Our client, a fiber-optic infrastructure and connectivity provider, is looking for a skilled and experienced Staff Information Security Engineer to join their technology team. Information security plays a critical role in protecting the confidentiality, integrity, and availability of systems and data across both traditional IT and Service Provider domains. In this role, you'll collaborate with architects, senior engineers, management, and stakeholders to identify security risks and ensure the right mitigation steps are taken.
Location Requirement:
The work arrangement for this role is a hybrid position, requiring a minimum of three (3) days in the office, with flexibility to work remotely two (2) days each week.
What You Will Be Doing - 30% - Security Engineering & Architecture: Analyze and understand complex technology systems across IT and Service Provider domains; independently evaluate both new technologies and legacy solutions to protect the confidentiality, integrity, and availability of information systems and data.
- 25% - Risk Awareness & Mitigation: Collaborate with architects, senior engineers, management, and internal and external stakeholders to identify security risks and ensure appropriate mitigation steps are taken.
- 20% - Standards & Compliance: Maintain awareness of security trends, government regulations, and third-party standards (NIST, ISO); apply compliance frameworks including NIST CSF, NIST 800-53, and/or ISO 27001.
- 15% - Monitoring & Incident Response: Administer SIEM platforms (Splunk, Splunk ES), support EDR/MDR/XDR tooling, and perform security incident response.
- 10% - Automation & Scripting: Apply scripting (Python, PowerShell, or equivalent) and Infrastructure as Code / automation tools (Terraform, Ansible, git) to strengthen and scale security operations.
Platform Environment - Identity & Access: IAM, SSO, RADIUS, TACACS+, AD/LDAP/Kerberos, Entra, PIM, Identity Governance
- Cloud: AWS, Microsoft Azure, Office 365 security controls (IAM, Azure Policies, Intune, DLP, IaaS)
- SIEM/Detection: Splunk, Splunk ES, EDR/MDR/XDR platforms
- Infrastructure as Code: Terraform, Ansible, git
- Security Protocols: TCP/IP, HTTP, WAF, APIs, PKI, SSL/TLS, cryptographic functions
Requirements - Bachelor's degree or equivalent combination of education and relevant experience; advanced degree preferred
- Minimum 10 years of related industry experience, or equivalent mix of education and experience
- Deep knowledge of security and telecommunications protocols and architectures
- Proficiency in one or more scripting languages (Python, PowerShell, or equivalent)
- Strong understanding of operating systems and command-line administration at all levels
- Strong understanding of TCP/IP networking protocols across all layers of the OSI stack
Preferred Experience - Asset discovery and logical asset management
- Authentication and identity technologies (IAM, SSO, RADIUS, TACACS+, AD/LDAP/Kerberos)
- Compliance frameworks (NIST CSF, NIST 800-53, ISO 27001)
- Splunk, Splunk ES, or other SIEM administration
- Infrastructure as Code and automation tools (Terraform, Ansible, git)
- AWS, Azure, and Office 365 security controls
- EDR/MDR/XDR platforms and security incident response
- HTTP protocol, WAF technologies, BurpSuite testing, and APIs
- PKI, SSL/TLS, and cryptographic functions
- Micro-segmented environments and regular expressions
- Current industry certifications (SANS/GIAC, Azure or AWS architecture/security)
Key Competencies - Excellent oral and written communication skills
- Excellent critical thinking, analytical, and engineering skills, including the ability to independently analyze both new technologies and legacy solutions
- Demonstrated commitment to ongoing skills development
Benefits A robust benefits package for full-time employees, including medical, dental, and vision insurance; life insurance; 401(k) match; Flexible Spending/Health Savings Accounts; tuition and gym reimbursements; vacation/PTO, paid holidays, and floating holidays; volunteer days and parental leave; plus legal, accidental, hospital indemnity, identity theft, and pet insurance.