Information Security Engineer

Re:Build Manufacturing

$112K — $168K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Minimum of 5 years' security experience in managing controls and conducting investigations.
  • Deep knowledge of Microsoft 365 Security, Compliance tools, and Azure Sentinel required.
  • Experience with Microsoft Purview and preferred certifications like CISSP or Security+.
  • Demonstrated ability to manage multiple tasks and communicate effectively with diverse teams.
  • Specific experience administering multi-forest Active Directory and multi-cloud environments is preferred.
  • Background in security/compliance within the manufacturing or defense sectors is a plus.
  • Familiarity with NIST SP 800-171 security frameworks is preferred.

Responsibilities

  • Design and manage security controls using Microsoft 365 E5 Security and Azure.
  • Analyze systems for compliance with company policies and industry standards.
  • Conduct security assessments, vulnerability scans, and penetration tests.
  • Leverage Microsoft Sentinel to enhance monitoring and respond to threats.
  • Collaborate with IT to integrate security across all infrastructure.
  • Stay abreast of security trends to improve security posture.
  • Assist in developing incident response and disaster recovery plans.
  • Lead root cause analysis on security incidents and recommend actions.
  • Prepare reports on KPIs, security metrics, and incidents for management.
  • Promote a culture of information security within the organization.

Benefits

  • Remote eligibility with a preference for those near key locations.
  • Employees share ownership and financial rewards from company success.
Full Job Description
Who we are looking for

You will be responsible for implementing and monitoring technical security controls to ensure compliance with Re:Build's requirements and enhance the overall security posture of the organization. You will be a direct report to the VP, Security, working closely with security, IT personnel, software engineers, and partners across our businesses to identify and remediate vulnerabilities and deficient controls, investigate anomalies, and implement processes and technology that systematically reduce risk to the organization.

What you get to do!
  • Design, implement, and manage security controls, using Microsoft 365 E5 Security and Compliance and Azure.
  • Analyze systems and networks for compliance with Re:Build policy, industry standard methodologies and regulations.
  • Conduct regular security assessments, vulnerability scans, and penetration tests to identify and address potential security risks.
  • Fully leverage Microsoft Sentinel, increasing observability and monitoring, promptly responding to, and tuning alerts to mitigate threats, minimize impact, and reduce noise.
  • Collaborate with IT and other departments to ensure security is integrated into all aspects of the organization's infrastructure and processes.
  • Stay up-to-date with the latest security trends, threats, and technologies to continually improve the organization's security posture.
  • Assist in the development and execution of business impact assessments, incident response plans and disaster recovery procedures with collaborators across Re:Build.
  • Work with Security and IT personnel to prepare and manage Information Assurance documentation including System Security Plans (SSPs) and Plans of Action & Milestones (POA&M).
  • Lead root cause analysis on security incidents and provide recommendations for containment and remediation.
  • Prepare and present regular reports on key performance indicators, security metrics, and incidents to senior management.
  • Evangelize information security and foster a security culture.

What you bring to the Team
  • Minimum of 5 years' security experience, including implementation and management of security controls, vulnerability management, and investigations.
  • Deep knowledge and experience with Microsoft 365 Security and Compliance tools and Azure Sentinel required. Specific experience with Microsoft Purview (MIP, DLP, DSPM) strongly preferred.
  • Demonstrated ability to prioritize and manage multiple workloads efficiently, and communicate effectively with diverse teams and partners to ensure timely and successful completion of security initiatives.
  • Bachelor's degree in Information Security (or related field) or equivalent experience and/or relevant certifications (e.g., Security+, Microsoft Cybersecurity Architect Expert, CMMC Certified Professional, CISSP) preferred.
  • Specific experience administering and securing complex multi-forest Active Directory and multi-cloud (AWS, Azure, & GCP) environments preferred.
  • Background supporting security and compliance initiatives in the manufacturing and/or defense industries preferred.
  • Understanding of security frameworks and standards, specific experience with NIST SP 800-171 and other 800-series publications preferred.
  • To conform to U.S. Government technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., or protected individual as defined by 8 U.S.C 1324b(a)(3).

Location Requirements
  • This position is remote eligible, but preference will be given to candidates within commuting distance to one of our locations and willingness to work in office at least once/week:
    • Los Angeles, CA (preferred)
    • Denver, CO
    • Framingham, MA
    • Merrimack, NH
    • Kalamazoo, MI
    • New Kensington, PA
    • Cleveland, OH
    • Rock Hill, SC
    • Rochester, NY

The base salary range for this position is $112,000 - $168,000 per year. This range represents the Company's good faith estimate of the base compensation for this role at the time of posting. Actual compensation will be determined based on several factors, including but not limited to relevant experience, skills, qualifications, internal equity, and geographic location. In addition to base salary, this role may be eligible for annual incentive compensation and/or long-term incentives, subject to Company plans. The Company offers a comprehensive benefits package including medical, dental, vision, retirement, paid time off, and other benefits.

The BIG payoff

We are a company who is going to make a difference in the industries and the communities in which we choose to operate.

Every employee of Re:Build will share ownership in the company and will share in the financial rewards of the success we achieve together, at all levels of the company!

Similar Jobs

More Jobs at Re:Build Manufacturing

More Information Technology Jobs

Find similar Information Security Engineer jobs: