Information Security Engineer

Re:Build Manufacturing

$112K — $168K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Minimum of 5 years' experience in security, covering controls, vulnerability management, and investigations.
  • Strong knowledge of Microsoft 365 Security and Compliance tools and Azure Sentinel.
  • Proven capability to manage multiple tasks and communicate effectively across teams.
  • Bachelor's degree in Information Security or related field, or relevant certifications preferred.
  • Experience with complex Active Directory and multi-cloud environments preferred.
  • Background in security/compliance for manufacturing or defense sectors preferred.
  • Familiarity with NIST SP 800-171 and other security standards preferred.
  • Must comply with U.S. Government export regulations.

Responsibilities

  • Design, implement, and manage technical security controls using Microsoft 365 and Azure.
  • Analyze networks for compliance with internal policies and industry standards.
  • Conduct vulnerability assessments and penetration tests regularly.
  • Leverage Microsoft Sentinel for monitoring and threat mitigation.
  • Collaborate with departments to integrate security into organization processes.
  • Stay informed on security trends and technologies to enhance security posture.
  • Assist in developing incident response plans and disaster recovery procedures.
  • Manage Information Assurance documentation such as SSPs and POA&M.
  • Lead root cause analysis on security incidents with remediation strategies.
  • Prepare and present security performance reports to management.
  • Promote a culture of information security within the organization.

Benefits

  • Employees receive ownership in the company and share in financial rewards during its success.
  • Opportunity for remote work, with potential for flexible office visits.
  • Engagement in critical initiatives impacting multiple industries and communities.
Full Job Description
Who we are looking for

You will be responsible for implementing and monitoring technical security controls to ensure compliance with Re:Build's requirements and enhance the overall security posture of the organization. You will be a direct report to the VP, Security, working closely with security, IT personnel, software engineers, and partners across our businesses to identify and remediate vulnerabilities and deficient controls, investigate anomalies, and implement processes and technology that systematically reduce risk to the organization.

What you get to do!
  • Design, implement, and manage security controls, using Microsoft 365 E5 Security and Compliance and Azure.
  • Analyze systems and networks for compliance with Re:Build policy, industry standard methodologies and regulations.
  • Conduct regular security assessments, vulnerability scans, and penetration tests to identify and address potential security risks.
  • Fully leverage Microsoft Sentinel, increasing observability and monitoring, promptly responding to, and tuning alerts to mitigate threats, minimize impact, and reduce noise.
  • Collaborate with IT and other departments to ensure security is integrated into all aspects of the organization's infrastructure and processes.
  • Stay up-to-date with the latest security trends, threats, and technologies to continually improve the organization's security posture.
  • Assist in the development and execution of business impact assessments, incident response plans and disaster recovery procedures with collaborators across Re:Build.
  • Work with Security and IT personnel to prepare and manage Information Assurance documentation including System Security Plans (SSPs) and Plans of Action & Milestones (POA&M).
  • Lead root cause analysis on security incidents and provide recommendations for containment and remediation.
  • Prepare and present regular reports on key performance indicators, security metrics, and incidents to senior management.
  • Evangelize information security and foster a security culture.

What you bring to the Team
  • Minimum of 5 years' security experience, including implementation and management of security controls, vulnerability management, and investigations.
  • Deep knowledge and experience with Microsoft 365 Security and Compliance tools and Azure Sentinel required. Specific experience with Microsoft Purview (MIP, DLP, DSPM) strongly preferred.
  • Demonstrated ability to prioritize and manage multiple workloads efficiently, and communicate effectively with diverse teams and partners to ensure timely and successful completion of security initiatives.
  • Bachelor's degree in Information Security (or related field) or equivalent experience and/or relevant certifications (e.g., Security+, Microsoft Cybersecurity Architect Expert, CMMC Certified Professional, CISSP) preferred.
  • Specific experience administering and securing complex multi-forest Active Directory and multi-cloud (AWS, Azure, & GCP) environments preferred.
  • Background supporting security and compliance initiatives in the manufacturing and/or defense industries preferred.
  • Understanding of security frameworks and standards, specific experience with NIST SP 800-171 and other 800-series publications preferred.
  • To conform to U.S. Government technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., or protected individual as defined by 8 U.S.C 1324b(a)(3).

Location Requirements
  • This position is remote eligible, but preference will be given to candidates within commuting distance to one of our locations and willingness to work in office at least once/week:
    • Los Angeles, CA (preferred)
    • Denver, CO
    • Framingham, MA
    • Merrimack, NH
    • Kalamazoo, MI
    • New Kensington, PA
    • Cleveland, OH
    • Rock Hill, SC
    • Rochester, NY

The base salary range for this position is $112,000 - $168,000 per year. This range represents the Company's good faith estimate of the base compensation for this role at the time of posting. Actual compensation will be determined based on several factors, including but not limited to relevant experience, skills, qualifications, internal equity, and geographic location. In addition to base salary, this role may be eligible for annual incentive compensation and/or long-term incentives, subject to Company plans. The Company offers a comprehensive benefits package including medical, dental, vision, retirement, paid time off, and other benefits.

The BIG payoff

We are a company who is going to make a difference in the industries and the communities in which we choose to operate.

Every employee of Re:Build will share ownership in the company and will share in the financial rewards of the success we achieve together, at all levels of the company!

Similar Jobs

More Jobs at Re:Build Manufacturing

More Information Technology Jobs

Find similar Information Security Engineer jobs: