Cyber Security Engineer

New York, NY Full Time
POSTED ON 5/6/2024

Job Details

job summary:

Under the general guidance of the IT/Security Architect or Systems Manager, the candidate will be responsible for evaluating and implementing new technologies, analyzing cybersecurity related components and controls associated to the product, process and solution, and identify and resolve potential issues to help enhance and secure a large enterprise network. The position requires a broad foundation of IT/Security architectural experience with an understanding of Internet, server/storage technologies, cloud services/integrations are a must. The candidate will be responsible for designing complex and innovative solutions addressing vulnerability detection, threat and risk analysis, network intrusion, securing technology assets across the application, infrastructure, cloud and data tiers and development/implementation of vulnerability mitigation strategies. This is a hands-on team member who actively works with various teams including security, infrastructure and development teams to improve our overall security standards. This position is expected to be the last level of technical escalation within the company for the assigned responsibilities.



Guides Cyber Governance and Information Protection team and makes informed security decisions on the design of infrastructure, systems and applications.



Works with tech leads and teams to ensure security is built into app development, network infrastructure and cloud systems. Work with necessary Information Technology groups to satisfy specific technology related issues. Act as an Information Security liaison between the customers and all groups in Information Technology



Implements industry leading practices around cyber risks and Cloud security and perform security assessments of cloud platforms/environments using industry standard frameworks such as ISO, CSA-CSM and NIST



Designs and develops security policies, standards and procedures e.g. firewall rules, SSL/IPSec, security incident and event management (SIEM), data protection (DLP, encryption), user account management (SSO, SAML), and password/key management.



Identifies software weaknesses that could lead to exploitable vulnerabilities such as SQL injection, cross-site scripting, cross-site request forgery, buffer overflows, use of hard-coded passwords, weak encryption, sensitive data.



Seasoned professional with detailed technical knowledge of techniques, standards and state-of-the art capabilities for authentication and authorization, applied cryptography, security vulnerabilities and remediation. Can advise on architecture decisions at technical and product level.



Adequate knowledge of web related technologies (Web applications, Web Services and Service Oriented Architectures) and of network/web related protocols.



Experience working with Cloud security posture management tools.



Constantly looking for better ways of solving security problems and designing the solution, not afraid of challenging the status quo.



Respond swiftly to all alerts, performing initial risk/impact assessments or escalating issues as appropriate



Follow change management controls and guidelines.



Support operating organizations during corporate emergencies. Participate in the Company's emergency management processes, cyber security and storm plans.



Perform other related tasks and assignments as required.



Skills & Requirements




  • Must be comfortable and skilled at driving information security processes and techniques. Must be able to communicate designs and give persuasive presentations. Must be able to interact with all levels of management and communicate technical concepts to a non-technical audience.





  • Ability to handle multiple assignments with changing priorities while meeting deadlines.





  • Must be flexible and able to work off-hours as required to support deployments, resolve production problems or respond to corporate emergencies.





  • Ability to establish medium and long-term plans and priorities and estimate investment requirements.





  • Minimum 5 years of hands-on experience working in cyber security and related discipline.





  • Minimum 5 years of hands-on experience in designing, developing, implementing secure architectures and/or processes.





  • Experience with implementing or integrating commercially available infrastructure components.





  • Experience in evaluating technology and establishing standard designs.





  • Must be conversant in emerging technologies and practices such as cloud computing.





  • Familiarity with security vulnerability management products, process and industry best practices





  • Familiarity of security infrastructure and application assets to design and implement Cybersecurity controls and designs.



The following are not required for this position but would be considered as a valuable asset in a potential candidate.




  • Knowledge in OT/ICS protocols.





  • Technical certifications (e.g., AWS Certified Solutions Architect, Cloud Certified Professional, Microsoft Cloud Certifications, CISSP, CISM, CIPP, GCIP etc.). are preferred but not mandatory. Experience in Agile Development, with specific Security Architect (or similar) experience preferred. Knowledge of security tools is preferred.





location: New York, New York

job type: Contract

salary: $65 - 67 per hour

work hours: 8am to 4pm

education: Bachelors



responsibilities:



Under the general guidance of the IT/Security Architect or Systems Manager, the candidate will be responsible for evaluating and implementing new technologies, analyzing cybersecurity related components and controls associated to the product, process and solution, and identify and resolve potential issues to help enhance and secure a large enterprise network. The position requires a broad foundation of IT/Security architectural experience with an understanding of Internet, server/storage technologies, cloud services/integrations are a must. The candidate will be responsible for designing complex and innovative solutions addressing vulnerability detection, threat and risk analysis, network intrusion, securing technology assets across the application, infrastructure, cloud and data tiers and development/implementation of vulnerability mitigation strategies. This is a hands-on team member who actively works with various teams including security, infrastructure and development teams to improve our overall security standards. This position is expected to be the last level of technical escalation within the company for the assigned responsibilities.



Guides Cyber Governance and Information Protection team and makes informed security decisions on the design of infrastructure, systems and applications.



Works with tech leads and teams to ensure security is built into app development, network infrastructure and cloud systems. Work with necessary Information Technology groups to satisfy specific technology related issues. Act as an Information Security liaison between the customers and all groups in Information Technology



Implements industry leading practices around cyber risks and Cloud security and perform security assessments of cloud platforms/environments using industry standard frameworks such as ISO, CSA-CSM and NIST



Designs and develops security policies, standards and procedures e.g. firewall rules, SSL/IPSec, security incident and event management (SIEM), data protection (DLP, encryption), user account management (SSO, SAML), and password/key management.



Identifies software weaknesses that could lead to exploitable vulnerabilities such as SQL injection, cross-site scripting, cross-site request forgery, buffer overflows, use of hard-coded passwords, weak encryption, sensitive data.



Seasoned professional with detailed technical knowledge of techniques, standards and state-of-the art capabilities for authentication and authorization, applied cryptography, security vulnerabilities and remediation. Can advise on architecture decisions at technical and product level.



Adequate knowledge of web related technologies (Web applications, Web Services and Service Oriented Architectures) and of network/web related protocols.



Experience working with Cloud security posture management tools.



Constantly looking for better ways of solving security problems and designing the solution, not afraid of challenging the status quo.



Respond swiftly to all alerts, performing initial risk/impact assessments or escalating issues as appropriate



Follow change management controls and guidelines.



Support operating organizations during corporate emergencies. Participate in the Company's emergency management processes, cyber security and storm plans.



Perform other related tasks and assignments as required.



Skills & Requirements




  • Must be comfortable and skilled at driving information security processes and techniques. Must be able to communicate designs and give persuasive presentations. Must be able to interact with all levels of management


If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

Sign up to receive alerts about other jobs that are on the Cyber Security Engineer career path.

Click the checkbox next to the jobs that you are interested in.

Income Estimation: 
$122,186 - $154,832
Income Estimation: 
$144,874 - $184,472
Income Estimation: 
$122,186 - $154,832
Income Estimation: 
$144,874 - $184,472

Sign up to receive alerts about other jobs with skills like those required for the Cyber Security Engineer.

Click the checkbox next to the jobs that you are interested in.

  • Disaster Recovery Planning Skill

    • Income Estimation: $106,238 - $128,244
    • Income Estimation: $111,013 - $139,383
  • Cloud Architecture Skill

    • Income Estimation: $79,486 - $103,093
    • Income Estimation: $93,488 - $122,478
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Randstad Digital

Randstad Digital
Hired Organization Address Omaha, NE Full Time
We are looking for an organized and motivated individual to help ensure our end users are provided equipment in a timely...
Randstad Digital
Hired Organization Address Bentonville, AR Full Time
This is an onsite, fulltime role in Bentonville, AR - client will sponsor H1Bs and provide relocation costs. No C2C. Loo...
Randstad Digital
Hired Organization Address Bentonville, AR Full Time
Work as an Individual contributor who owns the Functional Solution and Integrations design for SuccessFactors business p...
Randstad Digital
Hired Organization Address Windsor, CT Contractor
We’re currently seeking a Sr Systems Integrations engineer to support System Integrator activities on the Engine Control...

Not the job you're looking for? Here are some other Cyber Security Engineer jobs in the New York, NY area that may be a better fit.

Cyber Security Engineer

VTS3, New York, NY

Cyber Security Systems Engineer - Remote

The Dignify Solutions, LLC, New York, NY