{"schemaVersion":"jobsearcher.job.v1","id":"0477173d501bf03ec8df048e","url":"https://jobsearcher.com/jobs/0477173d501bf03ec8df048e","canonicalUrl":"https://jobsearcher.com/jobs/0477173d501bf03ec8df048e","title":"Cybersecurity Engineer","description":"This position will report to HB Mechanical Group, LLC, a subsidiary of HB Global.\n\nWe empower our employee owners to make this a great place to work and create value.\n\nSUMMARY: The Cybersecurity Engineer is HB Global's dedicated, hands-on owner of cybersecurity operations and engineering across the enterprise. Reporting to the Director of IT, who owns the enterprise security strategy, and partnering with third-party solution architects where specialized design is required, this role translates strategy into working, well-managed security controls. It is a true generalist position: on any given week the engineer performs day-to-day threat hunting, monitoring, and incident response, then implements, configures, and manages the tools that protect the organization. This position operates in a multi-division enterprise environment in which divisions maintain autonomy in business decisions; the Cybersecurity Engineer maintains consistent enterprise security standards while adapting to each division's needs and supporting the integration of newly added business units.\n\nTo be successful you must possess these core value characteristics:\n\nTrust: Clear Communication. Be committed. Accountable. Open. Honest.\n\nTeam: No \"I\". Do what's best. Assume the best. Be a leader. Celebrate wins.\n\nGrit: Goal-focused. Be positive. Persevere. Show passion. Take ownership.\n\nGrowth: Lifelong learner. Forward-thinker. Self-aware. Curious. Open-minded.\n\nWORK SCHEDULE & TRAVEL:\n\nThis is a full-time position with benefits. The role is a hybrid Remote–On Site position; we prefer candidates within driving distance of the HB Mechanical Group office in Camp Hill, PA or the Tamarac, FL office, and will consider strong candidates residing anywhere in the U.S. Eastern time zone. Hours may vary according to business needs. Occasional travel between HB Global offices and divisional worksites may be required. On-call availability for security incidents and urgent requests is required.\n\nESSENTIAL DUTIES and RESPONSIBILITIES:\n\nThreat Detection, Hunting & Response\n\nPerform day-to-day threat hunting, monitoring, and alert triage across the CrowdStrike Falcon platform (EDR, NG-SIEM, and Identity Threat Protection).\nInvestigate, contain, and remediate security incidents end to end; perform root-cause analysis and document findings and lessons learned.\nTune detections, correlation rules, and alerting to reduce noise and improve fidelity.\nMonitor and respond to email-borne threats and user-reported phishing through Mimecast, managing quarantine and policy tuning.\n\nSecurity Engineering, Implementation & Configuration\n\nImplement, configure, and maintain security controls across Microsoft Azure and on-premises systems, coordinating with third-party architects on solution design where required.\nAdminister identity and access security across Microsoft Entra ID / Active Directory, Okta, Microsoft 365, and Google Workspace, enforcing least privilege, MFA, and conditional access.\nManage endpoint protection and DNS-layer security (Cisco Umbrella), and support network security policy on Cisco Meraki in partnership with the Senior Network Administrator.\nOwn vulnerability management, including scanning, prioritization, and coordinating remediation within the IT team.\nPartner with the Senior Systems Administrator — who administers our data protection and recovery tools (Druva, Veeam) — to validate and test backup integrity and to participate in disaster-recovery testing.\nManage the secrets and password platform (1Password) and champion strong credential hygiene across the organization.\n\nSecurity Operations & Management\n\nMaintain security configuration standards and hardening baselines aligned to the strategy set by leadership.\nPlan, track, and report on security initiatives using Zoho Projects.\nManage day-to-day relationships with security vendors and managed-service providers, holding third parties accountable to their commitments.\nOwn the Mimecast security-awareness program, including scheduling and managing quarterly awareness trainings and quarterly phishing simulations, and reporting on progress and completion rates.\n\nReporting, Metrics & Executive Communication\n\nProduce clear, regular reporting on the organization's overall cybersecurity posture, translating technical detail into concise summaries for leadership and executive audiences.\nPull and correlate data from across the security stack — CrowdStrike (EDR, NG-SIEM, Identity Threat Protection), Mimecast, Cisco Umbrella and Meraki, identity, and vulnerability tools — into clear, easy-to-understand reports and dashboards.\nDefine and track key security metrics and KPIs (such as detection and response times, vulnerability remediation, patch status, and phishing-test results) and report on trends over time.\nProvide on-demand snapshots of the current security state and clearly communicate risks, priorities, and recommendations to non-technical stakeholders.\n\nBusiness Partnership & Business-Unit Integration\n\nPartner with multiple semi-autonomous divisions to deliver consistent security protections, adapting engagement and communication to each division's operational needs while maintaining enterprise standards and governance.\nAs HB Global grows and brings new business units into the organization, onboard and standardize their security controls to HB Global's baseline.\nAssess the security posture of incoming environments and build practical plans to consolidate identity, endpoint, email, network, and backup protections.\n\nGovernance & Collaboration\n\nSupport compliance, audit, and cyber-insurance requirements with clear evidence and documentation.\nPartner with leadership to turn security strategy into hands-on execution, and flag risks and priorities as they emerge.\nPartner closely with the Senior Network Administrator — who is responsible for network security — to validate network security controls and to provide backup and cross-coverage for the network security function.\n\nOther\n\nPerform other duties as assigned\n\nEDUCATION, EXPERIENCE and SKILLS:\n\nEducation\n\nHigh School Diploma\nBA/BS in Information Technology, Computer Science, Cybersecurity, or equivalent experience\nRelevant security certifications and continuing education preferred\n\nExperience (Required)\n\n5+ years of hands-on experience in cybersecurity engineering, security operations, or a blended security/IT role.\nDemonstrated ability to both build and operate security controls with minimal supervision as a security generalist.\nHands-on experience with EDR/endpoint security and SIEM (CrowdStrike strongly preferred).\nStrong identity and access management experience (Entra ID / Active Directory, Okta, MFA, conditional access).\nExperience securing Microsoft 365 and cloud environments (Microsoft Azure).\nPractical incident-response and threat-hunting experience, with solid networking and firewall fundamentals.\nExperience working with outside security vendors/managed services and coordinating deliverables to timelines and quality expectations.\n\nSkills & Technical Knowledge\n\nWorking knowledge of security frameworks and best practices (e.g., NIST Cybersecurity Framework, CIS Controls) and the ability to enforce data/access security policies.\nScripting and automation ability (PowerShell and/or Python) for routine tasks and tool integrations.\nStrong analytical and problem-solving skills; able to communicate clearly with technical and non-technical stakeholders.\nAbility to pull data from multiple security platforms and present the organization's security posture in clear reports and dashboards for executive, non-technical audiences.\nExtensive knowledge of Microsoft Entra ID / Active Directory, Microsoft 365, and Azure security.\nFamiliarity with email security, DNS security, and backup/disaster-recovery concepts.\nFamiliarity with confidentiality requirements related to IT operations and network information.\n\nPREFERRED QUALIFICATIONS:\n\nIndustry certifications such as CISSP, SSCP, CompTIA Security+/CySA+, GIAC (GCIH, GCIA), or CrowdStrike / Microsoft Azure security certifications.\nDirect experience with our stack: CrowdStrike, Mimecast, Cisco Meraki, Cisco Umbrella, Druva, Veeam, Google Workspace, Okta, and 1Password.\nExperience standardizing security across multiple sites or business units within a growing, multi-entity organization.\nExperience integrating or supporting newly added business units.\nExperience in a multi-division or federated IT/security environment.\n\nPHYSICAL REQUIREMENTS:\n\nProlonged periods sitting at a desk and working on a computer\nMust be able to lift up to 15 pounds at times\nAbility to travel to divisions and worksites as needed","company":"Hb Mechanical Group","rawCompany":"hb mechanical group","city":"Hernando","state":"FL","isRemote":false,"isActive":false,"createdAt":"2026-08-19T18:07:42.663Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"13-1199.07","title":"Security Management Specialists","slug":"security-management-specialists"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541330","title":"Engineering Services","slug":"engineering-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Cybersecurity Engineer","description":"This position will report to HB Mechanical Group, LLC, a subsidiary of HB Global.\n\nWe empower our employee owners to make this a great place to work and create value.\n\nSUMMARY: The Cybersecurity Engineer is HB Global's dedicated, hands-on owner of cybersecurity operations and engineering across the enterprise. Reporting to the Director of IT, who owns the enterprise security strategy, and partnering with third-party solution architects where specialized design is required, this role translates strategy into working, well-managed security controls. It is a true generalist position: on any given week the engineer performs day-to-day threat hunting, monitoring, and incident response, then implements, configures, and manages the tools that protect the organization. This position operates in a multi-division enterprise environment in which divisions maintain autonomy in business decisions; the Cybersecurity Engineer maintains consistent enterprise security standards while adapting to each division's needs and supporting the integration of newly added business units.\n\nTo be successful you must possess these core value characteristics:\n\nTrust: Clear Communication. Be committed. Accountable. Open. Honest.\n\nTeam: No \"I\". Do what's best. Assume the best. Be a leader. Celebrate wins.\n\nGrit: Goal-focused. Be positive. Persevere. Show passion. Take ownership.\n\nGrowth: Lifelong learner. Forward-thinker. Self-aware. Curious. Open-minded.\n\nWORK SCHEDULE & TRAVEL:\n\nThis is a full-time position with benefits. The role is a hybrid Remote–On Site position; we prefer candidates within driving distance of the HB Mechanical Group office in Camp Hill, PA or the Tamarac, FL office, and will consider strong candidates residing anywhere in the U.S. Eastern time zone. Hours may vary according to business needs. Occasional travel between HB Global offices and divisional worksites may be required. On-call availability for security incidents and urgent requests is required.\n\nESSENTIAL DUTIES and RESPONSIBILITIES:\n\nThreat Detection, Hunting & Response\n\nPerform day-to-day threat hunting, monitoring, and alert triage across the CrowdStrike Falcon platform (EDR, NG-SIEM, and Identity Threat Protection).\nInvestigate, contain, and remediate security incidents end to end; perform root-cause analysis and document findings and lessons learned.\nTune detections, correlation rules, and alerting to reduce noise and improve fidelity.\nMonitor and respond to email-borne threats and user-reported phishing through Mimecast, managing quarantine and policy tuning.\n\nSecurity Engineering, Implementation & Configuration\n\nImplement, configure, and maintain security controls across Microsoft Azure and on-premises systems, coordinating with third-party architects on solution design where required.\nAdminister identity and access security across Microsoft Entra ID / Active Directory, Okta, Microsoft 365, and Google Workspace, enforcing least privilege, MFA, and conditional access.\nManage endpoint protection and DNS-layer security (Cisco Umbrella), and support network security policy on Cisco Meraki in partnership with the Senior Network Administrator.\nOwn vulnerability management, including scanning, prioritization, and coordinating remediation within the IT team.\nPartner with the Senior Systems Administrator — who administers our data protection and recovery tools (Druva, Veeam) — to validate and test backup integrity and to participate in disaster-recovery testing.\nManage the secrets and password platform (1Password) and champion strong credential hygiene across the organization.\n\nSecurity Operations & Management\n\nMaintain security configuration standards and hardening baselines aligned to the strategy set by leadership.\nPlan, track, and report on security initiatives using Zoho Projects.\nManage day-to-day relationships with security vendors and managed-service providers, holding third parties accountable to their commitments.\nOwn the Mimecast security-awareness program, including scheduling and managing quarterly awareness trainings and quarterly phishing simulations, and reporting on progress and completion rates.\n\nReporting, Metrics & Executive Communication\n\nProduce clear, regular reporting on the organization's overall cybersecurity posture, translating technical detail into concise summaries for leadership and executive audiences.\nPull and correlate data from across the security stack — CrowdStrike (EDR, NG-SIEM, Identity Threat Protection), Mimecast, Cisco Umbrella and Meraki, identity, and vulnerability tools — into clear, easy-to-understand reports and dashboards.\nDefine and track key security metrics and KPIs (such as detection and response times, vulnerability remediation, patch status, and phishing-test results) and report on trends over time.\nProvide on-demand snapshots of the current security state and clearly communicate risks, priorities, and recommendations to non-technical stakeholders.\n\nBusiness Partnership & Business-Unit Integration\n\nPartner with multiple semi-autonomous divisions to deliver consistent security protections, adapting engagement and communication to each division's operational needs while maintaining enterprise standards and governance.\nAs HB Global grows and brings new business units into the organization, onboard and standardize their security controls to HB Global's baseline.\nAssess the security posture of incoming environments and build practical plans to consolidate identity, endpoint, email, network, and backup protections.\n\nGovernance & Collaboration\n\nSupport compliance, audit, and cyber-insurance requirements with clear evidence and documentation.\nPartner with leadership to turn security strategy into hands-on execution, and flag risks and priorities as they emerge.\nPartner closely with the Senior Network Administrator — who is responsible for network security — to validate network security controls and to provide backup and cross-coverage for the network security function.\n\nOther\n\nPerform other duties as assigned\n\nEDUCATION, EXPERIENCE and SKILLS:\n\nEducation\n\nHigh School Diploma\nBA/BS in Information Technology, Computer Science, Cybersecurity, or equivalent experience\nRelevant security certifications and continuing education preferred\n\nExperience (Required)\n\n5+ years of hands-on experience in cybersecurity engineering, security operations, or a blended security/IT role.\nDemonstrated ability to both build and operate security controls with minimal supervision as a security generalist.\nHands-on experience with EDR/endpoint security and SIEM (CrowdStrike strongly preferred).\nStrong identity and access management experience (Entra ID / Active Directory, Okta, MFA, conditional access).\nExperience securing Microsoft 365 and cloud environments (Microsoft Azure).\nPractical incident-response and threat-hunting experience, with solid networking and firewall fundamentals.\nExperience working with outside security vendors/managed services and coordinating deliverables to timelines and quality expectations.\n\nSkills & Technical Knowledge\n\nWorking knowledge of security frameworks and best practices (e.g., NIST Cybersecurity Framework, CIS Controls) and the ability to enforce data/access security policies.\nScripting and automation ability (PowerShell and/or Python) for routine tasks and tool integrations.\nStrong analytical and problem-solving skills; able to communicate clearly with technical and non-technical stakeholders.\nAbility to pull data from multiple security platforms and present the organization's security posture in clear reports and dashboards for executive, non-technical audiences.\nExtensive knowledge of Microsoft Entra ID / Active Directory, Microsoft 365, and Azure security.\nFamiliarity with email security, DNS security, and backup/disaster-recovery concepts.\nFamiliarity with confidentiality requirements related to IT operations and network information.\n\nPREFERRED QUALIFICATIONS:\n\nIndustry certifications such as CISSP, SSCP, CompTIA Security+/CySA+, GIAC (GCIH, GCIA), or CrowdStrike / Microsoft Azure security certifications.\nDirect experience with our stack: CrowdStrike, Mimecast, Cisco Meraki, Cisco Umbrella, Druva, Veeam, Google Workspace, Okta, and 1Password.\nExperience standardizing security across multiple sites or business units within a growing, multi-entity organization.\nExperience integrating or supporting newly added business units.\nExperience in a multi-division or federated IT/security environment.\n\nPHYSICAL REQUIREMENTS:\n\nProlonged periods sitting at a desk and working on a computer\nMust be able to lift up to 15 pounds at times\nAbility to travel to divisions and worksites as needed","datePosted":"2026-08-19T18:07:42.663Z","dateModified":"2026-08-19T18:07:42.663Z","hiringOrganization":{"@type":"Organization","name":"Hb Mechanical Group","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Hernando","addressRegion":"FL","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"0477173d501bf03ec8df048e"},"url":"https://jobsearcher.com/jobs/0477173d501bf03ec8df048e"}}