1

Cybersecurity Rotational Program Jobs in Arizona

... cybersecurity program from the ground up, with a primary focus on software supply chain security ... rotation schedule for critical security incidents and support incident management processes for ...

CNC/Laser Machine Operator

Chandler, AZ · On-site

$19 - $23.50/hr

Familiarity with linear coordinate systems and offsets; experience with multi-axis rotations and ... Cybersecurity and Compliance: All employees are required to comply with the company's cybersecurity ...

Cloud Engineer II

Phoenix, AZ

$82.10K - $162.24K/yr

... cybersecurity, and development teams. * Participate in an on-call rotation supporting cloud ... program by offering healthcare benefits, paid leave, retirement plans, insurance programs, and ...

Cloud Engineer II

Phoenix, AZ · On-site

$82.10K - $162.24K/yr

... cybersecurity, and development teams. * Participate in an on-call rotation supporting cloud ... program by offering healthcare benefits, paid leave, retirement plans, insurance programs, and ...

next page

Showing results 1-20

Cybersecurity Rotational Program information

What are the key skills and qualifications needed to thrive in a Cybersecurity Rotational Program, and why are they important?

To thrive in a Cybersecurity Rotational Program, you need a solid understanding of information security principles, risk assessment, and IT fundamentals, often supported by a degree in computer science or a related field. Familiarity with security tools such as firewalls, SIEM systems, vulnerability scanners, and certifications like CompTIA Security+ or CISSP are commonly expected. Strong analytical thinking, adaptability, and effective communication skills help you navigate diverse teams and rapidly changing threats. These skills and qualities are essential for quickly learning new domains, contributing to multiple projects, and effectively protecting organizational assets.

What types of projects and responsibilities can I expect during a Cybersecurity Rotational Program?

During a Cybersecurity Rotational Program, you will typically rotate through several key areas such as threat analysis, incident response, vulnerability management, and security operations. Each rotation provides hands-on experience with real-world security challenges, allowing you to collaborate closely with cross-functional teams like IT, compliance, and risk management. You can expect to participate in tasks like monitoring security alerts, conducting risk assessments, supporting cybersecurity audits, and assisting in the development of security policies. This structure is designed to give you a broad foundation and help you identify your preferred specialization within cybersecurity.

What is a Cybersecurity Rotational Program?

A Cybersecurity Rotational Program is a structured early-career development program offered by some organizations, typically lasting 1-3 years. Participants rotate through several cybersecurity departments or roles, such as threat analysis, incident response, risk management, and security operations. This approach allows individuals to gain broad experience, develop a diverse skill set, and build a network within the company. Upon completion, participants often move into a more specialized cybersecurity position based on their interests and strengths.

What is the difference between Cybersecurity Rotational Program vs Cybersecurity Analyst?

AspectCybersecurity Rotational ProgramCybersecurity Analyst
CredentialsTypically requires a bachelor's degree in cybersecurity, IT, or related fields; certifications like CompTIA Security+ are commonOften requires similar degrees and certifications; Security+ or CISSP preferred
Work EnvironmentRotates through different teams and projects within an organization, gaining broad experienceFocuses on monitoring, analyzing, and responding to security incidents within a specific team
Employer & Industry UsageUsed by large organizations for talent development; common in tech and finance sectorsStandard role across industries for maintaining security posture

The Cybersecurity Rotational Program offers a broad, multi-faceted experience across various security functions, ideal for those seeking diverse exposure. In contrast, a Cybersecurity Analyst specializes in monitoring and defending against security threats within a specific area. Both roles require similar credentials but differ in scope and career focus.

What are popular job titles related to Cybersecurity Rotational Program jobs in Arizona? For Cybersecurity Rotational Program jobs in Arizona, the most frequently searched job titles are:
What cities in Arizona are hiring for Cybersecurity Rotational Program jobs? Cities in Arizona with the most Cybersecurity Rotational Program job openings:
Security Engineer

Security Engineer

Birdi

Paradise Valley, AZ • On-site

Full-time

Posted 17 days ago


Job description

Position Summary: The Security Engineer is responsible for designing, implementing, and operating the organization's cybersecurity program from the ground up, with a primary focus on software supply chain security, identity and access management (IAM), permissions architecture, and compliance readiness for SOC 2 Type II and HIPAA within a healthcare environment.
This role leads the research, planning, and execution of security policies, technical controls, and operational processes that protect endpoints, cloud infrastructure, applications, and data throughout the full software development lifecycle (SDLC). The Security Engineer builds and maintains security monitoring, threat detection, and alerting systems, while establishing and managing a company-wide Security Awareness Training Program.
Essential Duties/Responsibilities:
• Research, develop, and implement comprehensive cybersecurity policies and procedures from the ground up to achieve and maintain SOC 2 Type II certification, including defining controls, gathering evidence, and coordinating with external auditors.
• Conduct regular risk assessments and vulnerability analyses to identify potential security threats and develop mitigation strategies aligned with HIPAA requirements and industry best practices.
• Design, implement, and manage Identity and Access Management (IAM) strategies, including role-based access control (RBAC), least privilege principles, multi-factor authentication (MFA), and single sign-on (SSO) solutions.
• Establish and enforce software supply chain security practices, including Software Bill of Materials (SBOM) management, dependency scanning, vulnerability assessment, container security, and secure CI/CD pipeline integration.
• Develop and maintain permissions governance frameworks, conducting regular access reviews and ensuring appropriate authorization levels across all systems handling PHI and sensitive data.
• Maintain incident response procedures, including breach notification processes compliant with HIPAA requirements, and lead security incident investigations and remediation efforts.
• Design, implement, and manage a comprehensive Security Awareness Training program for all workforce members, covering HIPAA requirements, phishing awareness, social engineering defense, and secure data handling practices.
• Track and document training completion for all employees, maintaining records for audit purposes and ensuring ongoing education as cyberthreats evolve.
• Collaborate with Development and DevOps teams to integrate security practices into the software development lifecycle (SDLC), including secure coding standards, code review processes, and automated security testing.
• Evaluate and manage third-party vendor security risks, conducting security assessments and ensuring business associates comply with HIPAA and organizational security requirements.
• Participate in an on-call rotation schedule for critical security incidents and support incident management processes for security-related events.
Required Skills/Abilities:
• Proven experience in Information Security, Cybersecurity Engineering, or a similar role with hands-on experience implementing security programs and compliance frameworks.
• Strong knowledge of compliance frameworks including SOC 2, HIPAA Security Rule, NIST Cybersecurity Framework, and CIS Controls, with experience preparing for and supporting audits.
• Deep expertise in Identity and Access Management (IAM), including experience with IAM platforms, RBAC implementation, MFA, SSO, and privileged access management.
• Experience with software supply chain security tools and practices, including SBOM generation, dependency scanning (e.g., Dependabot, Snyk), and secure CI/CD pipeline configuration.
• Proficiency with endpoint protection solutions including EDR platforms, firewalls, and network security tools.
Strong understanding of cloud security principles and experience securing AWS
• Excellent written and verbal communication skills, with the ability to translate complex security concepts for technical and non-technical audiences.
• Strong analytical, problem-solving, and incident response skills with attention to detail.
• Self-directed individual capable of working independently to build programs from the ground up with minimal supervision.
Education/Experience:
• Bachelor's degree in information security, Computer Science, or related field; or equivalent combination of education and experience with at least 3-5 years of relevant cybersecurity experience.
• Demonstrated experience implementing security compliance programs (SOC 2, HIPAA, ISO 27001, or similar).
• Experience conducting risk assessments and developing security policies and procedures.
Preferred Skill/Abilitie
• Experience working within the Healthcare industry with direct knowledge of HIPAA compliance requirements and ePHI protection.
• Industry certifications such as CISSP, CISM, Security+, CCSP, AWS Security Specialty, or HCISPP (Healthcare Information Security and Privacy Practitioner).
• Experience with zero trust architecture design and implementation.
• Familiarity with healthcare data standards (HL7, FHIR) and healthcare IT systems including EHR platforms.
• Experience with policy-as-code tools (e.g., OPA, Checkov) and infrastructure-as-code security scanning.
• Scripting and automation skills in Python, PowerShell, or Bash for security automation.
• Experience with container security, Kubernetes security, and DevSecOps practices.
• Experience with Security Awareness Training platforms (e.g., KnowBe4, Proofpoint) and phishing simulation tools.
Work Environment/Physical Requirements:
• This is a full-time remote position.
• Ability to sit for prolonged periods of time.
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.