LIVE · cybersecurity feed
Live wire
Acronis warns of actively exploited flaw in its cPanel backup pluginOracle September 2026 Critical Security Patch Update addresses 672 CVEsCVE-2026-76461 · U.S. CISA adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalogHackers target WordPress sites via third-party WooCommerce pluginCVE-2026-51990 · Hackers exploit Tencent app flaw to deploy GrayRabbit malwareCVE-2026-42016 · CISA Adds 5 Exploited Flaws in Artifactory, ScreenConnect, RouterOS to KEVCVE-2026-85102 · Dutch NCSC: Critical Check Point VPN flaws exploitation is imminentAI Enables Mass Generation of Personalized Fraud EmailsCVE-2026-85706 · Critical GitLab Vulnerability Exploited in Internet-Wide ProbesCVE-2025-66516 · Metasploit Wrap Up: This One Goes to Sixteen!
security

Cybersecurity jobs available right now: September 8, 2026

CISO AudioCodes | Israel | Hybrid – View job details As a CISO, you will lead security strategy, governance, and risk management across SaaS, managed services, and customer-hosted environments. You will oversee security controls, incident response, Secure SDLC, customer security engagements, and compliance with SOC 2 and ISO 27001, while partnering across Product, R&D, IT, and Services to continuo

zeroday.news ·

A range of cybersecurity positions are currently available across various sectors, including defense, finance, technology, and retail, with roles spanning security architecture, engineering, operations, and threat intelligence. These opportunities are offered by companies such as AudioCodes, Johns Hopkins Applied Physics Laboratory, Garmin, Babcock International Group, GDIT, Scotiabank, Akima, ValueLabs, Spektrum, Orro Group, Secur-Serv, Subway, Carnegie Mellon University's Software Engineering Institute, Rolls-Royce, Penta Consulting, and Dolby Laboratories.

Several positions focus on leading security strategy and governance. AudioCodes is seeking a CISO to manage security strategy, risk, and compliance (SOC 2, ISO 27001) across SaaS, managed services, and customer-hosted environments, overseeing incident response and Secure SDLC. Babcock International Group is looking for a Cyber Security Lead to ensure secure-by-design assurance for UK Defence Nuclear Enterprise programs, aligning with Ministry of Defence requirements, conducting threat modeling, and developing mitigation strategies.

Cloud security and identity and access management (IAM) are prominent areas of demand. Garmin is hiring a Cyber Security Engineer (Cloud Security) to design and secure AWS and Azure solutions, supporting technologies like CNAPP, Kubernetes, EKS, AKS, Docker, and CI/CD pipelines, with a focus on automation using Python, PowerShell, or Bash. ValueLabs is seeking an OCI IAM Security Architect to design and secure Oracle Cloud Infrastructure (OCI) environments, implementing zero trust, RBAC, and least privilege, and ensuring compliance with standards such as PCI-DSS, HIPAA, GDPR, SOC 2, ISO 27001, and CIS benchmarks. Scotiabank is looking for an IAM Architect to design enterprise CIAM solutions using ForgeRock, Ping, and PingOne, adhering to FIDO, OIDC, OAuth, MFA, and NIST 800-63B standards, and evaluating capabilities like Passkeys.

Roles in threat detection, incident response, and penetration testing are also available. GDIT is seeking a Cyber Threat Hunter to investigate threats across ARNG networks using threat intelligence and the MITRE ATT&CK framework, analyzing security data with platforms like Elastic and Splunk. Orro Group is hiring a SOC Analyst to investigate SIEM alerts, emerging threats, and phishing attempts, managing incidents from triage to resolution, and improving detection rules. Spektrum is looking for a Penetration Tester to lead Red/Blue Team activities during NATO exercises, conduct web, infrastructure, and application penetration testing, and perform security design reviews. Subway is seeking a Security Operations Analyst to detect and investigate identity threats using CrowdStrike Falcon Identity Protection and Next-Gen SIEM, managing Okta Identity Governance and PCI-DSS 4.0 compliance.

Engineering and research roles are also in demand. Johns Hopkins Applied Physics Laboratory is seeking a Combat Systems Cyber Engineer to identify vulnerabilities and develop resilient solutions for U.S. Navy submarine and combat systems, collaborating on cyber resiliency testing. Akima is hiring an Information System Security Engineer (ISSE) to design and assess secure architectures aligned with NIST, DoD, Zero Trust, RMF, STIGs, and SRGs, conducting threat modeling and vulnerability assessments. Rolls-Royce is looking for a Senior Cyber Security Engineer to design, implement, and maintain network and cloud security solutions, including firewalls, VPNs, IDS/IPS, NAC, SIEM, EDR, and DLP. Dolby Laboratories is seeking a Senior Software Security Engineer to perform threat and risk assessments, vulnerability research, and implement IP protection mechanisms across embedded systems, operating systems, applications, and hardware. Carnegie Mellon University's Software Engineering Institute is hiring a Senior Cybersecurity Operations Researcher to conduct analytical studies on cybersecurity risk, threat, and security data, assessing operational and network defense challenges.

Specialized roles include a Security Automation Engineer at Secur-Serv to lead Cortex XSOAR implementations and operations, developing automated incident response playbooks. Penta Consulting is seeking a Senior Network Security Engineer to lead network and security changes and deliver complex Cisco infrastructure and security projects.

ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerability

The vulnpocalypse rains iBugs down on Apple with record-setting number of patches

September Patch Tuesday part 2?

vulnerabilityhigh

Acronis warns of actively exploited flaw in its cPanel backup plugin

Acronis disclosed a high-severity Linux local privilege escalation vulnerability in its backup plugin for cPanel, WebHost Manager (WHM), and Plesk that may be exploited in the wild. [...]

vulnerabilitycritical

Oracle September 2026 Critical Security Patch Update addresses 672 CVEs

Oracle addresses 672 CVEs in its September 2026 Critical Security Patch Update with 673 patches, including 104 critical updates. Key Takeaways The September 2026 Critical Security Patch Update (CSPU) contains fixes for 672 unique CVEs in 673 security updates 104 issues (15.5% of all patches) were assigned a critical severity rating Oracle E-Business Suite received the highest number of patches at

CVE-2026-76461critical

U.S. CISA adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a Cisco Secure Email Gateway flaw, tracked as CVE-2026-76461 (CVSS score of 9,8), to its Known Exploited Vulnerabilities (KEV) catalog. Cisco disclosed a critical zero-day CVE-2026-76

patch

Malcious Admin Menu Editor Pro plugin backdoors 1,500 WordPress sites

Malicious versions of the Admin Menu Editor Pro plugin for WordPress have been distributed to more than 200 customers after a threat actor compromised the maintainer's website and pushed updates that created a hidden user account. [...]

ai

Microsoft Commits to Sweeping AI Privacy Rules for Students. Will Other Tech Giants Follow?

Microsoft agreed to adopt guardrails and privacy standards for its AI in schools, as negotiated with the American Federation of Teachers. The post Microsoft Commits to Sweeping AI Privacy Rules for Students. Will Other Tech Giants Follow? appeared first on SecurityWeek.