Security Engineer managing security operations and incident response for CBIZ across hybrid and cloud environments. Actively investigating alerts and enhancing security controls in cloud services.
Responsibilities
Actively investigate and respond to security alerts across SIEM, XDR, NDR, identity, email, endpoint, and cloud security tools.
Lead incident handling from triage through containment, eradication, recovery, and lessons learned.
Perform root-cause analysis, validate remediation, and document findings and actions.
Participate in an on-call rotation and after-hours response as needed.
Configure, harden, and maintain security controls in Microsoft Azure, AWS, and Microsoft 365 security and compliance platforms.
Engineer and operationalize controls for identity protection, email/phishing defenses, DLP, conditional access, and tenant security baselines.
Secure and monitor cloud workloads, identities, and data across hybrid and multi-cloud environments.
Support and troubleshoot certificate-based authentication and encryption using PKI.
Tune and refine detections for cloud, identity, and email-borne threats.
Administer and tune core security platforms such as SIEM and log pipelines, Endpoint/XDR, Network security, Identity and access management.
Use scripting and automation (PowerShell, Python, Bash) to streamline investigations, orchestrate response actions, and reduce manual toil.
Create and maintain operational documentation: runbooks, playbooks, SOPs, and KB articles that reflect how work is done.
Partner closely with GRC, IT, Cloud, Networking, Systems, Endpoint, and Business teams to drive secure outcomes.
Requirements
College Degree or equivalent
6 years related experience
Expert technical knowledge
Knowledge of industry regulations
Ability to lead and coordinate the team activities of others
Ability to formulate, document and recommend new policies and procedures
Able to work in and lead a team
Demonstrated ability to communicate verbally and in writing throughout all levels of an organization, both internally and externally
Ability to travel as required by business and on-call availability
Senior Security Engineer establishing and maintaining cybersecurity measures for a financial services company. Responsible for leading security event responses, documentation of policies, and training.
Senior Corporate Security Investigator at Duke Energy conducting complex investigations in support of Ethics, HR, Legal, Nuclear, and Enterprise Security with field mobility.
AI Enterprise Security Architect focusing on AI Security architectural standards and integrating security measures into AI development lifecycle. Leading a global team in securing AI systems.
Cloud Security Engineer supporting and securing client environments across AWS and hybrid infrastructures. Collaborating with Cloud Operations to monitor, investigate, and remediate security events.
Account Cybersecurity Lead providing cybersecurity governance and oversight at Capgemini. Leading client relationships, security management systems, and risk compliance oversight.
Cybersecurity Risk Coordinator at Globo ensuring operational security across digital content. Analyzing risks and developing strategies to enhance business resilience.
Senior SAP Security Specialist managing SAP Security responsibilities and projects. Collaborating on security tools and conducting workshops in Hamburg.
Sales Account Manager for Cyber Security and Awareness role at HvS - Consulting GmbH. Providing holistic consulting on Cyber Security services and managing client relationships.
Security Engineer at PRC - Saltillo safeguarding IT infrastructure from cyber threats. Collaborating with IT teams to design and maintain security controls in a hybrid work environment.
Information Security Manager leading cyber security initiatives at NVISO, enhancing clients’ security posture and managing a team of consultants in Germany.