Lead Cybersecurity Engineer

Permian Resources Corporation
Midland, TX, United States
11 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Application Firewall Application Layers Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Information Leak Prevention Supervisory Control and Data Acquisition (SCADA) Identity and Access Management Python (Programming Language) Microsoft Software
+8 more
Windows PowerShell Role-Based Access Control Security Information and Event Management Software Vulnerability Management Google Cloud Firewalls (Computer Science) Information Technology Process Control Systems

Job description

Permian Resources (NYSE: PR) is currently seeking a Lead Cybersecurity Engineer to join the Enterprise Cybersecurity Team in Midland, Texas. This position serves as the principal technical authority for the Company’s security engineering function, setting technical direction, owning the security engineering roadmap, and mentoring a team of engineers and analysts, while remaining hands-on across security engineering, identity and access management, vulnerability management, and threat analysis. The ideal candidate combines deep technical expertise with the leadership to guide a multi-disciplinary team in a fast-paced environment.

General Responsibilities

  • Serve as the principal technical authority and design lead across security engineering, IAM, vulnerability management, and security operations.
  • Own and maintain the security engineering roadmap, standards, and reference architectures, and drive maturity improvements over time.
  • Provide technical direction, coaching, and mentorship to security engineers and analysts, and partner with leadership on hiring and skills development.
  • Lead the evaluation, selection, and implementation of security tools and platforms, and own key vendor and technical relationships.
  • Design and implement enterprise security solutions across network, endpoint, cloud, and application layers, including firewalls, EDR/XDR, SIEM, and DLP.
  • Develop and enforce security policies, procedures, and hardening standards to ensure the confidentiality, integrity, and availability of company data.
  • Own the identity architecture - SSO, MFA, conditional access, least-privilege/RBAC, and privileged access management (PAM).
  • Direct the vulnerability management program - scanning strategy, risk-based prioritization, SLAs, and remediation governance - including penetration-testing engagement and closure.
  • Act as senior escalation point for complex investigations and major-incident response, leading containment, eradication, recovery, and post-incident reviews.
  • Guide detection engineering and threat hunting, and incorporate threat intelligence into defensive controls.
  • Communicate risk, roadmap, and incident posture clearly to technical teams and executive stakeholders.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • 8+ years of experience in cybersecurity engineering or a related role, including demonstrated experience as a technical lead.
  • Proven ability to set technical direction, mentor engineers, and own security architecture or programs.
  • Deep, hands-on expertise across multiple domains (security engineering, IAM, vulnerability management, and security operations) with strong working knowledge of all four.
  • Strong understanding of threat analysis, mitigation techniques, and incident response.
  • Familiarity with industry standards such as NIST CSF.
  • Technical expertise in several of the following security tools and technologies: Firewall Management, Web Application Firewall (WAF), Endpoint Detection and Response (EDR), Data Loss Prevention (DLP), Cloud Security (e.g., AWS, Azure, Google Cloud Platform), Security Information and Event Management (SIEM), Identity and Access Management (IAM), and Privileged Access Management (PAM).
  • Proficiency with scripting and automation (e.g., PowerShell, Python) and automation-first engineering practices.
  • Excellent leadership, communication, and stakeholder-management skills.

Preferred Qualifications

  • Related cybersecurity work experience in OT/Industrial Control Systems (SCADA) environments.
  • Senior certifications such as CISSP, CISM, GIAC, Microsoft SC-series, or equivalent experience.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:42 min

Container hosting options available on Google Cloud Platform

Federico Fregosi · World Congress 2022

Videos

See all

Related articles

See all