SECURA Insurance

Information Security Engineer

SECURA Insurance$95K — $115K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in IT security or 10+ years in AppDev/Infrastructure engineering.
  • Ability to maintain confidentiality regarding internal affairs.
  • Preferred: Degree in Information Systems or Computer Science.
  • Preferred: Security certifications (CISSP, GIAC, CEH, OSCP).
  • Preferred: Knowledge of ISO27001/NIST principles.
  • Preferred: Experience with Identity and Access Management.

Responsibilities

  • Configure, implement, and support security systems for compliance.
  • Define requirements for security technologies and access control.
  • Develop solutions and tools to mitigate vulnerabilities.
  • Document security procedures and aid in policy development.
  • Conduct Security Architecture Reviews and Incident Response.
  • Investigate and remediate potential data security issues.
  • Collaborate with teams to embed security in designs and pipelines.

Benefits

  • Hybrid work model – 3 days in office per week.
  • Opportunities for professional development and education.
  • Cross-functional collaboration that enhances teamwork.
  • Participation in professional organizations for networking.
  • Access to the latest security tools and technologies.
Full Job Description
The Information Security Engineer is responsible for designing, implementing, and maintaining the technical safeguards that protect the organization's systems, networks, and data. This role involves evaluating security technologies, responding to incidents, and collaborating with IT and business teams to ensure secure architecture and operations. The engineer plays a key role in proactively enhancing the organization's overall security posture. This is a hybrid role, with the associate required to be in the office 3 days per week.

RESPONSIBILITIES:
  • Configure, implement, monitor, and support security software/systems that will help ensure compliance with policies and procedures. This may include but is not limited to SIEM, Next Gen Firewall Management, Multi-Factor Authentication, Identity Management, Internal/External Certificate Authority, Network Access Control, Cloud access controls, Vulnerability Management, AppDev security and monitoring, etc
  • Assists with the definition of requirements for security technologies to application/data security, encryption, authentication systems, identity management, and access control
  • Develop technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks
  • Document security procedures and contribute to policy development
  • Assists in the development, execution and/or coordination of Security Architecture Reviews, Secure Network Design, Threat & Risk Investigations, Incident Response and Documentation, DNS, Registrar Management, etc
  • Assist in the identification, response, investigation, and remediation of potential breaches of and issues surrounding data security
  • Collaborate with infrastructure and application teams to embed security into system designs and DevOps pipelines
  • Proactively identifies security problems, monitors performance trends, performs upgrades, and makes recommendations for security hardware and software as required
  • Maintain job knowledge by tracking and understanding emerging security practices and standards; participating in educational opportunities; reading professional publications; and participating in professional organizations
  • Responsible for providing off hours support for security as needed
  • Act as project lead for security tools implementations, which may include cross-functional teams
  • Provide education to teammates, interns, and other teams regarding specific initiatives or
  • InfoSec areas of importance
  • Other duties as assigned

QUALIFICATIONS:

ESSENTIAL:
  • Five or more years of experience working in an Information Technology security capacity or ten or more years working in AppDev or Infrastructure engineering role.
  • Demonstrate the ability to maintain strict confidentiality of SECURAs internal affairs

PREFERRED:
  • A college degree (i.e. B.A. Information Systems or B.S. Computer Science)
  • One or more information security certifications (i.e. CISSP, GIAC, CEH, OSCP)
  • Understanding of ISO27001/NIST principles
  • Experience administering Identity and Access Management solutions
  • Knowledge of cloud security
  • Understanding of the current security threat landscape and ability to demonstrate a strong willingness to stay at the forefront of security developments
  • Experience with vulnerability assessment, scanning, and ethical penetration testing
  • Knowledge of multiple operating system internals and hardening
  • Experience with security policies and procedures, awareness programs, and IT audits
  • Highly motivated and dependable self-starter
  • Coding or scripting ability

About SECURA Insurance

SECURA Insurance is a mutual insurance company that provides personal, business, and farm insurance products. The company was founded in 1900 in Wisconsin and has since expanded to multiple states throughout the Midwest. SECURA's products include auto, home, liability, and workers' compensation insurance. The company has received numerous awards for its customer service and financial stability, including an A (Excellent) rating from A.M. Best.
Learn more about SECURA Insurance
Size
500 employees
Industry

Similar Jobs

More Jobs at SECURA Insurance

More Information Technology Jobs

Find similar Information Security Engineer jobs: