Information Security Engineer

Integrity Express Logistics LLC

$95K — $115K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or related field.
  • Minimum of 5 years of experience in information security or cybersecurity.
  • Experience implementing and operating enterprise security technologies.
  • Ability to identify and remediate security vulnerabilities effectively.
  • Strong understanding of security principles across various technology platforms.

Responsibilities

  • Design, implement, and maintain security controls to protect company data.
  • Conduct security risk assessments and prioritize remediation efforts.
  • Monitor and investigate security incidents and potential threats.
  • Support the development of the company's information security program.
  • Develop and deliver security awareness training for employees.

Benefits

  • Opportunity for professional development in a growing industry.
  • Collaborative work environment across multiple business units.
  • Hands-on experience with advanced security technologies.
  • Support for continuous improvement of security practices.
Full Job Description
As the Information Security Engineer at Integrity, you are responsible for protecting Integrity Express Logistics’ systems, networks, applications, and data by developing, implementing, and maintaining effective information security controls and practices. This role combines hands-on security engineering with risk assessment, vulnerability management, incident response, and continuous improvement of the Company’s information security capabilities.

The Information Security Engineer partners closely with Technology, Engineering, Infrastructure, and other business teams to identify security risks, implement appropriate safeguards, and support secure technology operations. This position monitors the evolving threat landscape, evaluates vulnerabilities, responds to security incidents, and helps ensure security considerations are incorporated into technology solutions and business processes.

This position reports to the Senior Vice President, Technology Solutions.

** Must be able to work onsite in Cincinnati, OH on a weekly basis or as business needs require.

Core Responsibilities

Security Engineering, Infrastructure, & Controls

  • Design, implement, configure, maintain, and continuously improve security technologies, infrastructure, and controls that protect the Company's applications, endpoints, networks, systems, and data.
  • Configure, administer, and troubleshoot security tools and technologies, including endpoint protection, firewalls, authentication and access controls, intrusion detection and prevention systems, content filtering, and network monitoring solutions.
  • Partner with Technology and Engineering teams to support secure system configurations, architectures, and implementations.
  • Evaluate and recommend enhancements to security tools, controls, and technologies to strengthen the Company's security posture.

Vulnerability Management, Security Testing, & Risk Assessment

  • Conduct security risk assessments and vulnerability evaluations to identify potential weaknesses, threats, and areas of exposure.
  • Perform and/or coordinate internal and external vulnerability scans, analyze findings, prioritize risks, and drive remediation efforts with appropriate stakeholders.
  • Conduct or coordinate security testing activities, including vulnerability scanning, phishing simulations, configuration reviews, and other control effectiveness assessments.
  • Track remediation progress and provide recommendations to reduce risk and improve control effectiveness.

Security Monitoring, Threat Management, & Incident Response

  • Monitor security systems, logs, and alerts to identify suspicious activity, potential security incidents, and emerging threats.
  • Investigate security events, document findings, and coordinate incident response, containment, recovery, and remediation activities.
  • Maintain awareness of evolving cybersecurity threats, attack techniques, vulnerabilities, and industry trends, evaluating potential impacts to the Company.
  • Recommend and implement improvements to detection, response, and monitoring capabilities to reduce future risk.

Security Program, Application Security, & Advisory Support

  • Support the development, implementation, maintenance, and continuous improvement of the Company's information security program, policies, standards, procedures, and technical controls.
  • Partner with Engineering, Infrastructure, and Technology teams to integrate security considerations into the design, implementation, and operation of systems and applications.
  • Provide guidance and recommendations related to operating systems, networks, databases, web applications, cloud environments, and other technology platforms.
  • Assist in translating security requirements into practical and scalable solutions that support business and technology objectives.

Security Awareness, Documentation, & Continuous Improvement

  • Partner with stakeholders to develop and deliver security awareness initiatives, training programs, and employee education related to cybersecurity best practices.
  • Provide guidance on information security responsibilities, phishing awareness, data protection, and emerging security risks.
  • Maintain accurate documentation of security configurations, incidents, risks, controls, assessments, and remediation activities.
  • Identify opportunities to improve security processes, operational effectiveness, and the overall maturity of the Company's security program.
  • Perform other duties and responsibilities as assigned.

Knowledge/Skills/Experience

Required Qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology, Cybersecurity, or a related field, or an equivalent combination of education and relevant experience.
  • Minimum of 5 years of experience in information security, cybersecurity engineering, security operations, or a related technology security role.
  • Demonstrated experience implementing, operating, and maintaining enterprise security technologies, systems, and controls.
  • Experience identifying, assessing, prioritizing, and remediating security vulnerabilities and technology risks.
  • Working knowledge of network, endpoint, operating system, application, database, and infrastructure security principles.
  • Experience with security technologies such as endpoint protection, firewalls, identity and authentication solutions, intrusion detection/prevention, content filtering, vulnerability management, and network or security monitoring tools.
  • Knowledge of cybersecurity principles, security protocols, access controls, vulnerability management, and incident response practices.
  • Experience investigating and responding to security incidents and documenting findings and corrective actions.
  • Ability to analyze complex technical information, identify potential risks, and develop practical solutions.
  • Strong analytical, technical, and problem-solving skills.
  • Strong written and verbal communication skills, including the ability to communicate security risks and recommendations to both technical and non-technical stakeholders.
  • Ability to work effectively across Technology, Engineering, Infrastructure, and business teams while managing multiple priorities.

Preferred Qualifications

  • Experience supporting or helping mature an enterprise information security program.
  • Experience with cloud security, identity and access management, security information and event management (SIEM), vulnerability management, and endpoint detection and response (EDR) technologies.
  • Familiarity with recognized cybersecurity frameworks and standards, such as NIST Cybersecurity Framework, CIS Controls, or similar industry frameworks.
  • Relevant professional certification such as CISSP, Security+, GIAC, CISM, or another information security certification.
  • Experience working in an environment where security controls must balance operational requirements, business needs, and technology risk.

Physical Requirements

  • Ability to sit or stand at a desk for prolonged periods of time.
  • Ability to lift up to 15 lbs.

This position operates primarily in a remote work environment. Occasional work outside of normal business hours may be required to support software releases, production issues, or other critical technology initiatives. Limited travel may also be necessary for meetings, training, and company-sponsored events.

Similar Jobs

More Information Technology Jobs

Find similar Information Security Engineer jobs: