> Markdown version of [/jobs/ext/2172678-information-security-engineer](https://www.wearedevelopers.com/jobs/ext/2172678-information-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Engineer - **Company:** Randstad - **Location:** Somerville, MA, United States - **Experience:** Expert - **Salary:** $45,000.0 - $65,000.0 - **Contract:** Permanent contract - **Skills:** Systems Engineering, Cloud Computing, Cyber Security, Identity and Access Management, Role-Based Access Control, Zero Trust Network Access, Software Engineering, Software Vulnerability Management, Enterprise Software Applications, Information Technology - **Published:** August 21, 2026 - **Apply:** https://www.dice.com/job-detail/8c48c0d7-6c5d-4cca-9bfa-3e69b7a0a3fa ## About the Role The ideal candidate is someone who can quickly understand complex and unfamiliar technology environments, analyze security implications, and clearly communicate recommendations to senior leadership and business stakeholders. Top 3 Qualifications 1. Strong analytical ability across a broad technology landscape Ability to evaluate a wide range of technologies, systems, business initiatives, and operational processes and identify meaningful cybersecurity risks. 2. Exceptional communication skills Ability to clearly communicate complex technical concepts, security risks, recommendations, and tradeoffs both verbally and in writing to senior leadership and business owners who may not have the same level of technical expertise. 3. Ability to do both quickly and effectively Strong judgment and the ability to rapidly understand unfamiliar technologies and business challenges, assess risk, and develop practical recommendations., Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field; equivalent experience may be considered. 5-7 years of experience in systems engineering, security engineering, security architecture, cybersecurity consulting, or a related field. Strong understanding of cybersecurity principles, risk management, and security frameworks. Experience performing security assessments, architecture reviews, risk analyses, technology evaluations, or similar analytical work. Ability to identify complex security issues and develop practical recommendations. Strong understanding of enterprise technology environments, including familiarity with: Cloud platforms Identity and access management, Knowledge of Zero Trust, least privilege, defense-in-depth, data protection, secure software development, threat modeling, and vulnerability management. Strong written and verbal communication skills. Strong analytical, critical-thinking, and problem-solving abilities. Ability to work effectively in complex and ambiguous environments. Experience mentoring junior professionals and/or leading cross-functional initiatives., Knowledge of Zero Trust, least privilege, defense-in-depth, data protection, secure software development, threat modeling, and vulnerability management. Strong written and verbal communication skills. Strong analytical, critical-thinking, and problem-solving abilities. Ability to work effectively in complex and ambiguous environments. Experience mentoring junior professionals and/or leading cross-functional initiatives. skills: Cloud,Information Security,Cybersecurity,security architecture,Security operations,enterprise technology,Identity and access management,Computer Science,Information Technology,least privilege,secure software development,vulnerability management,systems engineering,Zero Trust,analytical,communicate,Exceptional communication skills,Strong written and verbal communication,critical-thinking,work effectively,leadership,problem-solving abilities,solving complex problems,Architecture,architecture reviews,business initiatives,consulting,data protection,cybersecurity risks,cybersecurity principles,security frameworks,industry practices,Infrastructure,Mentor,mentoring,regulatory requirements,risks,risk,assess risk,risk analyses,risk management,security,security assessments,security controls,security engineering,technology evaluations,threat modeling ## Description We are seeking an Information Security Engineer III to join an enterprise Information Security Architecture team. This is a senior-level role focused on evaluating a broad range of technologies, business initiatives, operational processes, and strategic projects to identify security risks and provide practical, risk-based guidance., Evaluate technologies, business initiatives, operational processes, and proposed solutions to identify security risks. Perform security assessments, architecture reviews, risk analyses, and technology evaluations. Quickly assess unfamiliar technologies and understand their security implications. Develop practical, risk-based recommendations and appropriate security controls. Partner with technical teams, business stakeholders, vendors, project leaders, and security professionals. Research emerging technologies, evolving threats, regulatory requirements, and industry practices. Develop security assessments, recommendations, standards, reports, and other written deliverables. Communicate technical risks, tradeoffs, and recommendations to engineers, project teams, business leaders, and senior leadership. Present findings, facilitate discussions, answer questions, and help build stakeholder consensus. Serve as a trusted cybersecurity advisor to business and technology teams. Contribute to security standards, methodologies, assessment processes, and best practices. Mentor junior and mid-level security professionals. Lead or contribute to cross-functional technical initiatives., Occasional additional onsite presence may be required based on business needs. Monday-Friday, either 8:00 AM-4:00 PM or 9:00 AM-5:00 PM, with flexibility. Full-time, permanent position. Why This Role? This is an opportunity for a senior security professional who enjoys solving complex problems, evaluating unfamiliar technologies, and serving as a trusted advisor to both technical and business leadership. The strongest candidates will not simply identify security risks - they will be able to quickly understand the environment, determine what matters, develop a practical recommendation, and explain it clearly to the people responsible for making the decision., * Evaluate technologies, business initiatives, operational processes, and proposed solutions to identify security risks. * Perform security assessments, architecture reviews, risk analyses, and technology evaluations. * Quickly assess unfamiliar technologies and understand their security implications. * Develop practical, risk-based recommendations and appropriate security controls. * Partner with technical teams, business stakeholders, vendors, project leaders, and security professionals. * Research emerging technologies, evolving threats, regulatory requirements, and industry practices. * Develop security assessments, recommendations, standards, reports, and other written deliverables. * Communicate technical risks, tradeoffs, and recommendations to engineers, project teams, business leaders, and senior leadership. * Present findings, facilitate discussions, answer questions, and help build stakeholder consensus. * Serve as a trusted cybersecurity advisor to business and technology teams. * Contribute to security standards, methodologies, assessment processes, and best practices. * Mentor junior and mid-level security professionals. * Lead or contribute to cross-functional technical initiatives ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Model Based Systems Engineering in an Agile Product Development Process](https://www.wearedevelopers.com/videos/68-model-based-systems-engineering-in-an-agile-product-development-process) - [Green Cloud Computing](https://www.wearedevelopers.com/videos/592-green-cloud-computing) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)