Quick Overview
Seniority
Mid Senior
Work mode
Hybrid
Location
New York, NY, United States
Posted
22 hours ago
MicroservicesAWSEncryptionOAuthOWASPSAMLAzureGoogle CloudJWTKubernetesLLMPenetration TestingPowerShellPythonTerraformWAFZero Trust
Job Description
Required qualifications
- 8 12 years of experience in cybersecurity, information security, infrastructure security, cloud security, or security architecture.
- 3+ years of experience designing and reviewing enterprise security architectures.
- Strong knowledge of network security, application security, cloud security, IAM, cryptography, and security operations.
- Experience with threat modelling frameworks such as STRIDE, MITRE ATT&CK, or equivalent methodologies.
- Strong understanding of security principles including least privilege, zero trust, defense in depth, secure-by-design, and separation of duties.
- Experience conducting security risk assessments and developing risk-treatment plans.
- Hands-on knowledge of security controls, vulnerabilities, penetration testing, incident response, and disaster recovery.
- Experience working with architecture frameworks, security policies, control standards, and governance processes.
- Strong communication skills, with the ability to explain complex security risks to technical and business stakeholders.
- Demonstrated ability to influence engineering teams and drive security improvements across projects.
Preferred qualifications
- Experience securing AWS, Azure, or Google Cloud environments.
- Knowledge of Kubernetes, containers, service meshes, serverless systems, and cloud-native architectures.
- Experience with DevSecOps tools, CI/CD security, SAST, DAST, SCA, IaC scanning, secrets scanning, and container security.
- Familiarity with SIEM, SOAR, EDR, XDR, WAF, CSPM, CNAPP, DLP, and vulnerability-management platforms.
- Experience with API security, microservices security, OAuth 2.0, OpenID Connect, SAML, and JWT.
- Knowledge of data classification, encryption, tokenization, key management, and privacy engineering.
- Experience with security automation using Python, PowerShell, Terraform, or similar tools.
- Familiarity with AI/ML security, LLM application security, prompt injection, data leakage, and model governance.
- Experience with regulatory and security frameworks such as NIST CSF, NIST SP 800-53, CIS Controls, ISO 27001, SABSA, COBIT, and OWASP.
- Professional certifications such as CISSP, CCSP, SABSA, CISM, GIAC, AWS Security Specialty, or Azure Security Engineer.
Similar jobs
- DO
Senior Security Engineer
NewdotSolved
Naperville, IL🇺🇸Hybrid22 hours agoAWSMFASOC 2+5Technology - BI
Identity and Access Management lead
NewBURGEON IT SERVICES LLC
Fort Mill, SC🇺🇸Hybrid22 hours agoOAuthSAMLSSO+3 - AT
Cyber Security Engineer in Hanscom AFB, Massachusetts with Security Clearance
NewAbacus Technology
Hanscom AFB, MA🇺🇸HybridYesterdayTechnology - GO
Senior Security Software Engineer, Emerging On-prem AI infrastru with Security Clearance
NewGoogle, Inc.
Reston, VA🇺🇸Hybrid22 hours agoC++Google CloudPythonTechnology - AS
Data Security Engineer (DRM Specialist) – Senior, Zero Trust P with Security Clearance
Athenix Solutions Group
Macdill AFB, FL🇺🇸Hybrid1 week agoEncryptionAzureLESS+2Technology - CO
Network Engineer with Security Clearance
NewConviso Inc
Columbus, OH🇺🇸On-site22 hours agoOracleAWSEncryption+1Technology