CYBER SECURITY ENGINEER

Posted 2 hours ago
Custom Truck One Source
Summary

The Cyber Security Engineer is an owner of the security systems the business runs on. This role designs, integrates, and manages the security platforms and controls that protect the organization, and maintains a working knowledge of the infrastructure, network, and cloud environments those controls operate within — monitoring them for risk without owning their day-to-day administration. Escalations reach this role when issues are genuinely hard or touch the underlying security architecture itself. The Cyber Security Engineer's work is defined as much by projects and platforms as by tickets — standing up new security capabilities, hardening the environment by design, and making the technical decisions that Information Security Analysts and other IT staff build on.

Essential Duties and Responsibilities include the following. Other duties may be assigned.

  • Designs, builds, and owns the security architecture across infrastructure, network, cloud, and applications, including segmentation, identity and access management, and zero-trust controls.
  • Serves as the escalation point for security incidents and issues that are technically complex or require architectural changes, going beyond day-to-day monitoring and triage.
  • Leads security projects end to end — evaluating, selecting, and standing up new platforms and capabilities such as SIEM, EDR/XDR, vulnerability management, IAM/PAM, and cloud security posture management tools.
  • Designs the security hardening standards and baselines for servers, network devices, and cloud environments that other IT teams implement and maintain.
  • Owns the architecture and controls needed to maintain PCI, SOX, and other compliance requirements, and represents security engineering in internal and external audits.
  • Leads root cause analysis and technical remediation for significant security incidents, and drives architectural changes that prevent recurrence.
  • Designs and continuously improves the vulnerability management program, including scanning strategy, risk-based prioritization, and remediation workflows.
  • Architects security for cloud environments (AWS/Azure/GCP), including network design, identity, encryption, logging, and posture management.
  • Builds automation and tooling (scripting, infrastructure as code) to reduce manual security work and improve detection and response times.
  • Performs threat modeling and security risk assessments for new systems and projects prior to go-live.
  • Provides technical mentorship and guidance to Information Security Analysts and other IT staff on security best practices and tooling.
  • Evaluates security vendors and technologies, and owns technical vendor relationships for security tooling.
  • Documents and maintains security architecture diagrams, standards, and runbooks in the organization's knowledge base.
  • Stays current on emerging threats, security architecture patterns, and industry standards, and translates them into changes to the environment.
  • Protects the organization's value by keeping information confidential.
  • Accomplishes organizational goals by taking ownership of new and different initiatives and identifying opportunities to add value beyond assigned tasks.

Position Type/Expected Hours of Work

Work hours are typically 8 am to 5 pm; this may vary depending on project needs, on-call rotations, and incident response requirements.

Competencies:

  • Security architecture and design
  • Technical leadership and mentoring
  • Project and platform ownership
  • Sound judgment under ambiguity
  • Strategic thinking
  • Excellent verbal communications skills
  • Able to work with minimum supervision
  • Able to manage multiple concurrent projects
  • Strong knowledge of security tooling and platforms
  • Ethical Conduct
  • Technical Capacity
  • Time Management
  • Organizational Skills
  • Problem Solving/Analysis
  • Discretion
  • Thoroughness
  • Initiative
  • Abides by all laws, regulations, policies, work procedures and instructions
  • Professional appearance
  • Business casual
  • Abides by all safety rules, and, if applicable, uses appropriate safety equipment in designated areas

Qualifications: To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Strong working knowledge of network, cloud, and infrastructure security architecture; ability to design solutions rather than just execute predefined procedures.
  • Ability to lead technical projects from design through implementation.
  • Strong work ethic and ability to work well with others.
  • Highly organized, detail-oriented, delivering accurate and polished work.

Education and/or Experience

Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent combination of education and experience. Five or more years of experience in cybersecurity engineering, network/infrastructure security, or a related field, with demonstrated experience designing and owning security architecture. Relevant certifications preferred, such as CISSP, CISM, CEH, Security+, or a cloud security certification (AWS, Azure, or GCP).

Language Skills

Excellent listening and communication skills. Ability to explain complex technical and architectural decisions to both technical and non-technical audiences. Ability to read and interpret technical documentation and produce clear design and incident documentation.

Mathematical Skills

Good with basic math. Must possess the ability to make mathematical computations with accuracy. Ability to work with mathematical concepts such as probability and statistical inference, and fundamentals. Ability to apply concepts such as fractions, percentages, ratios, and proportions to risk analysis and reporting.

Reasoning Ability

Ability to design solutions for problems with no established procedure, and to make sound architectural decisions under ambiguity and time pressure. Ability to interpret a variety of instructions furnished in written, oral, diagram, or schedule form. Ability to coordinate several complex, technical projects simultaneously while working under pressure to meet deadlines. Ability to maintain a positive and flexible attitude and successfully operate under ambiguous guidelines. Ability to determine the proper course of action for escalated, high-severity security issues. Ability to create momentum and drive organizational change in security posture. Ability to solve practical problems involving a variety of concrete variables where only limited standardization exists.

Other Skills And Abilities

Hands-on experience with security tooling such as SIEM, EDR/XDR, vulnerability scanners, and IAM/PAM platforms. Scripting or automation experience (e.g., Python, PowerShell) is a plus. Excellent planning, organizational, and priority-setting skills. Well-developed interpersonal and communication skills. Professional appearance and manner, business casual. Ability to learn new tools and platforms quickly.

Physical Demands The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to sit. The employee frequently is required to walk; use hands to finger, handle, or feel; reach with hands and arms; and talk or hear. The employee is occasionally required to stand. The employee must frequently lift and/or move up to 10 pounds and occasionally lift and/or move up to 25 pounds. Specific vision abilities required by this job include close vision, distance vision, color vision, and ability to adjust focus.
Login to Apply Now

Recommended Jobs