Security Engineer

Cornerstone Barricades
Phoenix, AZ, United States
1 day ago
Apply on focusedhrsolutions.betterteam.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Software Applications User Authentication Microsoft Azure Control Objectives for Information and Related Technology (COBIT) Cyber Security Information Systems Computer Programming Computer Networks Data Security Digital Data Information Systems Security Architecture Professional
+10 more
Public Key Infrastructure Security Software Security Information and Event Management Software Engineering Data Processing Firewalls (Computer Science) Information Technology Devsecops Plan of Action and Milestones Vulnerability Analysis

Job description

Tentative Shift Start Time 8:00 AM Tentative Shift End Time 5:00 PM Estimated Regular Hours/Week 40.00, * This position will focus on security deliverables for the STARS project. If this position is not filled, ADOR InfoSec will be behind in operations, compliance, and will not be able to support all non-STARS related projects.

  • The STARS Information Security Engineer will support the planning, design, engineering, upgrading, and monitoring of security protocols and systems for the protection of the organization’s computer applications, infrastructure, networks and data.
  • Perform system security assessments as required per state and federal law.
  • Understand State and Federal security requirements for the project scope, preferably with prior experience with control frameworks (e.g., NIST, HITRUST, COBIT, COSO, and ISO) to drive IT privacy and regulatory compliance.
  • Manage and organize the Plan of Action and Milestones for STARS. Create, monitor, and update security findings and associated metrics for STARS.
  • Assess, engineer, and recommend solutions for security and technical teams on STARS.
  • Collaborates and partners with internal and external technical teams.
  • Performs risk assessments, audits, and tests to ensure proper functioning of data processing activities and security measures.
  • Collaborates with analysts, engineers, and architects to improve security team processes using AMS principles. Collaborates with users to discuss computer data access needs, to identify security threats and violations, and to identify and recommend needed programming or process changes.
  • Reviews project documentation and attend project meetings to ensure continuity and support of design and operations. Safeguards system security and improves overall server and network efficiency by training users and promoting security awareness.
  • Develops and implements plans to safeguard digital data from accidental or unauthorized modification, destruction, or disclosure; adheres to emergency data processing needs.
  • Reviews violations of security procedures; provides training to ensure violations do not recur.
  • Reviews security policies, standards, procedures and recommends changes based on current trends and needs.
  • Identify opportunities to automate various privacy and data protection compliance activities to reduce the overall cost of compliance.
  • Performs other related duties as assigned.

Requirements

  • Skills Required Ability to collaborate, coordinate, and effectively communicate which is essential to drive work without direct authority.
  • Technically proficient, with an understanding of emerging technologies and security engineering frameworks and practices.
  • Demonstrated problem-solving and analytical skills.
  • Proficient, or able to gain rapid proficiency with a broad array of security software applications and tools.
  • Understanding and experience with computer-related security systems including firewalls, encryption, password protection, authentication and authorization, preferably with modern protocols and frameworks.
  • Experience with DevSecOps, preferably in public cloud AWS and Azure environments.
  • Excellent verbal and written communication skills.
  • Organized with attention to detail. Security or risk certifications such as CISA (Certified Information Systems Auditor), CISSP (Certified Information Systems Security Professional) and/or CIPP (Certified Information Privacy Professional) certifications are a plus.
  • Experience working with products in the following categories Enterprise password and key vaults Vulnerability scanning and management SIEM PKI Open Source Vulnerability detection and remediation Continuous, automated security validation in software development CI/CD pipelines.

Skills Preferred:

  • Experience Required At least four years of experience in computer information systems with specialization in security engineering preferred.
  • Experience Preferred.
  • Education Required Bachelor’s degree in Computer Science, Programming, or a related field required; M.B.A. in Information Systems preferred.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on focusedhrsolutions.betterteam.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:00 min

The exponential growth of digital data and cloud storage

Murphy John

4:04 min

Embedding data security and applied ethics into developer education

Daniel Tao +3 · World Congress 2024

41 sec

Massive client data loss and bio-digital storage

Chris Heilmann +1 · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all