Cybersecurity Engineer, Lead

Independence Pet Group

$120K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, IT, or related field, or equivalent experience (5-8 years) in cybersecurity, preferably in financial services and insurance.
  • 5+ years of experience in cybersecurity engineering, with a focus on Microsoft environments.
  • Relevant cybersecurity certifications like CISSP, CEH, CISM, or GIAC are preferred.
  • Hands-on experience with Microsoft security tools such as Defender for Cloud and Sentinel, with knowledge of AWS and GCP being a plus.
  • Experience with compliance frameworks like NYDFS, PCI DSS, and HIPAA.

Responsibilities

  • Collaborate with Security Engineering to enforce security solutions in cloud and legacy systems.
  • Manage data governance across collaboration tools and email services.
  • Conduct vulnerability assessments and remediate findings with IT teams.
  • Configure and optimize cybersecurity technologies like SIEM and cloud security platforms.
  • Integrate security practices into the CI/CD pipeline through DevSecOps collaboration.
  • Develop and test disaster recovery procedures to meet compliance requirements.
  • Support data privacy regulations and identity access initiatives.

Benefits

  • Comprehensive medical, dental, and vision insurance.
  • Basic life insurance at no cost to the employee.
  • Company-paid short-term and long-term disability insurance.
  • 12 weeks of fully paid parental leave.
  • Flexible spending accounts (FSA) and health savings accounts (HSA).
  • Retirement savings plan with employer contributions.
  • Generous paid time off policies, including holidays and wellness days.
  • Pet-friendly office environment and group pet insurance.
  • On-the-job training and skill development opportunities.
Full Job Description
We are seeking a talented and experienced Lead Cybersecurity Engineer to join our team, reporting directly to the Head of Cyber Security Engineering. This role involves implementing and managing strong cloud security standards, such as vulnerability scanning, endpoint protection, email security, and network security. This role will support our unified enterprise security system across multiple Operating Companies as well as manage the security transformation of some legacy systems into the unified system.

The ideal candidate will have a deep understanding of network protocols, operating systems, security principles, and strong communication and problem-solving skills. In addition, relevant cybersecurity certifications, familiarity with security frameworks, and advanced working knowledge of Microsoft Azure and 365 security features are required.

Responsibilities:
  • Collaborate with the Security Engineering team to implement, configure, and enforce robust security solutions across cloud and legacy environments based on the enterprise security architectures, CIS Benchmarks, Microsoft security baselines, and internal company policy requirements.
  • Manage the security of and enforce proper data governance rules across collaboration and email tools.
  • Effectively manage vulnerability scans, perform security assessments of applications and systems, and collaborate with IT teams to effectively resolve vulnerability findings in a timely manner.
  • Manage, configure, and optimize key cybersecurity tools and technologies such as SIEM, threat intelligence, and cloud security platforms, and develop automations and integrations between systems to improve visibility and response efficiency.
  • Collaborate with DevOps and Engineering teams to integrate security measures into the CI/CD pipeline, promoting the principles of DevSecOps to ensure secure application development and deployment.
  • Contribute to the development and testing of disaster recovery procedures that meet business and compliance needs.
  • Support and implement the enforcement of data privacy requirements and regulations, as needed.
  • Support identity and access security initiatives with conditional access, MFA, PIM, and just-in-time access across Entra ID, Active Directory, and/or Ping Identity to uphold least-privilege principles.
  • Maintain professional security documentation such as diagrams, data flows, and procedures.
  • Participate in audits, assessments, and continuous improvement activities to define, measure, visualize, and improve key cybersecurity metrics.
  • Stay current with emerging cybersecurity trends, tools, and technologies to ensure the organization's security capabilities remain effective and up to date.


Requirements:
  • Bachelor's degree in Computer Science, Information Technology, or related field,
  • At least 10 years of experience in cybersecurity engineering, security architecture, or infrastructure protection, with primary experience in enterprise Microsoft environments, 5 of these years within financial services or insurance industry highly preferred.
  • Relevant certifications such as CISSP, CEH, CISM, or GIAC is highly desirable.
  • Practical knowledge of security frameworks, standards, and best practices (e.g., NIST, ISO, CIS, OWASP).
  • Hands-on experience with Microsoft security technologies such as Defender for Cloud, Defender for Endpoints, XDR, Sentinel, and Purview, with a deep understanding of Azure and Microsoft 365 security architecture. AWS and GCP similar expertise are a plus.
  • Strong experience with common security tools and technologies, such as firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM systems, email security & data loss prevention (DLP) tools, cloud security tools, endpoint protection, encryption, and vulnerability scanners.
  • Experience supporting regulatory and compliance programs such as NYDFS Part 500, PCI DSS, HIPAA, and SOC 2 through control implementation, evidence collection, and audit readiness.
  • Experience with DevSecOps and understanding of security considerations in DevOps environments, including familiarity with automation tools and secure coding practices.
  • Experience with IAM and CIAM configuration and best practices, particularly in Microsoft Entra ID and/or Ping Identity.
  • Excellent analytical and problem-solving skills, with the ability to adapt to changing threats and requirements.
  • Advanced knowledge of the Windows operating system and a working understanding of Linux and MacOS.
  • Strong communication skills, with the ability to effectively communicate complex security concepts to both technical and non-technical stakeholders.
  • Ability to work independently as well as collaborate effectively with multidisciplinary teams.
  • Detail-oriented and proactive in identifying and resolving problems.


Join our team of cybersecurity experts and contribute to the protection of critical assets in an ever-changing digital landscape. Apply now and help us build a secure and resilient infrastructure!

All of our jobs come with great benefits including healthcare, parental leave and opportunities for career advancements. Some offerings are dependent upon the location of where you work and can include the following:
  • Comprehensive full medical, dental and vision Insurance
  • Basic Life Insurance at no cost to the employee
  • Company paid short-term and long-term disability
  • 12 weeks of 100% paid Parental Leave
  • Health Savings Account (HSA)
  • Flexible Spending Accounts (FSA)
  • Retirement savings plan
  • Personal Paid Time Off
  • Paid holidays and company-wide Wellness Day off
  • Paid time off to volunteer at nonprofit organizations
  • Pet friendly office environment
  • Commuter Benefits
  • Group Pet Insurance
  • On the job training and skills development
  • Employee Assistance Program (EAP)

Similar Jobs

More Jobs at Independence Pet Group

More Information Technology Jobs

Find similar Cybersecurity Engineer, Lead jobs: