Senior Cybersecurity Engineer & ZTN

Hybrid in New York, NY, US • Posted 60+ days ago • Updated 12 days ago
Full Time
No Travel Required
On-site
120000 - $170,000/yr
Company Branding Image
Fitment

Dice Job Match Score™

⏳ Almost there, hang tight...

Job Details

Skills

  • Cloud Security
  • LDAP
  • SAML
  • SSO
  • BYOD
  • ZTN
  • OKta
  • PAM
  • Secrets Management / Open BAW
  • Fortinet
  • MDM
  • GCP

Summary

About the Role: A leading media company is seeking a Senior security Engineer to work with a world class team to improve the company cybersecurity posture.  The ability to deliver results with minimal supervision and to have a holisitc view of cyber risk accross technical domains is essential for success in this role. You will lead the design and implementation of the Zero Trust Network Implementation architecture. You''''ll be responsible for securing access across our Google Workspace, Okta, and Google Cloud Platform environments while ensuring SOX compliance and advancing our Zero Trust security posture.  You will also be responsible for addressing issues around secrets and keys exposure and ensure that all teams are following secure process around identity and access handling including privilged access.

Core Responsibilities:

Identity Platform Management

  • Design, implement and manage Okta configurations including SSO, MFA, Adaptive Authentication, and lifecycle management.  Ensure continous enhancements to improve security.
  • Implement and optimize Okta Verify and FastPass deployments for passwordless authentication
  • Configure and maintain Google Workspace directory services and group-based access controls
  • Integrate and manage LDAP directories for legacy application authentication
  • Optimize the use of existing tools and enhance reporting on identity riskss

Security & Zero Trust Architecture

  • Implement risk-based authentication policies and contextual access controls
  • Design and deploy Zero Trust Network (ZTN) access frameworks
  • Configure and manage VPN solutions with identity-aware proxy capabilities
  • Conduct security assessments and vulnerability remediation for identity systems

Cloud & Security Integration

  • Audit Google Cloud Platform IAM roles, service accounts, and workload identity federation
  • Integrate Wiz cloud security platform with identity systems for vulnerability tracking
  • Review, address and enforce proper hygien for secrets and keys.  Design and implement counter measures and metigating process to minimize the risks of exposures
  • Automate identity provisioning and de-provisioning workflows
  • Develop and implement privligied access management strategy including just-in-time (JIT) access, break glass acounts process and other security features.

Compliance & Governance

  • Prepare for and support SOX IT general controls audits
  • Maintain audit trails, access reviews, and segregation of duties (SoD) controls
  • Document IAM policies, procedures, and runbooks
  • Generate compliance reports and metrics for leadership

Required Qualifications:

  • 7+ years of hands-on IAM engineering experience
  • Expert-level Okta administration (Verify, FastPass, Workflows, API)
  • Strong experience with Google Workspace administration and directory services
  • Deep understanding of LDAP, SAML, OAuth 2.0, OIDC protocols
  • Proven experience implementing risk-based authentication and Zero Trust principles
  • Google Cloud Platform IAM and resource management experience
  • SOX compliance experience (IT general controls, access reviews)
  • Experience with Wiz or similar cloud security platforms

Preferred Qualifications:

  • Okta Certified Professional/Administrator
  • Experience with Identity Governance
  • Experience with PAM solutions and concepts
  • Experience with Sentinel One Siem
  • Wiz security

Technical Skills:

  • Identity Platforms: Okta (advanced), Google Workspace, Active Directory/LDAP
  • Authentication: SAML, OAuth 2.0, OIDC, MFA/Passwordless
  • Cloud: Google Cloud Platform IAM, AWS IAM (plus), Azure AD (plus)
  • Security Tools: Wiz, SIEM integration, vulnerability management
  • Automation: Terraform, Python, REST APIs, PowerShell
  • Networking: VPN technologies, proxies, network segmentation

 

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91009841
  • Position Id: 8860748
  • Posted 30+ days ago

Company Info

About PROTEK INFORMATION TECHNOLOGY SERVICES, LLC

Protek speeds the digital transformation of government agencies, with state-of-the art process automation and enterprise security. We grew out of a collaboration between Protek, a government IT systems integrator and application developer, and Digitalware, a leading provider of cybersecurity products and services.

Our mission is to make your digital transformation faster, better, and more cost-effective than you can imagine. We will identify any legacy issues instantly, visualize how your transformation will unfold, and streamline new application/API development and integration. All with total visibility of process and risk.

Rest assured, the Protek Government team will help you avoid common mistakes in your digital transformation. We will ensure that your transformation succeeds — securely — from infrastructure to application to integration, both on-premise and in the cloud.

Contact the job poster
SG

Samer Ghanem

Recruiter @ PROTEK INFORMATION TECHNOLOGY SERVICES, LLC
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

It looks like there aren't any Similar Jobs for this job yet.

Search all similar jobs