> Markdown version of [/jobs/ext/1171285-it-security-engineer](https://www.wearedevelopers.com/jobs/ext/1171285-it-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Engineer - **Company:** breezy - **Location:** Portland, OR, United States - **Experience:** Experienced - **Salary:** $120,000.0 - $160,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Microsoft Antivirus, Apple Mac Systems, Bash Shell, Burp Suite, Cloud Computing Security, Cyber Security, Information Systems, Linux, Disaster Recovery, Domain Name System (DNS), Identity and Access Management, Intrusion Detection and Prevention, Intrusion Detection Systems, Virtual Private Networks (VPN), Information Systems Security Architecture Professional, Python (Programming Language), Network Security, Nmap, PCI Data Security Standards, Public Key Infrastructure, Windows PowerShell, Zero Trust Network Access, Security Information and Event Management, TCP/IP, Wireshark, Software Vulnerability Management, Transport Layer Security, Cloud Platform System, In-Plane Switching (IPS), Cyber Threat Analysis, Firewalls (Computer Science), Information Technology, Metasploit, Cybercrime, Patch Management, Nessus, CIS Benchmarks, SentinelOne Expertise, Qualys, Vulnerability Analysis - **Published:** July 3, 2026 - **Apply:** https://dovelewis-veterinary-emergency-and-specialty-hospital.breezy.hr/p/16e66dc13085-it-security-engineer ## About the Role * Associate's or bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field * 5+ years of experience in information technology, cybersecurity, or a related field * 3+ years of experience in an information security, security engineering, or cybersecurity analyst role * Experience with enterprise security technologies, incident response, vulnerability management, and security monitoring * Industry certifications such as Security+, CEH, CISSP, GSEC, OSCP, CCSP, SC-200, AZ-500, or equivalent certifications preferred * Any suitable combination of experience and education will substitute Knowledge, Skills + Abilities: * Strong knowledge of cybersecurity principles, risk management, incident response, threat detection, and vulnerability management * Experience with security technologies including firewalls, IDS/IPS, SIEM, EDR, vulnerability scanning, and endpoint protection platforms * Knowledge of network security, TCP/IP, DNS, VPNs, TLS/SSL, PKI, and secure architecture principles * Experience securing Windows, Linux, macOS, Microsoft 365, and cloud environments * Working knowledge of cybersecurity frameworks such as NIST CSF, CIS Controls, and Zero Trust principles * Experience with security tools such as Rapid7, Nessus, Qualys, SentinelOne, Microsoft Defender, Nmap, Burp Suite, Metasploit, and Wireshark * Proficiency in scripting and automation using Python, PowerShell, Bash, or similar languages * Knowledge of compliance and security requirements including cybersecurity insurance controls, PCI-DSS, and HIPAA * Strong analytical, troubleshooting, and problem-solving skills * Excellent communication, documentation, and presentation skills * Ability to prioritize multiple tasks and work effectively in a fast-paced environment * Ability to communicate technical risks and recommendations to technical and non-technical audiences ## Description This position, reporting to the Director of IT, is responsible for the design, implementation, monitoring, and continuous improvement of the organization's cybersecurity program. The IT Security Engineer protects information systems, networks, cloud environments, applications, and endpoint devices from cyber threats while supporting compliance, risk management, incident response, and security best practices across the organization. What you'll do: * Monitor security systems and investigate alerts to identify, analyze, and respond to cybersecurity threats and incidents * Conduct threat modeling, risk assessments, vulnerability assessments, and security reviews of systems, networks, and applications * Manage security technologies including firewalls, IDS/IPS, endpoint protection, SIEM, vulnerability management, and related security tools * Coordinate vulnerability remediation, patch management, and system hardening activities following industry best practices and CIS benchmarks * Develop, implement, and maintain security policies, standards, procedures, and technical documentation * Administer Identity and Access Management (IAM) controls and support Zero Trust security initiatives * Support cloud security initiatives and secure architecture design across on-premises and cloud environments * Develop and maintain incident response, disaster recovery, and business continuity processes * Conduct security assessments of vendors, applications, and technology solutions and provide recommendations to mitigate risk * Develop scripts and automation solutions to improve security monitoring, reporting, and operational efficiency * Support compliance efforts related to cybersecurity insurance requirements, PCI-DSS, SOC 2, and industry security standards * Maintain cybersecurity metrics and provide reporting on risks, vulnerabilities, incidents, and overall security posture * Collaborate with IT staff, vendors, and business leaders to implement effective security solutions * Conduct security awareness training and promote cybersecurity best practices throughout the organization * Research emerging threats and technologies and recommend improvements to strengthen the organization's security posture ## Related Videos - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)