Security Engineer (Senior Level)
Ntiva
About the role
How You’ll Make An Impact
As a Senior Security Engineer, you serve as the senior technical advisor for high‑risk security remediation, planned security infrastructure changes, and limited post containment recovery for Gov Con clients. You are responsible for performing risk‑based technical analysis, sequencing recommendations, and clearly defining change guardrails that protect system stability, compliance posture, and service margins.
This role owns engineering judgment and technical recommendations, not just implementation. You are expected to identify unsafe or insufficiently defined work, recommend delays when requirements are not met, and ensure all changes include clear success, validation, and rollback criteria.
Location and Work Expectations
- This is a hybrid – remote role with approximately 5 % on‑site work at client sites throughout the US if needed. The specific allocation of remote versus on‑site requirements may fluctuate based on business needs.
- This role also includes participation in a rotating on‑call schedule.
What You Will Be Doing
- Provide senior level technical recommendations and execution guidance for high‑risk remediation and availability‑impacting security changes.
- Analyze and recommend change sequencing, blast radius reduction strategies, rollback feasibility, and validation requirements.
- Require defined success criteria and rollback plans prior to execution; formally recommend delay or redesign when requirements are insufficient.
- Execute approved proactive security remediation requiring advanced engineering judgment or infrastructure changes.
- Perform approved, availability‑impacting security changes including firewall, firmware, and network security updates.
- Implement configuration hardening and security control changes across servers, endpoints, and network infrastructure.
- Serve as the senior technical lead for post‑containment recovery, guiding environments back to a validated steady state following MSSP/SOC containment.
- Coordinate technical recovery activities across company stakeholders and third‑party vendors to prevent uncontrolled rebuild work.
- Validate remediation outcomes against defined technical success criteria and confirm verified closure of findings.
- High‑impact and high‑risk remediation requiring senior engineering analysis and judgment.
- Planned firewall, firmware, and infrastructure security updates on an approved cadence.
- Availability‑impacting security changes executed with defined rollback and validation steps.
- Post‑containment recovery technical leadership for:
- Business Email Compromise (BEC)
- Malware mitigation/removal (non‑ransomware)
- Foreign or impossible login events (non‑forensic)
- EDR agent deployment, health monitoring, and lifecycle management across all endpoints and servers
- EDR policy configuration, tuning, and optimization aligned to Gov Con risk profiles
- Implementation and maintenance of web filtering security policies
- Review and investigation of web filtering security events
- Review and actioning of MDR threat intelligence and recommendations to enhance client environments
- Participation in quarterly client security posture reviews to assess risk trends and control effectiveness
- Review of DLP policies and tuning to reduce false positives while maintaining protection efficacy
- Review and update of Microsoft Sentinel data connectors
- Other duties as assigned
You’ll be successful in this role if you have
- 5 + years of experience in Security Engineering, Infrastructure Engineering, or Systems Engineering, with ownership of high‑impact changes.
- Demonstrated authority executing availability‑impacting security changes using disciplined rollback and validation practices.
- Strong working knowledge of firewalls, network security devices, and firmware lifecycle management.
- Experience with configuration hardening for Windows and Linux servers.
- Solid understanding of identity, endpoint, and network security controls, including the use of compensating controls.
- Experience leading post‑incident technical recovery following MSSP/SOC containment, including stabilization and determination of steady state.
- Experience supporting Gov Con or compliance‑driven environments (CMMC, DFARS, ITAR,…
Skills
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free