> Markdown version of [/jobs/ext/1379968-security-engineer-corporate-security](https://www.wearedevelopers.com/jobs/ext/1379968-security-engineer-corporate-security). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - Corporate Security - **Company:** BitSight Technologies - **Location:** Cambridge, MA, United States (Remote available) - **Experience:** Experienced - **Salary:** $100,000.0 - $140,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Cloud Computing Security, CompTIA Security+, Cyber Security, Intrusion Detection and Prevention, Python (Programming Language), Network Security, Security Information and Event Management, Transmission Control Protocol (TCP), Software Vulnerability Management, Workflow Management Systems, Cloud Platform System, Large Language Models, Mitre Att&ck, Security Orchestration, Automation & Response - **Published:** July 22, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/87791439/1 ## About the Role * 4+ years of experience in dedicated information security roles. * Hands-on experience with SIEM and EDR solutions. * Expertise in security incident response and SOC operations. * Strong knowledge of least access principles and defense-in-depth methodologies. * Solid understanding of TCP/IP networking and security protocols. * Understanding of AWS cloud environments and working with related security technologies. * Excellent verbal and written communication skills, with the ability to engage technical, non-technical, and executive audiences. Preferred Qualifications: * Experience with vulnerability management, assessment, and remediation. * Familiarity with adversarial TTPs and attack frameworks (MITRE ATT&CK, etc.). * Knowledge of AI/LLM security risks, including prompt injection, model misuse, data exposure, and agentic AI threats. * Experience evaluating or implementing AI governance and security controls (e.g., MCP gateways, AI access policies, behavioral monitoring for AI tools). * Knowledge of security compliance frameworks (e.g., SOC 2, CIS, NIST 800 series, ISO 27001). * Experience with detection engineering tools (e.g., Suricata, YARA, Sigma). * Proficiency in Python for security automation, including threat detection and compliance workflows. Preferred Certifications: * AWS Certified Security Specialty * SANS Certifications: GCIA, GCIH, GCFA, GCTI * ISC2: CISSP or CCSP * CompTIA Security+ ## Description We are looking for a skilled and passionate Cybersecurity Engineer to strengthen and scale our security capabilities in response to an evolving threat landscape. In this role, you will have the opportunity to shape our security strategy, drive the implementation of cutting-edge security technologies, and establish proactive defense mechanisms to safeguard our company and employees' data. As a subject matter expert, you will work with industry-leading security platforms, define preventative measures, and contribute to a culture of security excellence., * Develop and enhance security strategies to protect against emerging threats. * Deploy and manage SIEM, EDR, and cloud security technologies to monitor and respond to incidents effectively. * Lead or participate in security incident handling and response, including SOC operations and DFIR. * Enforce least privilege access principles and secure network architectures. * Support AI governance initiatives, including evaluating AI security risks, contributing to AI usage policies, and implementing controls for AI tools and integrations used across the organization. * Work autonomously while also thriving in a collaborative team environment. * Utilize defense-in-depth methodology to enhance and sustain a secure environment., Bitsight is committed to compliance with all fair employment practices regarding citizenship and immigration status. Bitsight will not discharge, discipline or in any other manner discriminate against any employee or applicant for employment because such employee or applicant has inquired about, discussed, or disclosed the compensation of the employee or applicant or another employee or applicant. Massachusetts Applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. Qualified applicants with criminal histories will be considered for employment consistent with applicable law. This position may be considered a promotional opportunity pursuant to the Colorado Equal Pay for Equal Work Act. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)