Staff Information Security Engineer
Indexed description
Location Requirement:
The work arrangement for this role is a hybrid position, requiring a minimum of three (3) days in the office, with flexibility to work remotely two (2) days each week.
What You Will Be Doing
- 30% — Security Engineering & Architecture: Analyze and understand complex technology systems across IT and Service Provider domains; independently evaluate both new technologies and legacy solutions to protect the confidentiality, integrity, and availability of information systems and data.
- 25% — Risk Awareness & Mitigation: Collaborate with architects, senior engineers, management, and internal and external stakeholders to identify security risks and ensure appropriate mitigation steps are taken.
- 20% — Standards & Compliance: Maintain awareness of security trends, government regulations, and third-party standards (NIST, ISO); apply compliance frameworks including NIST CSF, NIST 800-53, and/or ISO 27001.
- 15% — Monitoring & Incident Response: Administer SIEM platforms (Splunk, Splunk ES), support EDR/MDR/XDR tooling, and perform security incident response.
- 10% — Automation & Scripting: Apply scripting (Python, PowerShell, or equivalent) and Infrastructure as Code / automation tools (Terraform, Ansible, git) to strengthen and scale security operations.
- Identity & Access: IAM, SSO, RADIUS, TACACS+, AD/LDAP/Kerberos, Entra, PIM, Identity Governance
- Cloud: AWS, Microsoft Azure, Office 365 security controls (IAM, Azure Policies, Intune, DLP, IaaS)
- SIEM/Detection: Splunk, Splunk ES, EDR/MDR/XDR platforms
- Infrastructure as Code: Terraform, Ansible, git
- Security Protocols: TCP/IP, HTTP, WAF, APIs, PKI, SSL/TLS, cryptographic functions
- Bachelor's degree or equivalent combination of education and relevant experience; advanced degree preferred
- Minimum 10 years of related industry experience, or equivalent mix of education and experience
- Deep knowledge of security and telecommunications protocols and architectures
- Proficiency in one or more scripting languages (Python, PowerShell, or equivalent)
- Strong understanding of operating systems and command-line administration at all levels
- Strong understanding of TCP/IP networking protocols across all layers of the OSI stack
- Asset discovery and logical asset management
- Authentication and identity technologies (IAM, SSO, RADIUS, TACACS+, AD/LDAP/Kerberos)
- Compliance frameworks (NIST CSF, NIST 800-53, ISO 27001)
- Splunk, Splunk ES, or other SIEM administration
- Infrastructure as Code and automation tools (Terraform, Ansible, git)
- AWS, Azure, and Office 365 security controls
- EDR/MDR/XDR platforms and security incident response
- HTTP protocol, WAF technologies, BurpSuite testing, and APIs
- PKI, SSL/TLS, and cryptographic functions
- Micro-segmented environments and regular expressions
- Current industry certifications (SANS/GIAC, Azure or AWS architecture/security)
- Excellent oral and written communication skills
- Excellent critical thinking, analytical, and engineering skills, including the ability to independently analyze both new technologies and legacy solutions
- Demonstrated commitment to ongoing skills development
Posted By: Jadyn Dennis
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search