Cyber Security Engineer
Indexed description
The Cyber Security Engineer (CSE) is responsible for the day-to-day technical operations required to safeguard the organization’s computer networks, systems, and cloud infrastructure. The CSE implements, manages, and monitors security controls to protect sensitive data and infrastructure from cyber-attacks across on-premises and cloud environments. Working as a core member of the IT team, the CSE reports to the Security Manager or CTO and collaborates cross-functionally to strengthen the organization’s overall security posture.
About the Role
The Cyber Security Engineer (CSE) is responsible for the day-to-day technical operations required to safeguard the organization’s computer networks, systems, and cloud infrastructure.
Responsibilities
- Maintain the integrity and confidentiality of organizational information across on-premises and cloud environments
- Implement and manage security configurations within AWS, including GuardDuty, IAM, and Security Hub
- Implement and manage security configurations within Google Cloud, including Security Command Center, IAM, and VPC Service Controls
- Own the lifecycle of user access and enforce least privilege principles
- Manage MFA, SSO, and Privileged Access Management
- Use PowerShell and Bash scripting to automate security monitoring and audit cloud configurations
- Integrate security into the CI/CD pipeline and assist with remediation of application vulnerabilities
- Collaborate with the Network team on firewall rules, VPN configurations, and micro-segmentation strategies
- Serve as the Tier 3 escalation point for security-related tickets and provide guidance on secure workstation deployment
- Utilize SIEM and EDR/XDR platforms to identify, investigate, and respond to irregular system behavior or potential intrusions
- Perform regular vulnerability scans and work with the Network and Systems teams to prioritize and validate patching
- Participate in incident response efforts and conduct technical forensics
- Document post-mortem findings to prevent recurrence
- Maintain technical security standards, network diagrams, policies, and incident response playbooks
Qualifications
Bachelor’s degree in Computer Science, Cyber Security, or related field, or equivalent professional experience.
Required Skills
- Proficiency in PowerShell or Bash for task automation and log parsing
- Deep understanding of identity providers such as Google Workspace, Azure AD/Entra ID, or Okta, and SAML/OIDC protocols
- Hands-on experience with firewalls, Network Access Control, PKI certificates, and MFA/SSO integrations
- Experience with EDR platforms such as Bitdefender or CrowdStrike
- Experience with SIEM tools such as Splunk or Sentinel
- Experience with vulnerability scanners such as Qualys or Rapid7
- Experience using system management tools
- Strong understanding of access control, network and systems hardening, threat modeling, encryption, vulnerability management, digital forensics, and incident response
- Knowledge of risk assessment tools, technologies, and methods
- Familiarity with modern security platforms such as Darktrace, DLP systems, and File Integrity Monitoring
- Knowledge of disaster recovery, computer forensic tools, and methods
- Working knowledge of industry frameworks such as NIST CSF, PCI-DSS, or ISO 27001
- Strong analytical skills to troubleshoot connectivity issues caused by security controls and resolve technical vulnerabilities
- Ability to collaborate with DevOps and Developers without disrupting production workflows
- Ability to dissect complex logs and alerts to identify actionable threats
- Ability to translate technical security risks into clear, actionable guidance
Equal Opportunity Statement
The organization is committed to diversity and inclusivity.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search