Senior Information Security Engineer (Remote)
WhatJobs Direct
About the role
Our client is a globally recognized technology firm seeking a highly skilled and experienced Senior Information Security Engineer to join their distributed, remote-first security operations center. This role is critical in safeguarding our digital assets, intellectual property, and client data against evolving cyber threats. You will be instrumental in designing, implementing, and managing robust security solutions across our cloud and on-premise infrastructure. This is an opportunity to work with cutting-edge technologies and contribute to a secure digital future from the comfort of your home office.
Key Responsibilities: Develop, deploy, and maintain security infrastructure, including firewalls, intrusion detection/prevention systems (IDPS), SIEM solutions, VPNs, and endpoint security tools. Conduct regular security assessments, vulnerability scans, and penetration tests to identify and remediate potential weaknesses in systems and applications. Design and implement security policies, procedures, and best practices in accordance with industry standards (e.g., ISO 27001, NIST). Respond to security incidents, perform forensic analysis, and coordinate remediation efforts to minimize impact and prevent recurrence. Collaborate with engineering and development teams to integrate security controls into the software development lifecycle (SDLC). Monitor security alerts and logs, analyze threat intelligence, and proactively hunt for advanced persistent threats (APTs). Manage security awareness training programs for employees, ensuring a strong security culture throughout the organization. Automate security processes and tasks using scripting languages (e.g., Python, PowerShell) and security orchestration, automation, and response (SOAR) platforms. Evaluate and recommend new security technologies and solutions to enhance the overall security posture. Provide technical guidance and mentorship to junior security team members. Maintain accurate documentation of security systems, configurations, policies, and incident response plans. Qualifications: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. Master's degree preferred. Minimum of 7 years of hands-on experience in information security, with a focus on network security, system security, and incident response. In-depth knowledge of security principles, protocols, and best practices. Proficiency with security tools such as SIEM (e.g., Splunk, ELK Stack), vulnerability scanners (e.g., Nessus, Qualys), firewalls, IDS/IPS, and EDR solutions. Experience with cloud security (AWS, Azure, GCP) and container security (Docker, Kubernetes). Strong understanding of network protocols (TCP/IP, DNS, HTTP/S) and operating systems (Windows, Linux). Experience with scripting languages (e.g., Python, Bash, PowerShell) for automation. Relevant security certifications such as CISSP, CISM, CEH, or GIAC are highly desirable. Excellent analytical and problem-solving skills, with the ability to think critically under pressure. Strong communication and collaboration skills, essential for effective remote teamwork. Demonstrated ability to work independently and manage time effectively in a remote work environment.
Requirements
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field (Master's preferred)
- Minimum of 7 years of hands-on experience in information security (network security, system security, and incident response)
- In-depth knowledge of security principles, protocols, and best practices
- Proficiency with SIEM (Splunk, ELK Stack), vulnerability scanners (Nessus, Qualys), firewalls, IDS/IPS, and EDR solutions
- Experience with cloud security (AWS, Azure, GCP) and container security (Docker, Kubernetes)
- Strong understanding of network protocols (TCP/IP, DNS, HTTP/S) and operating systems (Windows, Linux)
- Experience with scripting languages (Python, Bash, PowerShell) for automation
- Relevant security certifications (CISSP, CISM, CEH, or GIAC) are highly desirable
Responsibilities
- Develop, deploy, and maintain security infrastructure (firewalls, IDPS, SIEM, VPNs, endpoint security tools)
- Conduct regular security assessments, vulnerability scans, and penetration tests
- Design and implement security policies, procedures, and best practices (ISO 27001, NIST)
- Respond to security incidents, perform forensic analysis, and coordinate remediation
- Collaborate with engineering and development teams to integrate security controls into the SDLC
- Monitor security alerts and logs, analyze threat intelligence, and hunt for APTs
- Manage security awareness training programs
- Automate security processes using scripting languages (Python, PowerShell) and SOAR platforms
- Evaluate and recommend new security technologies
- Provide technical guidance and mentorship to junior security team members
- Maintain documentation of security systems, configurations, policies, and incident response plans
Skills
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free