Cybersecurity Engineer
Indexed description
This is an in-office position.
Responsibilities
- Analyzing cloud infrastructure to understand and communicate risks, concerns, and outcomes of decisions
- Lead Identity and Access Management (IAM) initiatives, including authentication, authorization, privileged access management, conditional access, and identity governance
- Develop and maintain Data Loss Prevention (DLP) controls to protect sensitive business data across cloud services, endpoints, collaboration platforms, and AI-enabled applications
- Design, implement, and manage Privileged Access Management (PAM) solutions to secure administrative, service, and identities, including privileged account lifecycle management, just-in-time access, credential protection, session monitoring, and privileged access governance
- Establish security policies and governance for AI and agentic AI technologies that require authentication, authorization, monitoring, and lifecycle management
- Accountable for tracking cloud application vulnerabilities through security tools and meeting with development teams to formulate remediation plans
- Perform threat modeling, security assessments, and architecture reviews for cloud services, AI applications, and new technology deployments
- Partner with IT, infrastructure, and application teams to integrate security controls into cloud platforms, identity services, and AI-powered business solutions
- Participate in tabletop exercises and simulations to test and improve incident response plans
- Support compliance, audit, and risk management activities by documenting security controls, procedures, and technical standards
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field
- 5+ years of experience with Cloud Security, Identity and Access Management, Information Security, or a similar role within an enterprise-level organization
- Professional certifications, such as Security+, Cloud+, AZ-300, AZ-500, CCSP, CISSP, or other relevant security certifications
- Experience designing, implementing, and supporting security controls in Microsoft Azure, AWS, or other enterprise cloud environments
- Hands-on experience with Identity and Access Management (IAM) technologies, including authentication, authorization, single sign-on (SSO), federation, identity governance, and conditional access
- Experience administering or supporting Privileged Access Management (PAM) solutions, including privileged account governance, just-in-time access, credential vaulting, and privileged session management
- Experience implementing and managing Data Loss Prevention (DLP), information protection, and data governance controls across cloud services, endpoints, and collaboration platforms
- Knowledge of AI and agentic AI security concepts, including governance, identity lifecycle management, authorization models, and monitoring of AI agents
- Knowledge of security frameworks and standards such as NIST CSF, CIS Controls, ISO 27001, and Zero Trust Architecture
- Strong analytical, troubleshooting, and problem-solving skills
- Experience with change-management policies and procedures
- Strong communication skills, both written and verbal, with the ability to convey complex technical concepts to non-technical stakeholders
- Microsoft Entra ID, PIM, Identity Governance, and Conditional Access
- Microsoft Purview DLP and Information Protection
- CyberArk, OneIdentity, Delinea, or similar PAM platforms
- Security automation and orchestration experience
- AI and agentic AI security governance
- Experience managing machine identities, service accounts, and workload identities
- Threat modeling and cloud security architecture review experience
Key Benefits at Kimley-Horn
- Exceptional Retirement Plan: 2-to1- company match on up to 4% of eligible compensation (salary + bonus) and additional profit-sharing contribution.
- Comprehensive Health Coverage: Low-cost medical, dental, and vision insurance options.
- Time Off: Personal leave, flexible scheduling, floating holidays, and half-day Fridays.
- Financial Wellness: Student loan matching in our 401(k), and performance-based bonuses.
- Professional Development: Tuition reimbursement and extensive internal training programs.
- Family-Friendly Benefits: New Parent Leave, family building benefits, and childcare resources.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search