Heir Media Corp | HM Strategic Consulting Senior Information Technology Security Engineer Macon, GA · Full time

The Senior IT Security Engineer designs and operates enterprise-wide cybersecurity programs spanning network and cloud security, threat monitoring, identity management, and GRC aligned to federal and regulatory frameworks.

About Heir Media Corp | HM Strategic Consulting

Heir Media™ is a 360° creative agency and studio that focuses on building enduring brands that leave a lasting legacy. Our work spans filmmaking, animation, brand development, ghostwriting, publishing, game development, web design, music composition, and business consulting; but we specialize in creating cohesive visual identities, brand strategies, and compelling stories that holistically drive business growth. Known for our attention to detail, we ensure every interaction aligns with our clients’ aspirations and brand vision. By blending strategy, storytelling, design, and execution, we deliver experiences that connect emotionally and strategically with audiences, transforming businesses into timeless brands. HM Strategic Consulting is our subsidiary brand, delivering focused business consulting and strategic advisory services for organizations looking to grow, scale, and operate with clarity and purpose. We're a close-knit, fast-moving team — and we're growing. If you're someone who thrives in a creative environment, loves keeping things running smoothly, and takes pride in both the big picture and the small details, we want to hear from you.

Description

The Senior IT Security Engineer leads the design and implementation of cybersecurity architecture across network, cloud, and endpoint environments. They manage vulnerability programs, oversee threat monitoring and incident response, and enforce identity and access controls — while maintaining governance frameworks, ensuring regulatory compliance, and translating security risk into actionable business guidance.


Specialized skills (5+ years)

o Enterprise infrastructure network security 

o Enterprise infrastructure systems/server security 

o XaaS/Cloud migration security assessment and management 

o Threat monitoring, analysis, and enterprise level cyber mitigation strategies 

o Vulnerability management 

o Intrusion detection and prevention management 

o Identity, authentication, authorization, and accountability management 

o Business continuity planning and testing 


Technical and IT Delivery (5+ years)

o Review, develop, and administer cybersecurity awareness training 

o Implement and support security risk and mitigation strategies, tools, techniques, and solutions to uphold CIA 

o Advanced knowledge and experience of enterprise cybersecurity architecture principles and best practices 

o Advanced knowledge and experience of risk management processes and requirements 

o Advanced knowledge and experience of vulnerability management 

o Advanced knowledge and experience of business continuity and incident preparedness management/response handling 

o Advanced knowledge and experience of data lifecycle management/information assurance 

o Advanced knowledge and experience of identity and access management 

o Advanced knowledge and experience of network and systems security operations and monitoring 

o Advanced knowledge and experience developing/maintaining information security governance framework(s) in alignment with business needs 

o Advanced knowledge of GRC processes and tools 

o Recommend and implement security risk reduction methodologies 

o Experience in public, federal and/or state sectors 


Required Certifications

o CompTIA Security+, GIAC GCIA, CySA+, SSCP 


Preferred Certifications

o CCSP, AWS Certified Solutions Architect, GCP Cloud Architect, Azure Solutions Architect Exp 

o CASP+, GIAC GSEC, CISM, CISSP 


Competencies

o Microsoft 365 defender, Exchange Online, DLP, Intune 

o MFA (DUO, Microsoft Authenticator, etc.) 

o Windows/Linux operating systems; iOS/Android mobile devices 

o Azure and AWS cloud computing services 

o Email security procedures 

o Enterprise IAAA processes and best practices 

o Cloud architecture security and best practices 

o Security intrusion and prevention controls (SIEM, NMP, IDS/IPS, ESG) 

o Programming/scripting (Python, Bash, PowerShell) 

o SOC processes 

o AI risks and attack taxonomy 

o Certificate management and encryption key management processes 


Required Degree

o Bachelor of Information Technology, Cybersecurity, Information Assurance, Computer Science, or Management Information Technology