Senior Information Security Engineer

WhatJobs Direct2 months ago
Colorado Springs, CO, United States
Hybrid
Full-time
Junior Level (1-3 years)

Job Description

Job Description

Our client, a leading technology firm located in the scenic surroundings of Colorado Springs, Colorado, US, is seeking a highly skilled and experienced Senior Information Security Engineer. This role is critical in safeguarding our organization's digital assets and infrastructure against evolving cyber threats. The ideal candidate will possess a deep understanding of cybersecurity principles, extensive experience in implementing and managing security solutions, and a proactive approach to threat detection and incident response. This hybrid position offers the opportunity to contribute significantly to our security posture while enjoying a flexible work arrangement.

Responsibilities

  • Design, implement, and manage robust security controls and technologies, including firewalls, intrusion detection/prevention systems (IDPS), VPNs, SIEM, and endpoint security solutions.
  • Conduct regular security assessments, vulnerability scans, and penetration testing to identify and mitigate potential risks.
  • Develop and maintain security policies, procedures, and guidelines to ensure compliance with industry best practices and regulatory requirements.
  • Lead incident response efforts, including detection, investigation, containment, eradication, and recovery from security breaches.
  • Monitor security alerts and events, analyze logs, and respond to security incidents in a timely and effective manner.
  • Collaborate with IT teams to ensure security is integrated into all aspects of system design, development, and operations.
  • Provide security awareness training and guidance to employees across the organization.
  • Stay current with the latest cybersecurity threats, vulnerabilities, and mitigation techniques.
  • Evaluate and recommend new security technologies and solutions to enhance the organization's security posture.
  • Participate in security audits and compliance activities.
  • Develop and maintain incident response plans and disaster recovery strategies.
  • Contribute to the continuous improvement of the organization's overall security program.

Qualifications

  • Bachelor's degree: in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Master's degree: or relevant certifications (CISSP, CISM, CEH) are highly desirable.
  • Experience: Minimum of 7 years of progressive experience in information security, network security, or cybersecurity engineering.
  • Proven expertise: in deploying, configuring, and managing a wide range of security technologies (firewalls, IDS/IPS, SIEM, endpoint protection).
  • Strong understanding: of security frameworks (e.g., NIST, ISO 27001), risk management principles, and threat intelligence.
  • Experience: with incident response, digital forensics, and forensic analysis tools.
  • Proficiency: in scripting languages (e.g., Python, PowerShell) for automation of security tasks is a plus.
  • Excellent: analytical, problem-solving, and critical-thinking skills.
  • Strong communication: and interpersonal skills, with the ability to explain technical security concepts to non-technical audiences.
  • Ability: to work effectively both independently and as part of a team in a hybrid work environment.
  • Experience: with cloud security (AWS, Azure, GCP) is a significant advantage.
  • Demonstrated ability: to handle sensitive information and maintain confidentiality.

Conclusion

Join our client in protecting critical digital assets and ensuring a secure environment for operations in Colorado Springs, Colorado, US.

Required Skills

VPNs
Endpoint security solutions
Vulnerability scans
Cloud security (AWS, Azure, GCP)
Security assessments
Security frameworks (NIST, ISO 27001)
Intrusion detection/prevention systems (IDPS)
Cybersecurity principles
Firewalls
Threat intelligence
SIEM
Scripting languages (Python, PowerShell)
Penetration testing
Security controls and technologies
Risk management principles
Digital forensics
Incident response