Expoint – all jobs in one place
המקום בו המומחים והחברות הטובות ביותר נפגשים

דרושים Procurement Officer ב-United States

ממשו את הפוטנציאל שלכם בתעשיית ההייטק עם אקספוינט! חפשו הזדמנויות עבודה בתור Procurement Officer בUnited States והצטרפו לעוד אלפים שכבר מצאו עבודה בחברות המובילות. התחילו את המסע שלכם עוד היום ומצאו את הקריירה האידיאלית עבורכם בתור Procurement Officer עם אקספוינט.
חברה
אופי המשרה
קטגוריות תפקיד
שם תפקיד (1)
United States
אזור
עיר
נמצאו 1,310 משרות
24.11.2025
3M

3M Global Procurement Category Specialist Specialty Chemicals United States, Minnesota

Limitless High-tech career opportunities - Expoint
Procurement Sub-Category Leadership: Initiates and designs plans to implement Global procurement solutions that will achieve measurable business results. Assembles and leads multiple project teams to implement sourcing solutions. Establishes close...
תיאור:

The Impact You’ll Make in this Role

As a Global Procurement Category Specialist , you will have the opportunity to tap into your curiosity and collaborate with some of the most innovative people around the world. Here, you will make an impact by:

  • Procurement Sub-Category Leadership: Initiates and designs plans to implement Global procurement solutions that will achieve measurable business results. Assembles and leads multiple project teams to implement sourcing solutions. Establishes close working relationships with business unit management and suppliers on sourcing strategies and activities. Researches and understands the short and long-term market outlook for assigned materials and feedstocks. Performs complex contract negotiations. Proactively communicates project direction and status with key regional and/or business unit management. Recommends and influences management decisions in the area of sourcing solutions. Negotiates to resolve issues, implement strategies and ensure client satisfaction
  • Procurement Analysis and Design: Determines and implements solutions for multi-faceted situations regarding the distribution of business, negotiation or category strategy, supplier management, and external sources of supply. Develops cause and effect analysis and documentation. Develops and recommends tactical and strategic solutions to business unit clients and management
  • Procurement Process Improvement : Identifies and implements opportunities for process improvements that improve service, speed or cost, through analysis of sourcing information and metrics. Minimizes the total product and process cost by leading cost-reduction efforts and facilitating the implementation of innovative sourcing best practices. Recognizes impacts on related processes and ensures communication of issues and proposed solutions to appropriate business and process owners.

Your Skills and Expertise

To set you up for success in this role from day one, 3M requires (at a minimum) the following qualifications:

  • Bachelor’s degree or higher in Business, Supply Chain or Engineering (completed and verified prior to start)
  • Three (3) years of combined in sourcing, procurement, supply chain, or chemical & polymer engineering experience in a private, public, government, or military environment

Additional qualifications that could help you succeed even further in this role include:

  • Supplier relationship management
  • Negotiation experience
  • Strong writing skills
  • Strong collaboration skills with internal and external stakeholders
  • Project management training, experience and aptitude

Please note: your application may not be considered if you do not provide your education and work history, either by: 1) uploading a resume, or 2) entering the information into the application fields directly.


Please access the linked document by clicking select the country where you are applying for employment, and review. Before submitting your application, you will be asked to confirm your agreement with the terms.

Show more
21.11.2025
C

Couchbase Chief Information Security Officer CISO United States

Limitless High-tech career opportunities - Expoint
Develop, implement, and maintain an enterprise-wide information security strategy and governance framework aligned with organizational goals. Establish and maintain information security policies, standards, and procedures that support business continuity and...
תיאור:

Governance, Risk & Compliance

  • Develop, implement, and maintain an enterprise-wide information security strategy and governance framework aligned with organizational goals.
  • Establish and maintain information security policies, standards, and procedures that support business continuity and risk management. This includes continuing to build and enhance governance, privacy, and security frameworks to encompass AI/ML workloads and data pipelines, ensuring responsible, compliant, and secure adoption of AI technologies across the enterprise.
  • Oversee enterprise-wide security risk management, including assessments, and mitigation plans.
  • Ensure compliance with relevant information security frameworks and standards including but not limited to SOC 2, HIPAA, PCI DSS, ISO.
  • Collaborate with Legal and Compliance on evolving data privacy regulations (GDPR, CCPA, etc.) and integrate privacy by design across systems and products.

Security Operations

  • Direct day-to-day security operations, including monitoring, detection, and response to threats.
  • Lead security incident response planning and execution, acting as the senior point of escalation during security incidents.
  • Serve as the primary advisor to the executive team and Board on cybersecurity strategy, risk posture, and incident readiness.
  • Drive the identification and remediation of security vulnerabilities within defined SLAs.
  • Manage key performance metrics for security maturity, leveraging automation, analytics, and AI to drive continuous improvement across detection, response, and compliance.
  • Review, refine and mature existing security processes and tools, including but not limited to SIEM, DLP, vulnerability management, email security, end point security, penetration testing, threat hunting, threat analysis, security monitoring, and security incident response.
  • Oversee business continuity and disaster recovery planning, ensuring resilience across cloud and data center operations.

Product Security

  • Perform security software architecture review and integrate threat modeling and abuse cases into the SDLC; Advise and implement secure software architecture patterns.
  • Assess and architect security for SaaS/Cloud applications across AWS, GCP and Azure.
  • Drive the development and implementation of standard security review processes across the company that result in effective methods for reducing security risks before product releases.
  • Integrate application security tools within existing development, build, and deployment processes.
  • Oversee the execution of dynamic & static code scan reviews and run-time tests.
  • Own and manage the bug bounty program.
  • Assist with the planning and execution of application penetration tests.
  • Interface and collaborate with Engineering, Cloud, and SOC teams during security incidents.
  • Work with customers as needed, to explain or enhance any security policies or product related engineering.
  • Drive the remediation of security vulnerabilities in the products within defined SLAs.
  • Assist in completing RFP security questionnaires

Qualifications:

  • 15+ years of progressive experience in information security, risk management, or IT leadership, including at least 5 years in a senior security leadership role.
  • Proven track record leading enterprise-wide cybersecurity strategy and operations in a global, cloud-first technology company.
  • Solid understanding of secure coding principles (e.g., OWASP Top10, OWASP SAMM) and Agile software development practices.
  • Demonstrated experience with security in public cloud platforms (AWS, Azure, GCP), CNAPP (Sysdig, Wiz, etc), SAST, DAST, SCA, Networking (Firewalls, Switches, Access Points, etc.), Operating Systems (Linux, Mac, Windows), Secure Software Development, IAM, Key Management, Encryption, SIEM (Splunk, Rapid 7, Alienvault, etc.), DLP (Netskope, Checkpoint, Proofpoint, Symantec, etc), Email Security (Abnormal Security, Mimecast, etc.), and Endpoint Security (SentinelOne, CrowdStrike, etc.)
  • Strong background in application and product security, including secure software design, code analysis, penetration testing, and bug bounty management.
  • Must have strong collaborative skills, a growth mindset, and a willingness to make tomorrow better than today.
  • Industry Certifications such as CISSP, CISM, CCISO are preferred
  • Bachelor’s or Master’s degree in Computer Science, Information Security, or related field.

Base Pay Range

$217,000 - $255,000 USD

If you require reasonable accommodations during the recruitment process, please let your recruiter know—we’re happy to support you.

We value diverse educational and career backgrounds. If your experience aligns with the role’s goals—even if it doesn’t follow a traditional path—we’d love to hear from you.

Modern customer experiences need a flexible cloud database platform that can power applications spanning from cloud to edge and everything in between. Couchbase’s mission is to simplify how developers and architects develop, deploy and consume modern applications wherever they are. We have reimagined the database with our fast, flexible and affordable cloud database platform Capella, allowing organizations to quickly build applications that deliver premium experiences to their customers– all with best-in-class price performance. More than 30% of the Fortune 100 trust Couchbase to power their modern applications and build innovative new ones. See our recent awards to learn why Couchbase is a great place to work.We are honored to be a part of the Best Places to Work Award for and . Couchbase offers a total rewards approach to benefits that recognizes the value you create here, so that you in turn may best serve yourself and your family. Some benefits include:
  • Generous Time Off Program - Flexibility to care for you and your family
  • Wellness Benefits - A variety of world class medical plans to choose from, along with dental, vision, life insurance, and employee assistance programs*
  • Financial Planning - Retirement program* and Business Travel Insurance
  • Career Growth - Be valued, Create value approach
  • Fun Perks - An ergonomic and comfortable in-office / WFH setup. Food & Snacks for in-office employees.
  • And much more!
By using this website and submitting your information, you acknowledge our and understand your personal information may be processed in accordance with our following guidelines in your country of application.
Show more

משרות נוספות שיכולות לעניין אותך

19.11.2025
BOA

Bank Of America Credit Officer II - Covered United States, California, San Francisco

Limitless High-tech career opportunities - Expoint
Manages the credit process for a portfolio of clients. Negotiates credit documentation. Leads the credit and risk approval processes. Builds relationships with existing and prospective clients. Mentors and supports associates....
תיאור:

Job Description:

Job Description:

The Credit Officer II (CO II) is a highly skilled resource, providing expert level advisory guidance in the most complex, integrated debt capital solutions for commercial banking clients. Products include lines of credit, term loans, real estate loans, and syndicated loans. The CO II manages all of the ancillary credit exposure to clients. The CO II maintains knowledge of other BofA products including Investment Banking and Treasury Management that have credit exposure, and leverages product expertise to deliver the best possible and optimally integrated strategic solution for the client or prospect. This role reports to the Commercial Credit Manager or Executive and will be aligned to an Underwriting Team that supports the market.

Responsibilities:

  • Manages the credit process for a portfolio of clients

  • Negotiates credit documentation

  • Leads the credit and risk approval processes

  • Builds relationships with existing and prospective clients

  • Mentors and supports associates

  • Provides capital structure solutions

Skills:

  • Client Solutions Advisory

  • Financial Analysis

  • Loan Structuring

  • Risk Management

  • Underwriting

  • Account Management

  • Credit Documentation Requirements

  • Credit and Risk Assessment

  • Decision Making

  • Issue Management

  • Analytical Thinking

  • Coaching

  • Collaboration

  • Critical Thinking

  • Customer and Client Focus

Required Qualifications:

  • 10+ years of solid Commercial Banking Experience

  • Experience in financial analysis, structuring, underwriting and portfolio management

  • Analytical/technical skills, including financial accounting, modeling and loan structuring

  • Strong communication skills; ability to communicate vertically, horizontally, and externally

  • Industry knowledge across multiple sectors

BA/BS Degree Desired

1st shift (United States of America)

Show more

משרות נוספות שיכולות לעניין אותך

19.11.2025
BOA

Bank Of America Enterprise Lending Officer - San Diego United States, California, San Diego

Limitless High-tech career opportunities - Expoint
Provides exceptional client care by providing advice oriented solutions with Consumer Lending and Core Banking products. Engages in community development, outside sales activities, and external networking to responsibly grow client...
תיאור:


This job is responsible for providing Consumer Lending advice to new-to-bank clients and external business development. Key responsibilities include applying mortgage lending principles and familiarity of Realtor, Builder, and Community contacts local to the market. Job expectations include having successful track-records of delivering lending services to clients by demonstrating an understanding of credit, lending guidelines, and the mortgage process.
This position is subject to SAFE Act registration requirements. Pursuant to the SAFE Act requirements, all employees engaged in residential loan mortgage originations must register with the federal registry system and remain in good standing. Since this position requires SAFE Act registration, employees are required to register and to submit to the required SAFE Act background check and registration process. Failure to obtain and/or maintain SAFE Act registration may result in disciplinary action up to and including termination.

Responsibilities:

  • Provides exceptional client care by providing advice oriented solutions with Consumer Lending and Core Banking products
  • Engages in community development, outside sales activities, and external networking to responsibly grow client and market share
  • Understands lending processes and credit guidelines to best develop solutions for each client's needs
  • Manages daily client and loan pipelines with astute organization, follow up, and high degree of collaboration with loan fulfillment partners
  • Leverages digital solutions, providing clients with a choice in preferred service pathways
  • Maintains and adheres to all federal and state regulations and bank operational requirements, delivering compliant client advice conversations and fulfilling financial goals

Skills:

  • Business Development
  • Client Management
  • Customer and Client Focus
  • Prospecting
  • Risk Management
  • Account Management
  • Client Solutions Advisory
  • Credit and Risk Assessment
  • Pipeline Management
  • Referral Identification
  • Attention to Detail
  • Credit Documentation Requirements
  • Issue Management
  • Networking
  • Relationship Building


• Has 3+ years of experience in a loan origination role with a focus on generating self-sourced purchase business through a verifiable, established network of referral sources
• Demonstrated understanding of effectively managing a pipeline in order to deliver an exceptional client experience
• Has a strong knowledge of loan products Conventional, Jumbo and Government.
• Demonstrated ability to understand, analyze, and document income, assets and liabilities properly in order to qualify clients for specific loan products
• Demonstrated understanding of processing, underwriting and/or closing procedures
• Has a working knowledge of federal regulations governing real estate lending
• Ability to source clients independently and not rely on enterprise referrals with demonstrated success in generating business from external Centers of Influence real estate professionals, builders, and other external referral partners in a compliant manner as well as within bank policy.
• An ability to work independently
• Is a strong communicator, both written and verbal
• Is self-motivated and highly organized
• Can prioritize multiple competing tasks
• Uses appropriate interpersonal styles, communication methods and approaches to gain clients and keep them informed during the loan process
• Demonstrated understanding of the connection of the level of service provided being directly correlated to driving sales volume
• Can be flexible to work weekends and or extended hours as needed to serve clients
Desired Skills and Experience


• Familiarity with FHA and HUD guidelines
• Strong computer skills including MS applications and previous experience utilizing laptop technology for communication purposes including accessing rate, credit and loan status information
• Solid time management skills and the ability to organize, prioritize and perform multiple tasks simultaneously
• The ability to analyze and comprehend complex financial data and provide financial alternatives
• Professional and effective interpersonal skills
• An ability to take ownership, accountability and can demonstrate integrity
• Adaptability and can demonstrate flexibility
• A positive attitude
• Effective communication styles

The following laws or regulations restrict or prohibit the hiring of individuals with certain specified criminal history for the position Credit Solutions Advisor II: FDIC, Safe Act/Loan Originators

High School Diploma / GED / Secondary School or equivalent

1st shift (United States of America)

Show more

משרות נוספות שיכולות לעניין אותך

19.11.2025
EY

EY Supply Chain & Operations - ServiceNow Procurement Consultin... United States, New York, New York

Limitless High-tech career opportunities - Expoint
Lead the business process design of orchestration solutions enabled by ServiceNow. Collaborate with our ServiceNow technology consultants to ensure alignment between business processes and technical solutions. Analyze client procurement needs...
תיאור:

Supply Chain Operations – ServiceNow Procurement Consulting - Manager

We are seeking a manager with deep expertise in end-to-end Procurement and ServiceNow Source-to-Pay (S2P) capabilities. As a ServiceNow Procurement Consulting Manager, you will play a pivotal role in driving the design, implementation and optimization of procurement solutions for our clients. You will lead a team of consultants to deliver innovative solutions that enhance procurement processes and drive efficiency through the design and implementation of orchestration solutions enabled by ServiceNow. This position offers the chance to work closely with clients, understand their needs, and provide strategic guidance to help them achieve their procurement goals.

Your key responsibilities

As a manager in EY’s Procurement practice, you will:

  • Lead the business process design of orchestration solutions enabled by ServiceNow
  • Collaborate with our ServiceNow technology consultants to ensure alignment between business processes and technical solutions
  • Analyze client procurement needs and develop strategic designs that enhance efficiency and effectiveness
  • Design and implement AI-driven procurement solutions to optimize decision-making and process automation
  • Conduct workshops and training sessions to promote best practices in procurement and orchestration
  • Foster strong relationships with client stakeholders to ensure successful project delivery and client satisfaction
  • Provide thought leadership on procurement process optimization and orchestration strategies
  • Support business development initiatives by identifying opportunities for new solutions and enhancements
  • Ensure compliance with procurement policies and industry regulations throughout the design process
  • Mentor and guide team members in best practices for process design and implementation

Skills and attributes for success

  • Ability to think holistically across people, process, data, and technology to design next-generation solutions
  • Analytical mindset with a focus on process improvement and problem-solving.
  • Ability to manage multiple projects and priorities effectively
  • Deep understanding of ServiceNow's S2P capabilities and procurement best practices
  • Strong communication and storytelling skills with the ability to tailor technical insights for business audiences
  • Client-facing experience in shaping or selling transformation programs
  • Entrepreneurial mindset with the ability to thrive in ambiguous, fast-moving client environments
  • Strong leadership and team collaboration skills
  • Excellent communication and stakeholder management abilities

To qualify for the role, you must have

  • A bachelor’s degree in Supply Chain, Information Technology, or a related field
  • 5-8 years of experience in business process design, procurement consulting or ServiceNow S2P
  • Strong understanding of procurement processes and best practices
  • Proven experience with ServiceNow and its procurement solutions
  • Demonstrated experience in shaping and defining solutions for operational efficiency or digital enablement

Ideally, you’ll also have

  • Previous experience in a leadership role within a consulting environment
  • Experience with Agile methodologies and project management frameworks
  • Experience with other leading Procurement technology (Ariba, Coupa, etc.) and AI solutions
  • Consulting experience or involvement in multi-disciplinary transformation projects
  • Experience in change management and process optimization

What we offer you
At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn .

  • We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $128,400 to $235,300. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $154,000 to $267,400. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
  • Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
  • Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.


Show more

משרות נוספות שיכולות לעניין אותך

19.11.2025
EY

EY Supply Chain & Operations - Digital AI Procurement United States, New York, New York

Limitless High-tech career opportunities - Expoint
Manage implementation of procurement solutions throughout the full lifecycle of execution. Provide thought leadership and benchmarking. Lead and drive current state activities. Lead and drive future state end to end...
תיאור:

Job Description

As a Procurement Manager, you will support all aspects of client-facing procurement technology projects, which spans many leading solutions in the market (e.g. GEP, Zycus, and Zip). You will be expected to drive project initiatives and lead process design, implementation, problem solving, and project management activities that add value and results for our client base.

Typical responsibilities include:

Project Execution

  • Manage implementation of procurement solutions throughout the full lifecycle of execution
  • Provide thought leadership and benchmarking
  • Lead and drive current state activities
  • Lead and drive future state end to end process design sessions
  • Identify S2P business, technical, and integration requirements to support the implementation of S2P technologies.
  • Synthesize disparate data sources into insights and clear deliverables
  • Work together with clients to identify and interpret key project requirements
  • Develop and enhance relationships with client stakeholders
  • Create project plans and manage delivery of client project work
  • Coordinate with subject matter experts within and outside of the firm

Business Development

  • Support sales pursuits
  • Develop materials and thought leadership for go-to-market conversations

Travel Requirements:

Travel is required for this role and could vary from 10-50%

What we offer you
At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn .

  • We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $128,400 to $235,300. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $154,000 to $267,400. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
  • Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
  • Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.


Show more

משרות נוספות שיכולות לעניין אותך

19.11.2025
EY

EY Chief Information Security Officer CISO - US Government & Pu... United States, Virginia, Arlington

Limitless High-tech career opportunities - Expoint
The successful candidate will work with GPS engagement teams, supporting functions, and EY’s Client Technology and Global Information Security organizations to develop and maintain a security and compliance program across...
תיאור:

Responsibilities

  • The successful candidate will work with GPS engagement teams, supporting functions, and EY’s Client Technology and Global Information Security organizations to develop and maintain a security and compliance program across all environments, platforms and applications used or desired for use by GPS. Responsibilities include:
  • Strategy, Governance and Risk Management
  • Development and execution of a multiyear cybersecurity strategy and investment roadmap aligned to business objectives and federal contract requirements.
  • Development, management and maintenance of the GPS IT security risk management policy and/or procedural documentation mapped to NIST SP 800-37 (RMF), NIST SP 80053, NIST SP 800171, NIST SP 800161 (CSCRM), and NIST SP 800218 (SSDF)
  • Ownership of the enterprise risk assessment (ERA), business impact analysis (BIA), and security metrics; present posture and material risk to the COO on a recurring cadence.

Defense Industrial Base Compliance (Classified & Unclassified)

  • Manage GPS compliance with DFARS 252.204-7012, 252.204-7020, and 252.204-7021. This includes:
    • Leading DFARS/CMMC readiness and ongoing compliance.
    • Serving as the Affirming Official (AO) and maintaining an accurate SPRS selfassessment score with defensible Plans of Action and Milestones (POAMs).
    • Achieving and maintaining CMMC certification at level 2.
    • Overseeing management and maintenance of POAMs.
  • Ensure systems operated for the government are designed properly and assessed against the appropriate requirements such as FedRAMP, Cloud Computing Security Requirements Guide, IRS 1075, and MARS-E.
  • Ensure safeguarding and incident reporting obligations for CUI (e.g., DFARS 252.2047012 72hour reporting) are met; coordinate with DC3/DIBNet and affected customers when necessary.
  • Oversee NISPOM compliance for classified systems; partner with FSO to achieve and maintain Authorizations to Operate (ATOs).
  • Ensure proper handling of exportcontrolled data (ITAR/EAR).
  • Prepare for and lead Program through contractually required assessments and customer audits; keep evidence, policies, configurations, and logs auditready.
  • Respond to government inspections or audits in coordination with EY Information Security and Risk Management.

Secure Cloud, Identity & Enterprise Platforms

  • Own security architecture and controls for Azure Government (Azure Gov) and Microsoft 365 GCC High tenants, including Conditional Access, PIM/PAM, encryption, logging/retention, and data governance for CUI.
  • Implement Zero Trust principles across identity, endpoints, networks, and workloads; drive continuous verification and leastprivilege.
  • Deploy and operate EDR/XDR, SIEM/SOAR, DLP, CASB/SSE/SASE, MDM, key management/HSM, and vulnerability/configuration management at scale.
  • Oversee user authorization process and ongoing attestation of user authorization and access.
  • Assist to resolve GPS practitioners’ access or other issues with Enclave environments.
  • Ongoing development, coordination and sustainment of Information Security Continuous Monitoring (ISCM) Program across all applications within the environment.

DevSecOps & Secure SDLC

  • Establish a software security program aligned to NIST SSDF (SP 800218) and EO 14028 expectations; integrate security into SDLC across GitHub and Azure DevOps.
  • Govern AppSec tooling and policy: SAST (e.g., Checkmarx), DAST (e.g., Qualys/AppScan), SCA/OSS (e.g., Mend), IaC/container/K8s scanning, and Wiz/Wiz Code; enforce buildtime gates and remediation SLAs.
  • Require SBOM generation, artifact signing/provenance (e.g., SLSA targets), and secrets management across all repositories and pipelines.

Detection, Response & Resilience

  • Develop, manage and maintain GPS incident response program.
  • Lead SOC and CSIRT functions: 24×7 monitoring, threat intelligence, purple/redteam exercises, and executive tabletop drills.
  • Maintain and test the Incident Response Plan and Cyber Crisis Playbook, including regulatory/customer communications and forensics preservation.

Effective Business Integration

  • Ensure development of fit-for-purpose solutions that support the business activities.
  • Manage integration of Firm applications into the GPS Enclave environment.
  • Understand and facilitate communication of EY’s IT disaster recovery and business continuity plans to GPS clients, potential clients and engagement teams (including engagement team responsibilities).
  • Augment existing Client Security Assurance reviews of data protection requirements contained in RFPs/RFQs to adequately respond, and assist in development of GPS client security and data protection (confidentiality) plans.
  • Monitor regulatory or other developments in INFOSEC principles, regulatory requirements and leading practices.

Leadership, Team and Budget

  • Role model a leadership style that brings infrastructure, application and cybersecurity professionals together to collaborate constructively on the design, implementation and operation of controls.
  • Build and mentor a highperforming organization spanning Policy/GRC, AppSec/DevSecOps, Security Engineering/Architecture, SOC/IR, and ThirdParty & SupplyChain Risk.
  • Own the cybersecurity budget and vendor portfolio; rationalize tools and services for value, performance, and compliance.
  • Participate in purchasing and enhancement of third-party tools for GPS.
  • Augment and potentially streamline existing Vendor Supplier Risk Assurance Program during evaluation of subcontractor compliance with applicable cybersecurity and data protection clauses.
  • Drive a securityfirst culture: ongoing training, phishing simulations, secure coding education, and leadership engagement including data protection and awareness and role-based training programs.
  • Coordinate and respond to annual (or more frequent) independent risk assessments and cyber security reviews.

Qualifications:

  • 12+ years of progressive cybersecurity leadership, including 5+ years at the enterprise or businessunit executive level.
  • 5+ years FISMA related experience
  • Bachelor’s degree in IT-related field or bachelor’s degree in non-IT related field with a total of 10 years of information security experience
  • Master’s degree preferred
  • Ability to obtain and maintain Top Secret clearance
  • US citizenship required
  • Clearance: The ability to obtain and maintain top secret required
  • Thorough knowledge and understanding of:
    • FAR 52.204-21 Basic Safeguarding of Covered Contractor Information Systems
    • DFARS 252.204-7012, Safeguarding Covered Defense Information and Cyber Incident Reporting
    • NIST SP 800-171, Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations
    • NIST SP 800-53, Security and Privacy Controls for Federal Information Systems and Organizations
    • GSAM 552.239-70, Information Technology Security Plan and Security Authorization, 552.239-71, Security Requirements for Unclassified Information Technology Resources and similar clauses in agency FAR supplements
    • FISMA
  • Specialized knowledge and experience with the implementation of the NIST Special Publication (SP) 800 family of publications, particularly those associated with the Risk Management Framework
  • Proven experience in the Defense Industrial Base with DFARS/CMMC and NIST SP 800171 implementation and audits (including POA&M and SPRS management).
  • Experience with FEDRAMP compliance authorization and monitoring
  • Deep expertise securing Azure Government and Microsoft 365 GCC High environments
  • Experience working with other Government cloud communities, including AWS
  • Experience working with classified environments, achieving/maintaining ATOs, overseeing classified systems under NISPOM and DoD RMF, and working understanding of SCIF operations
  • Knowledge and experience with vulnerability scanning execution, assessment, and analysis
  • Knowledge and experience of networks, including LAN and WAN
  • Knowledge and experience with application security, database security, and network security
  • Experience with evaluating system, network, or infrastructure security controls against requirements such as FISMA, FIPS, and NIST guidelines
  • Handson leadership of DevSecOps and software security programs covering GitHub/Azure DevOps/Jenkins with SAST/DAST/SCA, IaC/container security, SBOMs, and supplychain controls.
  • Demonstrated analytical, problem-solving, organizational, interpersonal and communication skills required.
  • The ability to collaborate effectively with diverse stakeholders, including client-facing, legal, finance and contracting teams, executives, engineers, customers and assessors on a wide variety of tasks, as needed.
  • Ability to foster professionalism and demonstrate integrity and confidentiality in all actions.
  • Ability to demonstrate flexibility when required, sense urgency, organize and prioritize work, and achieve against tight deadlines.
  • The ability to interpret and communicate regulatory requirements related to cybersecurity and data protection.
  • Possession of excellent written/verbal communications skills.
  • Possession of excellent analytical skills, including strict attention to detail.
  • Ability to assess and weigh current and evolving security threats in an operational environment
  • Possession of Information Systems Security Professional certification (CISSP)
  • Certifications such as CISSP, CISM, CCISO, CCSP, CRISC, CISA, PMP, and relevant GIAC credentials preferred

What we offer you

  • We offer a comprehensive compensation and benefits package where you’ll be rewarded based on your performance and recognized for the value you bring to the business. The base salary range for this job in all geographic locations in the US is $235,700 to $466,700. The base salary range for New York City Metro Area, Washington State and California (excluding Sacramento) is $282,900 to $530,400. Individual salaries within those ranges are determined through a wide variety of factors including but not limited to education, experience, knowledge, skills and geography. In addition, our Total Rewards package includes medical and dental coverage, pension and 401(k) plans, and a wide range of paid time off options.
  • Join us in our team-led and leader-enabled hybrid model. Our expectation is for most people in external, client serving roles to work together in person 40-60% of the time over the course of an engagement, project or year.
  • Under our flexible vacation policy, you’ll decide how much vacation time you need based on your own personal circumstances. You’ll also be granted time off for designated EY Paid Holidays, Winter/Summer breaks, Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.


Show more

משרות נוספות שיכולות לעניין אותך

Limitless High-tech career opportunities - Expoint
Procurement Sub-Category Leadership: Initiates and designs plans to implement Global procurement solutions that will achieve measurable business results. Assembles and leads multiple project teams to implement sourcing solutions. Establishes close...
תיאור:

The Impact You’ll Make in this Role

As a Global Procurement Category Specialist , you will have the opportunity to tap into your curiosity and collaborate with some of the most innovative people around the world. Here, you will make an impact by:

  • Procurement Sub-Category Leadership: Initiates and designs plans to implement Global procurement solutions that will achieve measurable business results. Assembles and leads multiple project teams to implement sourcing solutions. Establishes close working relationships with business unit management and suppliers on sourcing strategies and activities. Researches and understands the short and long-term market outlook for assigned materials and feedstocks. Performs complex contract negotiations. Proactively communicates project direction and status with key regional and/or business unit management. Recommends and influences management decisions in the area of sourcing solutions. Negotiates to resolve issues, implement strategies and ensure client satisfaction
  • Procurement Analysis and Design: Determines and implements solutions for multi-faceted situations regarding the distribution of business, negotiation or category strategy, supplier management, and external sources of supply. Develops cause and effect analysis and documentation. Develops and recommends tactical and strategic solutions to business unit clients and management
  • Procurement Process Improvement : Identifies and implements opportunities for process improvements that improve service, speed or cost, through analysis of sourcing information and metrics. Minimizes the total product and process cost by leading cost-reduction efforts and facilitating the implementation of innovative sourcing best practices. Recognizes impacts on related processes and ensures communication of issues and proposed solutions to appropriate business and process owners.

Your Skills and Expertise

To set you up for success in this role from day one, 3M requires (at a minimum) the following qualifications:

  • Bachelor’s degree or higher in Business, Supply Chain or Engineering (completed and verified prior to start)
  • Three (3) years of combined in sourcing, procurement, supply chain, or chemical & polymer engineering experience in a private, public, government, or military environment

Additional qualifications that could help you succeed even further in this role include:

  • Supplier relationship management
  • Negotiation experience
  • Strong writing skills
  • Strong collaboration skills with internal and external stakeholders
  • Project management training, experience and aptitude

Please note: your application may not be considered if you do not provide your education and work history, either by: 1) uploading a resume, or 2) entering the information into the application fields directly.


Please access the linked document by clicking select the country where you are applying for employment, and review. Before submitting your application, you will be asked to confirm your agreement with the terms.

Show more
תכננו את מהלך הקריירה הבא שלכם בתעשיית ההייטק עם אקספוינט! הפלטפורמה שלנו מציעה מגוון רחב של משרות Procurement Officer באזור United States, ומעניקה לכם גישה לחברות הטובות ביותר בתחום. בין אם אתם מחפשים אתגר חדש או שינוי נוף, אקספוינט תקל על מציאת התאמת העבודה המושלמת עבורכם. עם מנוע החיפוש הקל לשימוש שלנו, תוכלו למצוא במהירות הזדמנויות עבודה ולחבור לחברות מובילות. הירשמו היום ועשו את הצעד הבא בקריירת ההיי-טק שלכם עם Expoint.