Cybersecurity Engineer

NRG BLUEWATER WIND
Princeton, NJ, United States
1 day ago
Apply on careers.nrgenergy.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security System Configuration Identity and Access Management Intrusion Detection Systems Key Management Network Security Microsoft Software
+13 more
Network Segmentation Network Protocols PCI Data Security Standards Security Information and Event Management Data Logging Cloud Platform System Cyber Threat Analysis Amazon Virtual Private Cloud (VPC) Information Technology CIS Benchmarks Prisma Cloud Platform Serverless Computing Vulnerability Analysis

Job description

Position Summary: The Cybersecurity Engineer is responsible for maintaining security measures that protect the organization’s systems, cloud workloads, and data. This role focuses on identifying vulnerabilities and risks, operating security tools across on-premises and cloud environments, providing security guidance to engineering teams, and supporting incident response efforts., · Cloud posture across AWS (and/or Azure/GCP), identify misconfigurations and risks, and drive remediation by partnering with cloud and application owners.

· Provide security guidance and advisory support to cloud, infrastructure, and development teams on secure configuration, IAM, encryption, network segmentation, and logging.

·Support secure cloud architecture reviews and ensure alignment with the Framework (Security Pillar), CIS Benchmarks, and organizational cloud security standards.

· Understanding of Network protocols and network security Tools like NAC, IPS.

· Administer IAM platforms and integrations (e.g., SSO, MFA, directory services, conditional access) across on-premises and cloud environments.

· Conduct vulnerability assessments across on-premises, cloud, and container workloads to identify potential risks.

· Assist in the remediation of vulnerabilities by working closely with IT, cloud, and development teams.

· Assist in deploying, configuring, and maintaining security tools such as IDS/IPS, endpoint protection, SIEM, and WAF.

· Assist in the development, implementation, and enforcement of security policies and procedures, including cloud security standards and guardrails.

· Perform routine audits to ensure security compliance with organizational policies and regulatory requirements (e.g., NIST CSF, PCI DSS, SOX) across hybrid and cloud environments.

· Research and stay informed about current cybersecurity threats, vulnerabilities, cloud attack techniques, and best practices.

· Provide technical support and guidance to IT, cloud engineering, and development staff on security-related issues.

Requirements

· Hands-on experience operating a CSPM/CNAPP platform (Orca preferred; Wiz, Prisma Cloud, or Defender for Cloud also relevant).

· Working knowledge of at least one major cloud provider (AWS preferred), including native security services (e.g., GuardDuty, Security Hub, IAM Identity Center, KMS, CloudTrail, WAF/Shield).

· Strong understanding of cloud security concepts including IAM, key management, network security (VPC, transit gateway, private endpoints), logging/monitoring, and shared responsibility models.

· Ability to interpret cloud misconfiguration findings, assess risk, and clearly communicate remediation guidance to cloud and application teams.

· Exposure to container and serverless security concepts (e.g., EKS, ECS, Lambda) is a plus.

· Cloud security certifications such as AWS Certified Security - Specialty, AWS Certified Solutions Architect, Microsoft SC-200/AZ-500, or CCSP are highly desired.

· Bachelor’s degree in Cyber Security, Computer Science, or related field or equivalent relevant work experience.

· 2-5 years of experience in cyber security or related roles, including exposure to cloud environments.

· Additional certifications such as Security+, CEH, or CySA+ are desired.

· Knowledge of security tools, technologies, and best practices across enterprise and cloud environments.

· Strong understanding of networking and operating systems.

· Analytical and problem-solving skills with attention to detail.

· Ability to work collaboratively in a team environment and communicate technical concepts effectively.

About the company

Welcome to the intersection of energy and home services. At NRG, we’re all about propelling the next generation of leaders forward. We are driven by our passion to create a smarter, cleaner and more connected future. We deliver innovative solutions that make our customers’ lives easier-helping them power, protect, and intelligently manage their homes and businesses. To do this, we need creative and talented people to join our company.

We offer a dynamic work environment and a unified and inclusive culture. NRG fosters a strong sense of belonging that leads to better collaboration and business performance. Our company programs are designed to help employees develop the skills they need for success now and in the future. In everything we do, we aim to champion our employees and bring value to our customers, investors and society.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on careers.nrgenergy.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:15 min

Auditing container configurations against CIS benchmark security standards

Madhu Akula · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

3:39 min

Validating data queries and infrastructure security configurations

Philipp Krenn · World Congress 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all