> Markdown version of [/jobs/ext/3066185-it-security-engineer](https://www.wearedevelopers.com/jobs/ext/3066185-it-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Engineer - **Company:** HD Hyundai Power Transformers USA, Inc. - **Location:** Montgomery, AL, United States - **Contract:** Permanent contract - **Skills:** Microsoft Word, Microsoft Excel, Microsoft Windows, Microsoft Outlook, Cloud Computing Security, CompTIA Security+, Cyber Security, Information Leak Prevention, Disaster Recovery, Identity and Access Management, Microsoft Office, Network Segmentation, Microsoft PowerPoint, Systems Development Life Cycle, Role-Based Access Control, Azure Active Directory, Cloud Services, Secure Coding, Web Application Security, Service Pack, Security Information and Event Management, Software Engineering, Software Vulnerability Management, Software Security, Cyber Threat Analysis, Information Technology, Process Control Systems, Operational Systems, SentinelOne Expertise, Vulnerability Analysis - **Published:** September 25, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=04c9ceace30891c5 ## About the Role * Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent work experience * Experience supporting enterprise cybersecurity technologies and security operations * Working knowledge of Microsoft 365 Security, Microsoft Entra ID, Endpoint Security, and Identity & Access Management * Understanding of cybersecurity principles including risk management, vulnerability management, and incident response * Knowledge of IT and OT security concepts and cybersecurity best practices * Ability to analyze security risks and recommend practical solutions * Strong analytical, troubleshooting, and problem-solving skills * Excellent written and verbal communication skills * Ability to work independently and collaboratively in a cross-functional environment * Proficient with Microsoft Office Suite (Outlook, Word, Excel, PowerPoint) * Bilingual Korean-English is preferred, * Cybersecurity certifications such as CISSP, CISM, Security+, GSEC, CySA+, or equivalent * Experience with Microsoft Defender, SentinelOne, Trellix, Proofpoint, Skyhigh Security, or similar enterprise security platforms * Experience supporting manufacturing or industrial environments * Knowledge of Operational Technology (OT) or Industrial Control System (ICS) cybersecurity * Experience with security compliance frameworks such as ISO 27001, NIST Cybersecurity Framework, SOC 2, or IEC 62443 * Familiarity with Secure Software Development Lifecycle (Secure SDLC) and application security practices * Experience with cloud security technologies and Microsoft 365 security administration * Prior experience in a multinational or manufacturing environment, * Strong organizational and time management skills * Excellent interpersonal and problem-solving abilities * High attention to detail and confidentiality * Adaptability and willingness to take initiative * Ability to work effectively in a cross-cultural and multilingual environment * Proactive communication and collaboration skills ## Description This position is responsible for designing, implementing, and managing enterprise-wide cybersecurity programs across Information Technology (IT), Operational Technology (OT), and Physical Security environments. The role focuses on strengthening the organization's security posture through governance, security operations, risk management, compliance, and secure system implementation while ensuring business continuity and regulatory compliance * Key Responsibilities * Security Governance & Compliance * Develop, implement, and maintain enterprise-wide security policies, standards, procedures, and security governance frameworks covering IT, OT, and Physical Security * Ensure compliance with corporate security requirements, cybersecurity regulations, and industry standards * Coordinate internal and external security audits and maintain supporting documentation * Perform security risk assessments and recommend mitigation strategies * Security Operations * Administer and maintain enterprise security solutions including Endpoint Protection (EPP/EDR), Data Loss Prevention (DLP), Email Security, Web Security, CASB, Device Control, and Microsoft 365 Security * Monitor security events, investigate alerts, and coordinate incident response activities * Perform vulnerability assessments and coordinate remediation efforts across enterprise systems * Manage security patching and hardening activities to reduce cyber risks * IT / OT Security * Manage cybersecurity controls for both enterprise IT infrastructure and Operational Technology (OT) environments * Develop security standards and best practices for Industrial Control Systems (ICS) and manufacturing environments * Collaborate with infrastructure and operations teams to strengthen system security while maintaining operational availability * Support network segmentation and secure communication between IT and OT environments * Identity & Access Security * Implement and manage Identity and Access Management (IAM) policies * Review user access rights and ensure compliance with the principle of least privilege * Support Microsoft Entra ID security configuration and access governance * Application & Cloud Security * Review and improve security controls for in-house developed applications * Collaborate with software developers to implement Secure Development Lifecycle (Secure SDLC) practices * Support security configuration and monitoring for Microsoft 365 and cloud-based services * Identify security risks during application development and recommend appropriate mitigation controls * Security Awareness & Incident Response * Develop and deliver cybersecurity awareness training programs * Lead security incident investigations and coordinate containment, recovery, and root cause analysis * Maintain incident response procedures and disaster recovery security requirements * Monitor emerging cyber threats and recommend proactive security improvements * Documentation & Reporting * Maintain security documentation, technical standards, and operational procedures * Prepare security metrics, dashboards, and executive reports * Recommend continuous improvements to enhance the organization's overall cybersecurity posture * Other duties as assigned * Perform other duties as assigned * ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [IKEA Story: Transforming an Iconic Retail Brand](https://www.wearedevelopers.com/videos/444-ikea-story-transforming-an-iconic-retail-brand) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [ZEISS & Microsoft - Building the Next Generation Medical Ecosystem in the Cloud](https://www.wearedevelopers.com/videos/424-zeiss-microsoft-building-the-next-generation-medical-ecosystem-in-the-cloud) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)