Lead Cybersecurity Engineer
Why This Role Stands Out
Advance your cybersecurity career with a Fortune 100 company, enjoying hybrid flexibility and contributing to secure development practices across cloud and application environments. This role is ideal for skilled engineers passionate about integrating security into DevOps and guiding development teams to build robust, secure solutions. Apply now to join a reputable organization with excellent benefits and significant growth potential.
Quick Overview
Job Description
Lead Cybersecurity Engineer
Diversified Services Network, Inc. (DSN) is seeking a full-time Lead Cybersecurity Engineer to join our team in your choice of our Peoria, IL, Chicago, IL, or Dallas, TX facilities. We offer a hybrid work model with 1 day of onsite work per week, full benefits, PTO, 401k, and more! If you're looking to grow your career within an extremely reputable, stable Fortune 100 company - let's talk!
Position Overview
As a Lead Cybersecurity Engineer, you will contribute to Security by Design practices, secure application software development lifecycle practices, security testing and assessment, and the integration of security with DevOps. This role is responsible for security engineering of cloud environments (AWS, Azure) and vulnerability management across both Infrastructure as Code (IaC) and application development (SAST/DAST). You will help development teams identify and track security risks to remediation while embracing concepts of agile delivery and DevOps.
Key Responsibilities
- Security Defect Management: Analyze, validate, communicate, and consult on security defects identified through automated and manual sources such as CodeQL, Rapid7 Web Application Security, penetration testing, and bug bounty programs, serving as a partner to software engineers who need accurate information on why a vulnerability exists and how to address it.
- Engineering Consulting: Serve as a trusted resource to software engineers, architects, product owners, and leaders, providing contextually-aware guidance to support sound decision-making, documenting decisions and resulting architectures, and navigating relevant review and approval processes when implementing new features or remediating existing issues.
- Tool Enablement: Enable and monitor automated defect detection tooling (CodeQL, Rapid7, etc.) at the repository or application level according to established processes.
- Security Test Onboarding & Management: Collect and communicate required scope and access information for penetration testing and security assurance assessments, and manage the output of these assessments through the defect management process.
Team Collaboration
This role owns a dedicated set of applications and works directly with development teams as part of a larger security engineering organization that sets standards and ways of working for engaging with those teams. You will help development teams identify security gaps in their applications and services and collaborate on solutions that bring services into compliance with enterprise security requirements.
Candidate Requirements
Education & Experience:
- Bachelor's degree in Computer Science or a related field with 8+ years of experience in information security OR
- Master's degree with 6+ years of experience.
Technical Skills (Required):
- Application security expertise, including understanding of vulnerabilities and remediation solutions (OWASP, CWE/CVE, SANS 25).
- Experience with a wide variety of information security processes and principles, such as enterprise security architecture, threat modeling, vulnerability assessment, risk analysis, defense in depth, SDLC and product development processes, identity and access management, API security, and SCA/SAST/DAST.
- Cloud security experience with Microsoft Azure and/or AWS.
- Professional certification such as CISSP, CCSP, GWAPT, GWEB, or AWS Certified Security - Specialty.
- Development experience in Java, Python, .NET, JavaScript, or an equivalent language.
- Experience implementing automation and scripting.
- AI fluency is preferred.
Technical Skills (Desired):
- Web services security experience.
- Additional professional certifications such as CSSLP or GCIH.
Soft Skills:
- Excellent written and verbal communication skills, with a demonstrated ability to communicate highly technical security concepts to non-security audiences.
- Ability to coordinate multiple teams in accomplishing process review and improvement.
- 401(k)
- Dental insurance
- Vision Insurance
- Disability insurance
- Employee assistance program
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Paid Holidays
Please follow the link to our website for a list of job openings in Engineering, IT, Project Management, and more! https://www.dsnworldwide.com
Salary expectations: 155,000-160,000 per annual
Skills
Similar jobs
QA Engineer(& )
Recruitment.ai · Tucson, United States
4 minutes agoSr. Python Backend Engineer (STRICTLY OUR W2 -- Do NOT respond if you''''''''''''''''re looking for C2C or Remote)
Infoweb Systems, Inc. · Johnston, United States
4 minutes ago$97/hrFull Stack Software Engineer (UNITED STATES CITIZEN; ACTIVE TOP SECRET CLEARANCE)
Soft Tech Consulting Inc · Suitland-Silver Hill, United States
4 minutes agoAI Developer
Mindsource Inc · Sacramento, United States
4 minutes agoNetwork Engineer
TEKsystems c/o Allegis Group · Birmingham, United States
8 minutes ago$55 - $70/hrSr Cyber Analyst with Security Clearance
Akamai Intelligence · Germantown, United States
8 minutes ago