empower Employees</li>\n</ul>\n<ul>\n<li>Deliver Best-in-Class Client Experiences</li>\n</ul>\n<ul>\n<li>Achieve More Together</li>\n</ul>\n<p>We support and encourage an entrepreneurial outlook and independent thinking.</p>\n<p>We foster an environment that encourages collaboration and provides the opportunity to develop innovative solutions to complex problems.</p>\n<p>As we get set for takeoff, the growth opportunities within the organization are constantly expanding.</p>\n<p>You will be surrounded by some of the best talent in the industry, who will want to learn from you, too.</p>\n<p>Come join us!</p>\n<p>CoreWeave is a fast growth startup, and the selected candidate is willing to be flexible for when they are needed, as Physical Security supports the business to perform at top performance.</p>\n<p>There will be times where the candidate will need to be available outside of regular business hours to support critical issues or meetings.</p>\n<p>Our compensation reflects the cost of labor across several US geographic markets.</p>\n<p>The base pay for this position ranges from $79,000-$93,000.</p>\n<p>Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience.</p>\n<p>What We Offer</p>\n<p>The range we&#39;ve posted represents the typical compensation range for this role.</p>\n<p>To determine actual compensation, we review the market rate for each candidate which can include a variety of factors.</p>\n<p>These include qualifications, experience, interview performance, and location.</p>\n<p>In addition to a competitive salary, we offer a variety of benefits to support your needs, including:</p>\n<ul>\n<li>Medical, dental, and vision insurance</li>\n</ul>\n<ul>\n<li>100% paid for by CoreWeave</li>\n</ul>\n<ul>\n<li>Company-paid Life Insurance</li>\n</ul>\n<ul>\n<li>Voluntary supplemental life insurance</li>\n</ul>\n<ul>\n<li>Short and long-term disability insurance</li>\n</ul>\n<ul>\n<li>Flexible Spending Account</li>\n</ul>\n<ul>\n<li>Health Savings Account</li>\n</ul>\n<ul>\n<li>Tuition Reimbursement</li>\n</ul>\n<ul>\n<li>Ability to Participate in Employee Stock Purchase Program (ESPP)</li>\n</ul>\n<ul>\n<li>Mental Wellness Benefits through Spring Health</li>\n</ul>\n<ul>\n<li>Family-Forming support provided by Carrot</li>\n</ul>\n<ul>\n<li>Paid Parental Leave</li>\n</ul>\n<ul>\n<li>Flexible, full-service childcare support with Kinside</li>\n</ul>\n<ul>\n<li>401(k) with a generous employer match</li>\n</ul>\n<ul>\n<li>Flexible PTO</li>\n</ul>\n<ul>\n<li>Catered lunch each day in our office and data center locations</li>\n</ul>\n<ul>\n<li>A casual work environment</li>\n</ul>\n<ul>\n<li>A work culture focused on innovative disruption</li>\n</ul>\n<p>Our Workplace</p>\n<p>While we prioritize a hybrid work environment, remote work may be considered for candidates located more than 30 miles from an office, based on role requirements for specialized skill sets.</p>\n<p>New hires will be invited to attend onboarding at one of our hubs within their first month.</p>\n<p>Teams also gather quarterly to support collaboration.</p>\n<p>California Consumer Privacy Act - California applicants only</p>\n<p>CoreWeave is an equal opportunity employer, committed to fostering an inclusive and supportive workplace.</p>\n<p>All qualified applicants and candidates will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, veteran status, or genetic information.</p>\n<p>As part of this commitment and consistent with the Americans with Disabilities Act (ADA), CoreWeave will ensure that qualified applicants and candidates with disabilities are provided reasonable accommodations for the hiring process, unless such accommodation would cause an undue hardship.</p>\n<p>If reasonable accommodation is needed, please contact: careers@coreweave.com.</p>\n<p>Export Control Compliance</p>\n<p>This position requires access to export controlled information.</p>\n<p>To conform to U.S. Government export regulations, applicants must be a U.S. citizen or lawful permanent resident.</p>\n<p>Applicants will be required to provide proof of citizenship or lawful permanent residency prior to commencing employment.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_e743e74f-19e","directApply":true,"hiringOrganization":{"@type":"Organization","name":"CoreWeave","sameAs":"https://www.coreweave.com","logo":"https://logos.yubhub.co/coreweave.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/coreweave/jobs/4645153006","x-work-arrangement":"hybrid","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":"$79,000-$93,000","x-skills-required":["Physical Security","Security Policy","Access Management","Audit Reporting","Least Privilege","Security Training","Inspection and Audit","Lead Investigation","Customer Service","Time Management","Technical Writing","Presentation","Documentation"],"x-skills-preferred":["Electronic Physical Security Certifications","Professional Certification","IT and Computer Networking Experience","People Management","Team Leadership","Physical Security Design","Project Management"],"datePosted":"2026-04-18T15:47:24.860Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Sandusky, OH"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Physical Security, Security Policy, Access Management, Audit Reporting, Least Privilege, Security Training, Inspection and Audit, Lead Investigation, Customer Service, Time Management, Technical Writing, Presentation, Documentation, Electronic Physical Security Certifications, Professional Certification, IT and Computer Networking Experience, People Management, Team Leadership, Physical Security Design, Project Management","baseSalary":{"@type":"MonetaryAmount","currency":"USD","value":{"@type":"QuantitativeValue","minValue":79000,"maxValue":93000,"unitText":"YEAR"}}},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_bdf949b3-c66"},"title":"Databricks Enterprise Lead Security Architect -   Principal IT Software Engineer","description":"<p>We are seeking a highly skilled Lead Security Architect to join our team within Databricks IT. As a Lead Security Architect, you will be responsible for designing and implementing a secure and scalable architecture to protect our corporate assets. You will focus on key areas of IT security, including Identity and Access Management, Zero Trust architecture, and endpoint security, while also working to secure critical business applications and sensitive data.</p>\n<p>Your expertise will be crucial in building proactive security strategies that align with our business goals and protect the company from an ever-evolving threat landscape. This position demands deep expertise in security principles and a comprehensive understanding of the entire infrastructure stack and IAM systems to design robust, future-ready security solutions.</p>\n<p>You will be instrumental in safeguarding our systems&#39; resilience and integrity against ever-evolving cyber threats. You will play a critical role in shaping our security strategy for modern platforms across AWS, Azure, GCP, network infrastructure, storage, and SaaS solutions, help establish a strong least privilege (PoLP) model, providing specialized IAM expertise, and securely supporting SaaS with sensitive information (NHI).</p>\n<p>You will also be a key contributor in building our internal strategy for secure AI development. Additionally, you will support the secure integration of SaaS platforms such as Google Workspace, collaboration tools, and GTM systems, maintaining alignment with enterprise security standards.</p>\n<p>Close collaboration with cross-functional teams is essential to embed security throughout the technology stack.</p>\n<p>The impact you will have:</p>\n<ul>\n<li>Design and implement secure, scalable reference architectures for the Databricks IT across Cloud Infra (Compute, DBs, Network, Storage), SaaS, Custom Built Applications, Data &amp; AI systems.</li>\n<li>Establish and enforce security controls for: Core Security Areas: - Databricks Workspace Management: Workspace isolation, Unity Catalog for data governance.</li>\n<li>Secure Networking: VPC configs, PrivateLink, IP Allow Lists.</li>\n<li>Identity and Access Management (IAM): SSO, SCIM user provisioning, RBAC via Un, Strong MFA best practices for enterprise identities and customers.</li>\n<li>Data Encryption: At rest and in transit, customer-managed keys for critical assets.</li>\n<li>Data Exfiltration Prevention: Admin console settings, VPC endpoint controls.</li>\n<li>Cluster Security: User isolation, compliance with enhanced security monitoring/Compliance Security Profiles (HIPAA, PCI-DSS, FedRAMP).</li>\n<li>Offensive Security: Test and challenge the effectiveness of the organization’s security defenses by mimicking the tactics, techniques, and procedures used by actual attackers.</li>\n<li>Specialized Security Functions: - Non-human Identity Management: Design and implement secure authentication and authorization for automated systems (service accounts, API keys, machine identities), focusing on automation and integration with existing identity management systems.</li>\n<li>IAM Best Practices: Develop and document comprehensive Identity and Access Management policies, including user provisioning, de-provisioning, access reviews, privileged access management, and multi-factor authentication, ensuring security and compliance.</li>\n<li>Data Loss Prevention (DLP): Implement DLP solutions to identify, monitor, and protect sensitive data across endpoints, networks, and cloud environments, preventing unauthorized access, use, or transmission.</li>\n<li>SaaS Proxy Design and Implementation: Design and implement cloud-based proxies for SaaS applications (SASE solutions) to provide secure access, enforce security policies, monitor user activity, and protect against threats.</li>\n<li>Cloud Infrastructure Best Practices: Establish and document best practices for VPC configurations, cloud networking, and infrastructure as code using Terraform, ensuring secure network segmentation, routing, firewalls, and VPNs for consistent, automated, and secure deployments.</li>\n<li>Least Privilege Access for Data Security: Design and implement data security controls based on the principle of least privilege, ensuring users and systems have only the minimum necessary access through fine-grained controls, data classification, and regular access reviews.</li>\n<li>Guide internal IT on Databricks’ security and compliance certifications (SOC 2, ISO 27001/27017/27018, HIPAA, PCI-DSS, FedRAMP), and support security reviews/audits.</li>\n<li>Support incident response, vulnerability management, threat modeling, and red teaming using audit logs, cluster policies, and enhanced monitoring.</li>\n<li>Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs to enhance security posture.</li>\n<li>Advise executive leadership on security architecture, risks, and mitigation.</li>\n<li>Mentor security engineers and developers on secure design and best practices.</li>\n</ul>\n<p>What we look for:</p>\n<ul>\n<li>Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field</li>\n<li>Master’s degree in Computer Science specifically in Information Security or a related discipline is strongly preferred</li>\n<li>Minimum 12 years in cybersecurity, with 5+ in security architecture or senior technical roles.</li>\n<li>Experience in FedRAMP High systems/ GovCloud preferred.</li>\n<li>Must have direct experience designing and securing enterprise platforms in complex multi-cloud environments, deep knowledge of enterprise architecture and security features (control plane/data plane separation, network infra, workspace hardening, network segmentation/ isolation), and hands-on experience automating security controls with Terraform and scripting.</li>\n<li>Proven expertise securing data analytics pipelines, SaaS integrations, and workload isolation in enterprise ecosystems.</li>\n<li>Experience with Enterprise Security Analysis Tools and monitoring/security policy optimization.</li>\n<li>Deep experience in threat modeling, design, PoC, and implementing large-scale enterprise solutions.</li>\n<li>Extensive hands-on experience in AWS cloud security, network security, with knowledge of Zero Trust, Data Protection, and Appsec.</li>\n<li>Strong understanding of enterprise IAM systems (Okta, SailPoint, VDI, Entra ID) and Data Protection.</li>\n<li>Expert experience with SIEM platforms, XDR, and cloud-native threat detection tools.</li>\n<li>Expert in web application security, OWASP, API security, and secure design and testing.</li>\n<li>Hands-on experience with security automation is required, with proficiency in AI-assisted development, Python, Cursor, Lambda, Terraform, or comparable scripting/IaC tools for operational efficiency.</li>\n<li>Industry certifications like CISSP, CCSP, CEH, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Professional, or AWS Certified Advanced Networking – Specialty (or equivalent) are preferred.</li>\n<li>Ability to influence stakeholders and drive alignment.</li>\n<li>Strategic thinker with a passion for security innovation, continuous improvement, and building scalable defenses.</li>\n</ul>\n<p>Pay Range Transparency</p>\n<p>Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipates utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above.</p>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_bdf949b3-c66","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Databricks","sameAs":"https://databricks.com","logo":"https://logos.yubhub.co/databricks.com.png"},"x-apply-url":"https://job-boards.greenhouse.io/databricks/jobs/8207910002","x-work-arrangement":"onsite","x-experience-level":"senior","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["Security Architecture","Identity and Access Management","Zero Trust","Endpoint Security","Data Encryption","Data Exfiltration Prevention","Cluster Security","Offensive Security","Non-human Identity Management","IAM Best Practices","Data Loss Prevention","SaaS Proxy Design and Implementation","Cloud Infrastructure Best Practices","Least Privilege Access for Data Security","Guide internal IT on Databricks’ security and compliance certifications","Support incident response, vulnerability management, threat modeling, and red teaming","Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs","Advise executive leadership on security architecture, risks, and mitigation","Mentor security engineers and developers on secure design and best practices"],"x-skills-preferred":["Terraform","Python","Cursor","Lambda","AWS cloud security","Network security","Data Protection","Appsec","SIEM platforms","XDR","cloud-native threat detection tools","Web application security","OWASP","API security","Secure design and testing","AI-assisted development","Security automation","Scripting/IaC tools","CISSP","CCSP","CEH","AWS Certified Security – Specialty","AWS Certified Solutions Architect – Professional","AWS Certified Advanced Networking – Specialty"],"datePosted":"2026-04-18T15:45:19.828Z","jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Mountain View, California; San Francisco, California"}},"employmentType":"FULL_TIME","occupationalCategory":"Engineering","industry":"Technology","skills":"Security Architecture, Identity and Access Management, Zero Trust, Endpoint Security, Data Encryption, Data Exfiltration Prevention, Cluster Security, Offensive Security, Non-human Identity Management, IAM Best Practices, Data Loss Prevention, SaaS Proxy Design and Implementation, Cloud Infrastructure Best Practices, Least Privilege Access for Data Security, Guide internal IT on Databricks’ security and compliance certifications, Support incident response, vulnerability management, threat modeling, and red teaming, Stay current on industry trends and emerging threats in GenAI, AI Agentic flow, MCPs, Advise executive leadership on security architecture, risks, and mitigation, Mentor security engineers and developers on secure design and best practices, Terraform, Python, Cursor, Lambda, AWS cloud security, Network security, Data Protection, Appsec, SIEM platforms, XDR, cloud-native threat detection tools, Web application security, OWASP, API security, Secure design and testing, AI-assisted development, Security automation, Scripting/IaC tools, CISSP, CCSP, CEH, AWS Certified Security – Specialty, AWS Certified Solutions Architect – Professional, AWS Certified Advanced Networking – Specialty"},{"@context":"https://schema.org","@type":"JobPosting","identifier":{"@type":"PropertyValue","name":"YubHub","value":"job_ffc8f1e0-500"},"title":"FBS Information Security Analyst (SSPM experience)","description":"<p>FBS – Farmer Business Services is part of Farmers operations with the purpose of building a global approach to identifying, recruiting, hiring, and retaining top talent. By combining international reach with US expertise, we build diverse and high-performing teams that are equipped to thrive in today’s competitive marketplace.</p>\n<p>We believe that the foundation of every successful business lies in having the right people with the right skills. That is where we come in—helping Farmers build a winning team that delivers consistent and sustainable results.</p>\n<p>Since we don’t have a local legal entity, we’ve partnered with Capgemini, which acts as the Employer of Record. Capgemini is responsible for managing local payroll and benefits.</p>\n<p><strong>What to expect on your journey with us:</strong></p>\n<ul>\n<li>A solid and innovative company with a strong market presence</li>\n</ul>\n<ul>\n<li>A dynamic, diverse, and multicultural work environment</li>\n</ul>\n<ul>\n<li>Leaders with deep market knowledge and strategic vision</li>\n</ul>\n<ul>\n<li>Continuous learning and development</li>\n</ul>\n<p><strong>Requirements:</strong></p>\n<ul>\n<li>Key member of the Platform Security team and will help drive security for our Software-as-a-Service (SaaS) platforms.</li>\n</ul>\n<ul>\n<li>This role focuses on ensuring SaaS applications are configured securely, users have appropriate access, and that third-party integrations don&#39;t introduce vulnerabilities.</li>\n</ul>\n<ul>\n<li>This role will also ensure compliance with relevant policies and regulations.</li>\n</ul>\n<ul>\n<li>Support onboarding of discovered SaaS platforms to SaaS Security Posture Management (SSPM) tool</li>\n</ul>\n<ul>\n<li>Monitor SSPM tool to review and triage alerts for onboarded applications</li>\n</ul>\n<ul>\n<li>Review the security of 3rd party integrations to prevent data breaches and other security risks</li>\n</ul>\n<ul>\n<li>Tune alerting rules to minimize false positives</li>\n</ul>\n<ul>\n<li>Ensure required access controls are in place for users and service accounts</li>\n</ul>\n<ul>\n<li>Assist with reporting to ensure compliance with policies and regulatory requirements</li>\n</ul>\n<ul>\n<li>Collaborate with application owners and IT teams to ensure security best practices are followed</li>\n</ul>\n<ul>\n<li>Review infrastructure as code changes to ensure resources are provisioned using principles of least privilege and meet security best practices</li>\n</ul>\n<p><strong>Benefits:</strong></p>\n<p>This position comes with a competitive compensation and benefits package.</p>\n<ul>\n<li>A competitive salary and performance-based bonuses.</li>\n</ul>\n<ul>\n<li>Comprehensive benefits package.</li>\n</ul>\n<ul>\n<li>Flexible work arrangements (remote and/or office-based).</li>\n</ul>\n<ul>\n<li>You will also enjoy a dynamic and inclusive work culture within a globally renowned group.</li>\n</ul>\n<ul>\n<li>Private Health Insurance.</li>\n</ul>\n<ul>\n<li>Paid Time Off.</li>\n</ul>\n<ul>\n<li>Training &amp; Development opportunities in partnership with renowned companies.</li>\n</ul>\n<p style=\"margin-top:24px;font-size:13px;color:#666;\">XML job scraping automation by <a href=\"https://yubhub.co\">YubHub</a></p>","url":"https://yubhub.co/jobs/job_ffc8f1e0-500","directApply":true,"hiringOrganization":{"@type":"Organization","name":"Capgemini","sameAs":"https://jobs.workable.com","logo":"https://logos.yubhub.co/view.com.png"},"x-apply-url":"https://jobs.workable.com/view/uiFzPRmdBAZBFtUvRjAssY/remote-fbs-information-security-analyst-(sspm-experience)-in-mexico-at-capgemini","x-work-arrangement":"remote","x-experience-level":"mid","x-job-type":"full-time","x-salary-range":null,"x-skills-required":["SSPM","SaaS","security","compliance","infrastructure as code","least privilege","security best practices"],"x-skills-preferred":[],"datePosted":"2026-03-09T16:59:20.292Z","jobLocationType":"TELECOMMUTE","employmentType":"FULL_TIME","occupationalCategory":"IT","industry":"Technology","skills":"SSPM, SaaS, security, compliance, infrastructure as code, least privilege, security best practices"}]}