Seeking a highly experienced Security Lead Engineer to lead the design, implementation, and continuous improvement of cybersecurity measures across our hybrid environment.
Requirements
- Design, integrate, and maintain end-to-end security architecture for on-premises and cloud environments.
- Ensure secure network topology including segmentation, access control, and VPN tunnels.
- Lead development and enforcement of security policies, procedures, and best practices.
- Oversee the operation and tuning of Security Operations Center (SOC) including SIEM platforms.
- Manage endpoint protection through EDR and threat-hunting solutions.
- Manage and enhance email security systems to protect against phishing, malware, and spam, ensuring compliance with organizational security policies.
- Lead incident response efforts and develop threat prevention strategies.
- Supervise vulnerability scanning and penetration testing for internally developed applications.
- Lead WAF deployment and optimization to protect business-critical web applications.
- Implement security best practices and policy enforcement across multi-cloud environments
- Drive cybersecurity-related compliance programs (e.g., SOC 2 Type 2, ISO 27001).
- Lead cross-functional GRC initiatives and support internal/external audits.
- Manage security risk assessments and recommend mitigation strategies.
- Maintain detailed documentation for security controls, policies, systems, and incidents.
- Plan and conduct quarterly security awareness sessions to educate staff on emerging cyber threats, security best practices, and the organization's security policies.
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan
- Health Insurance
- Dental Insurance
- Vision Insurance