Senior Security Engineer
Own the design, implementation, and operation of security across endpoints, identities, networks, cloud and on-prem infrastructure, R&D labs, and controlled production environments. Partner with IT, DevOps/Platform, R&D, and an External CISO.
Responsibilities
- Design and implement security architecture and segmentation for R&D networks, HPC, cloud, Kubernetes, on-prem, and isolated environments.
- Own identity security, including IAM, SSO/MFA, service accounts, administrative controls, PAM/JIT access, and lifecycle visibility.
- Establish asset visibility and operate endpoint protection, SIEM and logging, MDM, vulnerability management, and system hardening.
- Protect sensitive R&D data with DLP, PKI, secrets controls, and safeguards for networks, endpoints, and removable media.
- Improve backup, recovery, and ransomware resilience.
- Build detections, investigate incidents, lead containment and remediation, and improve response processes.
- Automate threat enrichment, evidence collection, and response actions using scripts, APIs, and agentic workflows.
Requirements
- At least 4 years of hands-on experience in a structured high-tech or commercial technology company.
- Broad practical expertise across endpoint, identity, network, and detection security on Linux and Windows.
- Practical experience securing AWS or GCP, Kubernetes, Terraform, and CI/CD integrations.
- Experience with SIEM or log pipelines, EDR/XDR, MDM, IAM/SSO/PAM, ZTNA, and vulnerability management.
- Strong Python, PowerShell, and Bash scripting skills, including API integrations.
- Ability to work with complex R&D environments, isolated networks, or high-performance computing.
Nice to have
- Military technology-unit experience.
- Experience with security automation or AI/agentic workflows using security telemetry.