The Senior IT Security Engineer designs and operates enterprise-wide cybersecurity programs spanning network and cloud security, threat monitoring, identity management, and GRC aligned to federal and regulatory frameworks.
The Senior IT Security Engineer leads the design and implementation of cybersecurity architecture across network, cloud, and endpoint environments. They manage vulnerability programs, oversee threat monitoring and incident response, and enforce identity and access controls — while maintaining governance frameworks, ensuring regulatory compliance, and translating security risk into actionable business guidance.
Specialized skills (5+ years)
o Enterprise infrastructure network security
o Enterprise infrastructure systems/server security
o XaaS/Cloud migration security assessment and management
o Threat monitoring, analysis, and enterprise level cyber mitigation strategies
o Vulnerability management
o Intrusion detection and prevention management
o Identity, authentication, authorization, and accountability management
o Business continuity planning and testing
Technical and IT Delivery (5+ years)
o Review, develop, and administer cybersecurity awareness training
o Implement and support security risk and mitigation strategies, tools, techniques, and solutions to uphold CIA
o Advanced knowledge and experience of enterprise cybersecurity architecture principles and best practices
o Advanced knowledge and experience of risk management processes and requirements
o Advanced knowledge and experience of vulnerability management
o Advanced knowledge and experience of business continuity and incident preparedness management/response handling
o Advanced knowledge and experience of data lifecycle management/information assurance
o Advanced knowledge and experience of identity and access management
o Advanced knowledge and experience of network and systems security operations and monitoring
o Advanced knowledge and experience developing/maintaining information security governance framework(s) in alignment with business needs
o Advanced knowledge of GRC processes and tools
o Recommend and implement security risk reduction methodologies
o Experience in public, federal and/or state sectors
Required Certifications
o CompTIA Security+, GIAC GCIA, CySA+, SSCP
Preferred Certifications
o CCSP, AWS Certified Solutions Architect, GCP Cloud Architect, Azure Solutions Architect Exp
o CASP+, GIAC GSEC, CISM, CISSP
Competencies
o Microsoft 365 defender, Exchange Online, DLP, Intune
o MFA (DUO, Microsoft Authenticator, etc.)
o Windows/Linux operating systems; iOS/Android mobile devices
o Azure and AWS cloud computing services
o Email security procedures
o Enterprise IAAA processes and best practices
o Cloud architecture security and best practices
o Security intrusion and prevention controls (SIEM, NMP, IDS/IPS, ESG)
o Programming/scripting (Python, Bash, PowerShell)
o SOC processes
o AI risks and attack taxonomy
o Certificate management and encryption key management processes
Required Degree
o Bachelor of Information Technology, Cybersecurity, Information Assurance, Computer Science, or Management Information Technology