Cyber Security Engineer
The Cyber Security Engineer (CSE) is responsible for the day-to-day technical operations required to safeguard the organization’s computer networks, systems, and cloud infrastructure. The CSE implements, manages, and monitors security controls to protect sensitive data and infrastructure from cyber-attacks across on-premises and cloud environments. Working as a core member of the IT team, the CSE reports to the Security Manager or CTO and collaborates cross-functionally to strengthen the organization’s overall security posture.About the RoleThe Cyber Security Engineer (CSE) is responsible for the day-to-day technical operations required to safeguard the organization’s computer networks, systems, and cloud infrastructure.ResponsibilitiesMaintain the integrity and confidentiality of organizational information across on-premises and cloud environmentsImplement and manage security configurations within AWS, including GuardDuty, IAM, and Security HubImplement and manage security configurations within Google Cloud, including Security Command Center, IAM, and VPC Service ControlsOwn the lifecycle of user access and enforce least privilege principlesManage MFA, SSO, and Privileged Access ManagementUse PowerShell and Bash scripting to automate security monitoring and audit cloud configurationsIntegrate security into the CI/CD pipeline and assist with remediation of application vulnerabilitiesCollaborate with the Network team on firewall rules, VPN configurations, and micro-segmentation strategiesServe as the Tier 3 escalation point for security-related tickets and provide guidance on secure workstation deploymentUtilize SIEM and EDR/XDR platforms to identify, investigate, and respond to irregular system behavior or potential intrusionsPerform regular vulnerability scans and work with the Network and Systems teams to prioritize and validate patchingParticipate in incident response efforts and conduct technical forensicsDocument post-mortem findings to prevent recurrenceMaintain technical security standards, network diagrams, policies, and incident response playbooksQualificationsBachelor’s degree in Computer Science, Cyber Security, or related field, or equivalent professional experience.Required SkillsProficiency in PowerShell or Bash for task automation and log parsingDeep understanding of identity providers such as Google Workspace, Azure AD/Entra ID, or Okta, and SAML/OIDC protocolsHands-on experience with firewalls, Network Access Control, PKI certificates, and MFA/SSO integrationsExperience with EDR platforms such as Bitdefender or CrowdStrikeExperience with SIEM tools such as Splunk or SentinelExperience with vulnerability scanners such as Qualys or Rapid7Experience using system management toolsStrong understanding of access control, network and systems hardening, threat modeling, encryption, vulnerability management, digital forensics, and incident responseKnowledge of risk assessment tools, technologies, and methodsFamiliarity with modern security platforms such as Darktrace, DLP systems, and File Integrity MonitoringKnowledge of disaster recovery, computer forensic tools, and methodsWorking knowledge of industry frameworks such as NIST CSF, PCI-DSS, or ISO 27001Strong analytical skills to troubleshoot connectivity issues caused by security controls and resolve technical vulnerabilitiesAbility to collaborate with DevOps and Developers without disrupting production workflowsAbility to dissect complex logs and alerts to identify actionable threatsAbility to translate technical security risks into clear, actionable guidanceEqual Opportunity StatementThe organization is committed to diversity and inclusivity.