We are seeking an experienced IT Security Specialist Lead Engineer with a strong background in enterprise security architecture, security operations, vulnerability and threat management, and compliance programs. This role requires a hands-on security expert who can lead security initiatives, advise leadership on risk mitigation, develop and implement security standards, and oversee the protection of systems, networks, applications, and data across complex environments. The ideal candidate should excel in identifying security risks, designing security solutions, and leading cross-functional teams to ensure secure and resilient technological operations.
-
Lead development and implementation of security strategies, policies, standards, and best practices.
-
Conduct security risk assessments, penetration testing, vulnerability analysis, and remediation planning.
-
Manage enterprise security technologies including firewalls, IDS/IPS, SIEM, endpoint security, and identity access management.
-
Oversee threat detection, incident response, and forensic investigations to resolve and prevent security issues.
-
Design and implement secure system architectures, cloud security controls, and network segmentation.
-
Ensure compliance with security frameworks such as NIST, ISO 27001, CIS, SOC2, and regulatory requirements such as HIPAA, PCI-DSS, and FISMA.
-
Collaborate with IT leadership and business teams to align security objectives with organizational goals.
-
Lead and mentor security engineering staff and guide technical project delivery.
-
Manage audits, security risk management reviews, and continuous monitoring processes.
-
Create and maintain security documentation, reports, technical diagrams, and incident records.
-
Evaluate emerging security threats, tools, and technologies to recommend enhancements.
-
Support business continuity and disaster recovery planning and testing.
-
Bachelor's degree in Computer Science, Information Security, Engineering, or related technical field; advanced degree preferred.
-
Minimum 12+ years of experience in IT security engineering, cybersecurity operations, or enterprise infrastructure security.
-
Strong experience with SIEM tools (Splunk, QRadar, Sentinel), EDR solutions, firewalls, VPN, IAM, DLP, PKI, and encryption technologies.
-
Hands-on experience with cloud security (AWS, Azure, GCP), including security controls, monitoring, and compliance.
-
Deep knowledge of vulnerability management, threat intelligence, and incident response procedures.
-
Strong understanding of NIST Cybersecurity Framework, Zero Trust Architecture, and industry best practices.
-
Experience designing secure system architectures and network security solutions.
-
Proven ability to lead and manage cyber security programs and multi-disciplinary teams.
-
Strong analytical, communication, and problem-solving skills with ability to engage stakeholders at multiple levels.
-
Professional certifications such as CISSP, CISM, CEH, CCSP, GIAC, or related security credentials required or strongly preferred.