Security Engineer II

Flynn Restaurant Group Llc
Independence, OH, United States
1 day ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Shift work
Job source

Tech stack

Artificial Intelligence Antivirus Softwares Software System Penetration Testing Cloud Computing Security Cyber Security Information Systems Monitoring of Systems Identity and Access Management Intrusion Detection and Prevention Cloud Services Security Information and Event Management Software Vulnerability Management
+6 more
Mitre Att&ck Firewalls (Computer Science) Information Technology Purple Team (Cyber Security) Cyber Warfare Vulnerability Analysis

Job description

The Senior Security Engineer is responsible for strengthening Flynn Group’s cyber defense posture across infrastructure, endpoint, cloud, identity, and network environments. This role designs and maintains security hardening standards, supports incident response and security investigations, leads purple-team and tabletop exercises, manages remediation risk tracking, and partners with technology and business teams to assess security risk in new solutions. The ideal candidate is a hands-on security engineer who can operate security tools, translate technical risk into business impact, and drive practical remediation across a distributed enterprise environment.

Essential Responsibilities and Duties

Security Engineering & Hardening

  • Develop, maintain, and continuously improve security hardening standards for servers, endpoints, networks, cloud services, and identity platforms.

  • Partner with IT and business technology teams to embed secure configuration and least-privilege principles into new and existing solutions.

  • Assist with security reviews of key enterprise platforms, tools, and technologies.

Threat Detection, Response & Security Tooling

  • Operate, tune, and improve security platforms such as EDR, antivirus, email security, SIEM, vulnerability management, and related monitoring tools.

  • Investigate cybersecurity incidents, document findings, coordinate remediation, and escalate risks based on business impact.

  • Develop and improve detection, alerting, response, and remediation playbooks.

Purple Team, Testing & Resilience

  • Lead or coordinate tabletop exercises, attack simulations, penetration testing follow-up, and other purple-team activities.

  • Manage honeypot/deception capabilities and use findings to improve detection, response, and control effectiveness.

  • Track remediation of security findings from testing, audits, vulnerability scans, and incident reviews.

Risk, Governance & Business Partnership

  • Maintain a security risk roster, document remediation options, and communicate risk clearly to technical and business stakeholders.

  • Review new business and technology solutions for security risks, including third-party/vendor risk and AI-related risks.

  • Contribute to security policy, standards, audit evidence, and control documentation.

Requirements

Required

  • 5+ years of experience in cybersecurity, security engineering, infrastructure security, incident response, vulnerability management, or related disciplines.

  • Hands-on experience with security tools such as EDR, SIEM, email security, vulnerability management, endpoint management, or firewall/security platforms.

  • Experience identifying, documenting, prioritizing, and driving remediation of security risks.

  • Strong written and verbal communication skills, including the ability to explain technical risk to non-technical stakeholders.

Preferred

  • Experience with Industry Leading EDR solutions, Cloud Security Principles, Industry leading Firewall technology, & Sentinel SIEM.

  • Experience with tabletop exercises, penetration testing coordination, red-team/purple-team activities, adversary simulation, or detection engineering.

  • Familiarity with NIST CSF, MITRE ATT&CK, ISO 27001, or similar frameworks.

  • Experience assessing third-party/vendor security risk and AI-enabled business solutions.

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or equivalent experience.

  • Security certifications such as CISSP, Security+, CySA+, GCIH, GCIA, GCFA, CEH, PNPT, or OSCP.

Benefits & conditions

Flynn Group offers a variety of benefits and perks to encourage and empower our employees. We are committed to helping each employee work and live to his or her fullest potential. We offer a variety of benefits and perks while working for us:

  • Medical/Dental/Vision

  • Retirement and Savings Plan

  • Short- and Long-Term Disability

  • Basic Life Insurance

  • Voluntary Life Insurance

  • Tuition Reimbursement

  • Paid Time Off

  • Flexible/Hybrid Work Schedules (In Office Monday - Thursday, Work from Home Friday)

  • Company Outings

  • Dining Discounts

About the company

At Flynn Group, we believe in the power of collaboration and value in-person interactions. This is why our employees work from the office four days per week , leaving Fridays to work from home. This setup cultivates casual conversations, problem-solving, and trusted relationships. Our goal is to create an environment where innovation thrives, with office-based teams coming together four days a week to collaborate and thrive, together!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

4:27 min

Embracing a new perspective on mobile cyber attacks

Tom Tovar · WWC 2023

Videos

See all

Related articles

See all