Lead Security Engineer
Role details
Job location
Tech stack
Job description
The Lead Security Engineer is a senior technical resource on the Cyber & Information Security team. This role is responsible for assisting with defining and implementing security engineering standards, incident response efforts, and ensuring core security technologies are properly designed, configured, and optimized.
The Lead Security Engineer plays a critical role in reducing enterprise risk while improving detection and response capabilities across identity, endpoint, network, and cloud environments.
What are the primary responsibilities?
- Assists with security engineering and incident response functions across the enterprise
- Participants in investigation, containment, eradication, and recovery efforts for high- severity security incidents
- Assists with designing, implementing, optimizing security controls across identity, endpoint, email, network, and monitoring platforms
- Developing and maintaining detection logic, response playbooks, and operational security documentation
- Provide technical escalation support and participates in after-hours on-call rotation
- Partner with IT and business teams to ensure security controls are aligned with operational and business objectives
- Evaluate, implements, and continuously improves security technologies and processes
- Support proactive threat detection and response through monitoring and analytics platforms
This is an excellent opportunity to join one of the nation's most respected Fortune 500 companies!
Requirements
- Strong technical expertise across multiple security domains and enterprise IT systems
- Deep understanding of incident response processes and threat mitigation strategies
- Ability to translate complex technical risks into business-relevant terms
- Strong analytical, troubleshooting, and problem-solving skills
- Ability to work independently and collaboratively in a fast-paced environment
- Excellent communication skills with the ability to influence stakeholders across all levels
What technologies and domains will you work with?
- IT service management and incident tracking platforms
- Network security technologies including next-generation firewall and SASE
- Endpoint detection and response (EDR) and XDR
- Cloud productivity and infrastructure security controls
- Identity and access management (IAM), SSO and MFA
- Email security and phishing protection
- Secure web gateway (SWG) and DNS security
- SIEM and UEBA platforms
- Attack surface management and breach simulation tools
- AI-assisted security technologies, + Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field.
- 7-10+ years of hands-on security engineering or operations experience
- Strong experience in incident response and remediation
- Proven expertise with enterprise security controls
- Strong organizational and communication skills
- Preferred
- CISSP, CISM, or CEH
- Experience mentoring or leading team members
Benefits & conditions
Pulled from the full job description Health insurance 401(k) matching Dental insurance, We offer an excellent compensation and benefits package that includes comprehensive medical/dental, 401(k) with a company match, discounted stock purchase, discounts on mortgages, homes, and much more!
Come see why Toll Brothers has been attracting and retaining some of the best professionals in the industry!