> Markdown version of [/jobs/ext/2069603-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/2069603-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - **Company:** ASSA ABLOY - **Location:** New Haven, CT, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Application Programming Interfaces (APIs), Microsoft Azure, Business Systems, Cloud Computing, Cloud Engineering, Configuration Management Databases, Cyber Security, Data Centers, Domain Name System (DNS), Python (Programming Language), Network Security, Linux System Administration, Windows PowerShell, Zero Trust Network Access, Server Administration, Security Information and Event Management, Transmission Control Protocol (TCP), Software Vulnerability Management, Data Logging, Scripting, Software Troubleshooting, Firewalls (Computer Science), Information Technology, Process Control Systems, Operational Systems, Restful APIs, Servicenow - **Published:** August 15, 2026 - **Apply:** https://www.careerjet.com/job/us24fca3e307f1a516863e61d55efc9a6b/eaa ## About the Role * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field. * 3-5 years of cybersecurity, infrastructure, or security engineering experience. * Availability to be on-call for off-hour emergencies. * Experience with: * Network security * Firewalls * Server administration * Security operations * Understanding of: * TCP/IP networking * DNS * Active Directory * Windows and Linux administration * Cloud networking fundamentals * Experience troubleshooting application communication issues. Preferred Qualifications Experience with Illumio or other segmentation technologies. * Experience supporting Zero Trust initiatives. * Exposure to: * Microsoft Azure * ServiceNow * SIEM platforms * Vulnerability Management tools * Scripting experience using: * PowerShell * Python * REST APIs * Manufacturing or OT cybersecurity experience preferred. ## Description As the global leader in access solutions, ASSA ABLOY is committed to making the world a safer and more open place. Our Opening Solutions Americas team is hiring a Cybersecurity Engineer who will be responsible for implementing, operating, and maintaining the division's Zero Trust Segmentation program using Illumio. This role focuses on technical execution, segmentation policy development, application dependency analysis, workload onboarding, and day-to-day platform administration. The engineer will work closely with infrastructure, cloud, application, and operational technology (OT) teams to reduce cyber risk, improve visibility into application communications, and support protection of critical business systems and Crown Jewel assets. This role will be based onsite in New Haven, CT on a full-time basis. What you will be doing as Cybersecurity Engineer Illumio Platform Administration: * Administer and maintain the Illumio platform, including Policy Compute Engine (PCE) and Virtual Enforcement Nodes (VENs). * Deploy, troubleshoot, and upgrade Illumio agents across Windows and Linux environments. * Monitor platform health, agent connectivity, policy status, and enforcement activities. * Resolve segmentation-related incidents and operational issues. * Support integration with enterprise security tools and asset management platforms. Application Dependency Mapping: * Analyze application traffic flows and communication patterns. * Identify application dependencies and support workload classification. * Validate required communications with application and infrastructure teams. * Assist in documenting application architectures and connectivity requirements. * Investigate unknown or unexpected east-west traffic. Segmentation Policy Implementation * Develop and maintain micro segmentation policies based on approved architecture and security standards. * Create and manage: * Application Ringfencing Policies * Tier-to-Tier Policies * Administrative Access Controls * Core Services Allow Lists * Logging and Monitoring Communications * Test policies in visibility and simulation modes before enforcement. * Assist with implementation planning and validation activities. * Support policy tuning and optimization following deployment. Asset Management & Labeling * Maintain accurate workload labeling and segmentation metadata. * Validate asset inventory and application ownership information. * Assist with onboarding new applications into the segmentation program. * Work with CMDB and infrastructure teams to correct data quality issues impacting segmentation effectiveness. * Ensure newly deployed systems are enrolled in the program where appropriate. Cloud & Hybrid Environment Security * Support segmentation initiatives across: * Azure * Hybrid infrastructure * On-premises data centers * Hosted environments * Assist cloud engineering teams with workload onboarding and policy implementation. * Validate secure communications between cloud and on-premises systems. Operational Technology (OT) Support * Assist with micro segmentation efforts for manufacturing and operational technology environments. * Support implementation of controls designed to protect critical OT systems. * Participate in risk reduction activities involving industrial control systems and production environments. * Help maintain availability-focused segmentation strategies for operational assets. Monitoring & Continuous Improvement * Monitor segmentation coverage and workload adoption. * Identify opportunities to strengthen segmentation controls and reduce attack surface exposure. * Participate in vulnerability remediation discussions where segmentation can reduce risk. * Develop reports and dashboards showing segmentation status and workload coverage. * Assist with root cause analysis and lessons learned following security events. Automation & Engineering * Develop scripts and automation to improve operational efficiency. * Utilize APIs to automate: * Workload onboarding * Reporting * Label validation * Policy management * Support integrations between Illumio and: * ServiceNow * CMDB platforms * SIEM solutions * Security tooling ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Rest API Antipatterns](https://www.wearedevelopers.com/videos/100208-rest-api-antipatterns) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [REST In Peace: Why LLMs Can't CRUD](https://www.wearedevelopers.com/videos/100272-rest-in-peace-why-llms-can-t-crud) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)