CARET brings the latest in technology and automation to over 10,000 legal and accounting firms, empowering highly skilled professionals to refocus their expertise on what truly matters. CARET harnesses powerful and secure practice management, document automation, and payment processing to take firms, professionals, and their clients further.
Our team-defined values guide how we show up for each other, for our partners, and for our customers:
We succeed together
We embrace progress
We care big
We create space
To join our remote-first, engage from anywhere team, visit getcaret.com/careers
Requirements
The Security Engineer / Analyst is a fully remote position on the Information Security Team at C^RET Legal, reporting to the Security Manager inside the Technology organization. This position plays a key role in the success of the Cyber Security & Compliance Programs that keep C^RET’s business enterprises secure while protecting the C^RET brand with our loyal customer base. The person in this role will be responsible for various aspects related to the day-to-day operations of the Security and Compliance Dept. These will include coordination with various matrix’d teams within the organization, as well as operations, maintenance, and automation of various capabilities that encompass the “defense in depth” and “zero trust” services that support our customers. The person in this role will work to continually improve C^RET’s Security.
Job Description:
The Security Engineer / Analyst must have strong and demonstrated aptitude for Cyber Security, Physical Security, and IT, supported by extensive and diverse experience in leading high-profile technical programs and projects. Responsibilities will span into the domain knowledge of IT Security, IT Engineering, IT Operations and Application Development. Their responsibilities include, but are not limited to
Responsibilities:
Design, implement, manage, and automate robust cybersecurity solutions to safeguard our networks, systems, and applications.
Conduct thorough security assessments and risk analysis to identify vulnerabilities and recommend appropriate measures for mitigation.
Collaborate with cross-functional teams to integrate security best practices into the development lifecycle of applications and infrastructure.
Monitor and respond to security incidents, conduct incident investigations, and implement incident response strategies.
Stay abreast of emerging threats and vulnerabilities, and proactively implement measures to counteract potential risks.
Develop and deliver cybersecurity training programs to educate staff on security best practices and promote a security-conscious culture.
Evaluate and recommend new technologies, tools, and methodologies to enhance our cybersecurity posture.
Conduct regular security audits and assessments to ensure compliance with industry standards and regulatory requirements.
Provide expertise and guidance on security-related matters to internal stakeholders and leadership.
Requirement Skills / Abilities:
Minimum 3+ years of continuous experience in Information Technology (IT) security including IT security engineering, operations and/or compliance.
Deep technical knowledge of Cyber Security and IT infrastructure is a must: 1) Cyber Security frameworks (ISO, NIST, CIS, etc.)
Security Architecture principles (Defense-in-Depth, Least Privilege, etc.)
Environments (Cloud (AWS, Azure), Networks, Endpoints, Mobile, etc.)
Security Program Phases (Risk Assessment, Architecture and Design, Implementation, Operations and Monitoring)
Strong organization and leadership skills with the ability to facilitate technical sessions and guide external teams.
Capable of communicating complex technical information to a non-technical audience and of communicating structured process requirements to a technical audience.
Certification in at least one of the following CISSP, CISA, and/or CISM.
Knowledge of NIST, CIS Top 18 and other applicable Security Industry Standards and Best Practices.
Scripting and Automation.
Bachelors or equivalent experience.
Benefits
Flexible PTO
Summer Fridays
No meeting Fridays
Medical, Dental, Paid Sick Days, Vision, and Supplemental Coverage
Flexible Spending Account
Health Savings Account
401(k) match
Equal Employment Opportunity: CARET is an Equal Opportunity, Affirmative Action Employer.
The compensation information below is provided in compliance with job posting disclosure requirements.
Pay range: $100,000 - $140,000 . Actual base pay will depend on varying circumstances, including the position, location, individual qualifications, market finances, and other operations business needs.
Depending on the position, compensation may also include commission, bonuses, etc. Potential for bonuses is based on company performance and potential for merit increases is based on performance.
#LI-Remote
#LI-AM2
#ProductsTech