Senior Information Security Engineer
Quick Overview
Job Description
Information Security Engineer III
Location: Assembly Row, Somerville, MA
Work Arrangement: Hybrid - 1 day per week onsite, with occasional additional onsite days based on business needs
Schedule: Monday-Friday, 8:00 AM-4:00 PM or 9:00 AM-5:00 PM; flexible
Employment Type: Full-Time, Permanent
Openings: 1
Salary: $93,953.60-$136,739.20 annually, with flexibility toward the higher end for candidates with approximately 6-8 years of experience. Candidates with additional relevant experience may be considered at a higher level.
About the Role
We are seeking an Information Security Engineer III to join an enterprise Information Security Architecture team. This is a senior-level role focused on evaluating a broad range of technologies, business initiatives, operational processes, and strategic projects to identify security risks and provide practical, risk-based guidance.
The ideal candidate is someone who can quickly understand complex and unfamiliar technology environments, analyze security implications, and clearly communicate recommendations to senior leadership and business stakeholders.
Top 3 Qualifications
1. Strong analytical ability across a broad technology landscape
Ability to evaluate a wide range of technologies, systems, business initiatives, and operational processes and identify meaningful cybersecurity risks.
2. Exceptional communication skills
Ability to clearly communicate complex technical concepts, security risks, recommendations, and tradeoffs both verbally and in writing to senior leadership and business owners who may not have the same level of technical expertise.
3. Ability to do both quickly and effectively
Strong judgment and the ability to rapidly understand unfamiliar technologies and business challenges, assess risk, and develop practical recommendations.
What You'll Do
Evaluate technologies, business initiatives, operational processes, and proposed solutions to identify security risks.
Perform security assessments, architecture reviews, risk analyses, and technology evaluations.
Quickly assess unfamiliar technologies and understand their security implications.
Develop practical, risk-based recommendations and appropriate security controls.
Partner with technical teams, business stakeholders, vendors, project leaders, and security professionals.
Research emerging technologies, evolving threats, regulatory requirements, and industry practices.
Develop security assessments, recommendations, standards, reports, and other written deliverables.
Communicate technical risks, tradeoffs, and recommendations to engineers, project teams, business leaders, and senior leadership.
Present findings, facilitate discussions, answer questions, and help build stakeholder consensus.
Serve as a trusted cybersecurity advisor to business and technology teams.
Contribute to security standards, methodologies, assessment processes, and best practices.
Mentor junior and mid-level security professionals.
Lead or contribute to cross-functional technical initiatives.
Required Qualifications
Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field; equivalent experience may be considered.
5-7 years of experience in systems engineering, security engineering, security architecture, cybersecurity consulting, or a related field.
Strong understanding of cybersecurity principles, risk management, and security frameworks.
Experience performing security assessments, architecture reviews, risk analyses, technology evaluations, or similar analytical work.
Ability to identify complex security issues and develop practical recommendations.
Strong understanding of enterprise technology environments, including familiarity with:
Cloud platforms
Identity and access management
Networking
Applications
Infrastructure
Security operations
Emerging technologies
Knowledge of Zero Trust, least privilege, defense-in-depth, data protection, secure software development, threat modeling, and vulnerability management.
Strong written and verbal communication skills.
Strong analytical, critical-thinking, and problem-solving abilities.
Ability to work effectively in complex and ambiguous environments.
Experience mentoring junior professionals and/or leading cross-functional initiatives.
Work Environment
Hybrid: 1 day per week onsite at Assembly Row in Somerville, MA.
Occasional additional onsite presence may be required based on business needs.
Monday-Friday, either 8:00 AM-4:00 PM or 9:00 AM-5:00 PM, with flexibility.
Full-time, permanent position.
Why This Role?
This is an opportunity for a senior security professional who enjoys solving complex problems, evaluating unfamiliar technologies, and serving as a trusted advisor to both technical and business leadership.
The strongest candidates will not simply identify security risks - they will be able to quickly understand the environment, determine what matters, develop a practical recommendation, and explain it clearly to the people responsible for making the decision.
location: Somerville, Massachusetts
job type: Permanent
salary: $45 - 65 per year
work hours: 8am to 4pm
education: Bachelors
responsibilities:
What You'll Do
- Evaluate technologies, business initiatives, operational processes, and proposed solutions to identify security risks.
- Perform security assessments, architecture reviews, risk analyses, and technology evaluations.
- Quickly assess unfamiliar technologies and understand their security implications.
- Develop practical, risk-based recommendations and appropriate security controls.
- Partner with technical teams, business stakeholders, vendors, project leaders, and security professionals.
- Research emerging technologies, evolving threats, regulatory requirements, and industry practices.
- Develop security assessments, recommendations, standards, reports, and other written deliverables.
- Communicate technical risks, tradeoffs, and recommendations to engineers, project teams, business leaders, and senior leadership.
- Present findings, facilitate discussions, answer questions, and help build stakeholder consensus.
- Serve as a trusted cybersecurity advisor to business and technology teams.
- Contribute to security standards, methodologies, assessment processes, and best practices.
- Mentor junior and mid-level security professionals.
- Lead or contribute to cross-functional technical initiatives
qualifications:
Required Qualifications
Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field; equivalent experience may be considered.
5-7 years of experience in systems engineering, security engineering, security architecture, cybersecurity consulting, or a related field.
Strong understanding of cybersecurity principles, risk management, and security frameworks.
Experience performing security assessments, architecture reviews, risk analyses, technology evaluations, or similar analytical work.
Ability to identify complex security issues and develop practical recommendations.
Strong understanding of enterprise technology environments, including familiarity with:
Cloud platforms
Identity and access management
Networking
Applications
Infrastructure
Security operations
Emerging technologies
Knowledge of Zero Trust, least privilege, defense-in-depth, data protection, secure software development, threat modeling, and vulnerability management.
Strong written and verbal communication skills.
Strong analytical, critical-thinking, and problem-solving abilities.
Ability to work effectively in complex and ambiguous environments.
Experience mentoring junior professionals and/or leading cross-functional initiatives.
skills:
Cloud,Information Security,Cybersecurity,security architecture,Security operations,enterprise technology,Identity and access management,Computer Science,Information Technology,least privilege,secure software development,vulnerability management,systems engineering,Zero Trust,analytical,communicate,Exceptional communication skills,Strong written and verbal communication,critical-thinking,work effectively,leadership,problem-solving abilities,solving complex problems,Architecture,architecture reviews,business initiatives,consulting,data protection,cybersecurity risks,cybersecurity principles,security frameworks,industry practices,Infrastructure,Mentor,mentoring,regulatory requirements,risks,risk,assess risk,risk analyses,risk management,security,security assessments,security controls,security engineering,technology evaluations,threat modeling
Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability,
Skills
Similar jobs
Information Security Architect
State Street Corporation · Quincy, United States
1 hour ago$120k - $202.5k/yrSecurity Engineer
Sundt Companies · Tempe, United States
1 hour agoInformation Security Engineer - Senior Staff
Deluxe Corporation · Atlanta, United States
1 hour agoSenior Security Engineer
Command Post Technologies · Orlando, United States
1 hour agoSubject Matter Expert III- Cybersecurity Information Security Analyst
Chugach Government Solutions · Kodiak, United States
1 hour ago10872 - Application Security Engineer II
Hyundai AutoEver America · Irvine, United States
1 hour ago$96.5k - $138.1k/yr