Senior Security Engineer
Role details
Job location
Tech stack
Job description
We are seeking a highly skilled Senior Security Engineer to join our cybersecurity team. This role involves designing, implementing, and maintaining advanced security measures across complex IT infrastructures to safeguard organizational assets and data. The ideal candidate will possess extensive experience in network security, vulnerability management, and incident response, with a strong understanding of industry standards such as NIST, ISO 27000 series, and FedRAMP. You will play a pivotal role in developing security strategies, conducting risk assessments, and ensuring compliance with regulatory requirements. This position offers an opportunity to lead security initiatives that protect critical systems in a dynamic and evolving technological environment., * Develop and enforce comprehensive system security plans aligned with industry standards such as ISO 27000, NIST frameworks, and FedRAMP guidelines.
- Design and oversee secure network architectures incorporating WAN, LAN, VPNs, firewalls (Cisco ASA), IDS/IPS systems, and network protocols including IPsec, TCP/IP, OSPF, BGP.
- Conduct vulnerability assessments and research using tools like SIEM platforms (Splunk, New Relic), vulnerability scanners, and threat intelligence feeds to identify potential risks.
- Lead incident response efforts by analyzing security breaches, coordinating recovery procedures, and implementing remediation strategies.
- Manage identity & access management systems utilizing LDAP, GPOs, SSO solutions, and PKI infrastructure for secure authentication across cloud and on-premises environments.
- Perform system hardening on operating systems such as Windows, Linux (Debian, CentOS), macOS, and UNIX variants; ensure compliance with security standards including PCI DSS and FIPS.
- Collaborate with cross-functional teams to support cloud architecture (AWS, Azure, Google Cloud Platform), virtualization (vSphere), DevOps pipelines (CI/CD), and configuration management tools like Ansible or Terraform.
- Monitor network traffic using tools like SolarWinds or PRTG; analyze logs for suspicious activity; support threat detection & response initiatives.
- Maintain disaster recovery plans and high availability configurations to ensure business continuity during incidents or outages.
- Conduct regular training sessions on cybersecurity best practices for technical staff; stay current with emerging threats and industry developments.
Requirements
- Extensive knowledge of computer networking concepts including routing protocols (OSPF, EIGRP), network architecture design, LAN/WAN support.
- Proficiency in configuring and managing firewalls (Cisco ASA), VPNs (IPsec), load balancers, SAN storage solutions.
- Strong understanding of security analysis techniques involving vulnerability research, assessment methodologies, attack frameworks.
- Experience with SIEM tools such as Splunk or New Relic for log analysis and threat detection.
- Familiarity with cloud computing platforms (AWS, Azure) along with cloud security best practices.
- Expertise in system administration across multiple operating systems including Windows Server environments and Linux distributions like Debian or CentOS.
- Knowledge of encryption standards (FIPS), system hardening procedures (SELinux), and open-source tools for cybersecurity defense.
- Ability to implement IT governance frameworks such as COBIT or DIACAP; adhere to compliance standards including PCI DSS and FISMA.
- Programming skills in scripting languages such as Python or Bash for automation tasks; experience with APIs for integration purposes.
- Strong analytical skills in incident management processes; capable of performing forensic investigations on compromised systems.
- Excellent communication skills for documenting security policies; providing technical guidance; collaborating across teams to enhance overall cybersecurity posture. This position is integral to maintaining the integrity of our information security environment. If you are committed to advancing cybersecurity measures through innovative solutions and strategic leadership, we encourage you to apply today.