Job Description
Security Engineer
Are you driven by the challenge of staying one step ahead of cyber threats? Do you enjoy digging deep into systems, securing infrastructure, and making a real impact every day? If you're looking for a role where your skills directly contribute to protecting people, platforms, and data—you might be exactly who we're looking for.
Our client is seeking a Security Engineer to join their growing technology team. This is more than just a job—it's a chance to be a key player in shaping and defending the security posture of a forward-thinking organization.
What You’ll Do
Lead Security Monitoring and Compliance
- Ensure the organization’s Information Security Program and policies are enforced and up to date.
- Optimize and manage access review processes to ensure secure, appropriate system access.
- Monitor SIEM, firewalls, servers, and endpoints to detect and respond to threats in real time.
- Conduct annual penetration tests, OWASP testing, and monthly security scans; translate findings into action.
- Research, deploy, and manage Palo Alto Firewalls and other technologies to harden defenses.
Threat Detection and Incident Response
- Identify and assess security risks across infrastructure, applications, and data.
- Investigate incidents, collect forensic data, and coordinate incident response efforts.
- Continuously refine SIEM rules and alerting mechanisms to improve threat detection.
- Support business continuity and disaster recovery plans, especially in response to cybersecurity threats.
Cross-Functional Collaboration and Education
- Work closely with IT Operations to prioritize vulnerabilities and implement remediation plans.
- Collaborate with HR and internal stakeholders to promote a strong security culture.
- Conduct vendor and third-party security risk assessments to protect company data and systems.
- Act as a security subject matter expert in audits, risk reviews, and client-facing meetings.
Stay Ahead of the Curve
- Ensure PCI compliance and support security for third-party and internet-facing services.
- Enforce security tools such as antivirus, encryption, anti-spam, and endpoint protection.
- Keep current with evolving regulations (GLBA, SOX, etc.) and security best practices.
- Explore new tools and technologies to proactively strengthen the organization’s security ecosystem.
What You Bring
Knowledge & Skills
- Deep understanding of cybersecurity frameworks, regulations, and enterprise IT environments.
- Hands-on experience with Microsoft Active Directory, Cisco firewalls, Azure or AWS, switches, and routers.
- Expertise in two or more areas: networking, data security, IT auditing, or security administration.
- Strong problem-solving, analytical, and organizational skills.
- Excellent communicator—able to explain technical issues clearly to non-technical teams.
- Adaptable and calm under pressure in a fast-paced, evolving environment.
- Willingness to occasionally work off-hours to address urgent security issues.
Education & Experience
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or related field—or equivalent experience.
- Minimum of 6 years in IT, with at least 2 years in security-focused roles.
Certifications
- Industry-recognized certifications (e.g., SSCP, CISSP, CISM) required or must be obtained within one year of hire.