Security Engineer, Corporate Security
New
C
CapeTelecommunications security
Remote USAFull-TimeMiddle
SalarySalary range for this role in New York, New York is $150,000-$220,000 depending on experience and interview performance.
Apply NowOpens the employer's application page
Job Details
- Experience
- A minimum of 2 years of experience in information security, with meaningful experience across corporate/IT security domains (identity, endpoint, network, GRC).
- Required Skills
- Python
Requirements
- Have a bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience.
- Have at least 2 years of information security experience, including meaningful experience in corporate/IT security domains such as identity, endpoint, network, or GRC.
- Bring a deep understanding of enterprise identity providers and SSO/MFA platforms, endpoint/EDR tooling, MDM platforms, and email security tooling.
- Have working knowledge of common compliance frameworks such as SOC 2 and ISO 27001.
- Understand consumer privacy regulations such as GDPR and CCPA as they apply to customer data.
- Have exposure to secure software development lifecycle practices and secure design reviews with engineering.
- Be proficient in Python, shell scripting, or similar scripting or automation.
- Be familiar with vendor and third-party risk management processes and tooling.
- Have solid knowledge of network security, encryption technologies, and secure business-system configuration.
- Have strong analytical skills for identifying and mitigating security vulnerabilities and risks.
Responsibilities
- Design, implement, and manage security controls and policies across corporate IT systems.
- Own identity and access management, endpoint security, email security, and network security across the organization.
- Assess corporate systems and vendors, identify vulnerabilities, and recommend mitigation strategies.
- Establish governance, guardrails, and monitoring for employee tooling and its data-handling, access, and third-party risks.
- Manage vulnerability scanning, risk-based prioritization, remediation and patch SLAs, and closure tracking.
- Lead security awareness and phishing simulation programs.
- Support compliance, audits, penetration tests, and red team exercises, and ensure findings are remediated.
- Manage third-party security risks, including questionnaires, contract reviews, and ongoing vendor monitoring.
- Investigate security incidents and insider-threat concerns with HR, Legal, and IT.
- Work with stakeholders to integrate security requirements into IT projects and business initiatives.
View Full Description & ApplyYou'll be redirected to the employer's site