Senior Information Security Engineer (REMOTE)

The Hanover Insurance Group Inc
Worcester, MA, United States
15 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$100,000.0 - $150,000.0
Working hours
Regular working hours

Tech stack

Multitier Architecture Active Directory Amazon Web Services Proxy Servers User Authentication Microsoft Azure Bash Shell Cloud Computing Cloud Computing Security Cyber Security Computer Programming Dynamic Host Configuration Protocol
+34 more
Linux Domain Name System (DNS) Virtual Private Networks (VPN) Python (Programming Language) Kerberos (Protocol) Network Security Network Troubleshooting Lightweight Directory Access Protocols (LDAP) Linux System Administration Routing OAuth Performance Tuning Public Key Infrastructure Windows PowerShell Ansible Security Assertion Markup Language (SAML) Software Vulnerability Management Symantec SSL Certificate Management Data Logging Transport Layer Security Google Cloud Load Balancing Cloud Platform System Firewalls (Computer Science) Infrastructure as Code (IaC) Containerization Kubernetes Information Technology Fortinet Firepower Terraform Devsecops Cisco

Job description

The Senior Security Engineer is a technical leader responsible for the design, implementation, operation, automation, and continuous improvement of enterprise security infrastructure services. This role serves as the subject matter expert for Public Key Infrastructure (PKI), certificate lifecycle management, firewalls, web proxy services, Linux-based security platforms, and network security operations. The individual will lead strategic initiatives, provide advanced troubleshooting support, develop automation solutions, and partner with infrastructure, networking, cloud, and application teams to ensure secure and resilient enterprise services. This is a full-time, exempt position. IN THIS ROLE, YOU WILL:

  • Lead the design, implementation, administration, and optimization of enterprise PKI and certificate management services, ensuring availability, scalability, and compliance with security standards.
  • Own the certificate lifecycle management process, including issuance, renewal, revocation, discovery, monitoring, and remediation of expiring certificates across on-premises and cloud environments.
  • Serve as the technical lead for Firewall services, including architecture, policy management, rule reviews, segmentation strategies, and security hardening.
  • Manage and support enterprise Web Proxy solutions, including policy development, URL filtering, SSL/TLS inspection, access controls, and threat protection capabilities.
  • Provide advanced network and security troubleshooting expertise, identifying and resolving complex connectivity, authentication, routing, DNS, TLS, and application communication issues.
  • Partner with Network Engineering teams to design secure network architectures and implement security controls that align with business and regulatory requirements.
  • Develop and maintain automation solutions using scripting and programming languages such as Python, Bash, PowerShell, or similar technologies to improve operational efficiency and reduce manual processes.
  • Create automated monitoring, alerting, and remediation workflows for security infrastructure platforms and services.
  • Administer and support Linux-based security platforms, ensuring system performance, hardening, patching, vulnerability remediation, and operational stability.
  • Lead security infrastructure projects from planning through implementation, coordinating activities across multiple technical teams and stakeholders.
  • Perform security assessments and configuration reviews to identify risks, vulnerabilities, and opportunities for service improvement.
  • Develop and maintain technical standards, operational procedures, and architecture documentation for PKI, firewalls, proxy services, and Linux environments.
  • Support incident response activities by providing deep technical expertise during security investigations, service outages, and cyber events.
  • Evaluate emerging technologies and security solutions, making recommendations to improve the organization’s security posture and operational effectiveness.
  • Implement and maintain security controls supporting regulatory, audit, and compliance requirements.
  • Provide technical leadership and mentorship to junior engineers and operations personnel, promoting best practices and knowledge sharing.
  • Collaborate with cloud, infrastructure, and application teams to integrate security services into enterprise and cloud-native environments.
  • Participate in on-call rotations and escalation support, serving as a senior resource for critical security and infrastructure incidents., Overview: The cybersecurity engineer has a dual role in the Bank: a responsibility for architecting, building, and maintaining secure environments and applications that are designe…
  • 1 month ago +

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, Engineering, or equivalent experience.
  • 7+ years of experience in Information Security, Network Security, or Infrastructure Engineering roles.
  • Demonstrated expertise in PKI, Certificate Authorities (CA), certificate lifecycle management, and TLS/SSL technologies.
  • Extensive hands-on experience managing enterprise firewall platforms (e.g., Palo Alto, Check Point, Cisco Firepower, Fortinet, or similar).
  • Strong experience supporting Web Proxy technologies such as Zscaler, Blue Coat/Symantec ProxySG, Netskope, or similar platforms.
  • Advanced knowledge of TCP/IP networking, routing, switching, DNS, DHCP, VPNs, load balancing, and network security architecture.
  • Strong expertise with Linux operating systems, including system administration, troubleshooting, performance tuning, and security hardening.
  • Demonstrated experience developing automation using Python, Bash, PowerShell, Ansible, Terraform, or similar technologies.
  • Experience with security monitoring, logging, and event analysis tools.
  • Strong understanding of authentication and authorization technologies including LDAP, Active Directory, Kerberos, SAML, OAuth, and certificate-based authentication.
  • Proven ability to troubleshoot complex, multi-tier application and network issues.

  • Excellent written, verbal, and interpersonal communication skills.
  • Authorization to work in the United States without current or future sponsorship (U.S. citizen or lawful permanent resident)., * Industry certifications such as CISSP, GIAC, Security+, CCNP Security, PCNSE, AWS Security Specialty, or equivalent.
  • Experience with cloud security platforms including Microsoft Azure, AWS, and Google Cloud.
  • Knowledge of Infrastructure as Code (IaC) and DevSecOps practices.
  • Experience with enterprise vulnerability management and security compliance programs.
  • Familiarity with container technologies, Kubernetes, and cloud-native security architectures.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all