People Leadership (Managing Senior Security Engineers):
Directly manage a team of Senior Security Engineers, own their performance management, career development, and day-to-day support.
Set and monitor utilization, quality, and ticket/engagement-health targets across the team; step in on at-risk client environments.
Review technical work before it reaches clients, security configurations, assessment findings, remediation plans, and IR playbooks, to ensure consistency and quality.
Serve as the escalation point for complex technical issues, client conflicts, or ambiguous scope that engineers surface.
Run regular 1:1s, team meetings, and technical case reviews; build a culture of peer learning and shared standards across the team.
Lead hiring, onboarding, and ramp planning for new Senior Security Engineers as the team grows.
Identify skill gaps across the team and build/deliver internal training, runbooks, and technical playbooks to close them.
Own staffing and capacity planning: matching engineer bandwidth and expertise to client demand in partnership with delivery leadership.
Conduct on-call rotation planning and ensure coverage for incident response across the team.
Client Delivery & Technical Engineering:
Carry your own portfolio of client engagements, implementing and enforcing security policies and procedures based on industry standards.
Conduct security assessments, audits, and compliance reviews for client environments.
Design and implement secure cloud solutions (Azure and AWS) and manage Cloud Security Posture Management (CSPM) tooling.
Ensure the security of SaaS platforms, including email, file sharing, and third-party applications.
Configure and manage security controls for servers and endpoints, including endpoint protection deployment and management.
Implement security policies for Mobile Device Management (MDM).
Conduct vulnerability scans and penetration tests, developing remediation plans for identified issues.
Implement and manage IAM solutions, including SSO and privileged access management (PAM); ensure proper user provisioning and access controls.
Lead technical implementations of data protection services, including Data Loss Prevention (DLP) solutions.
Work closely with clients to understand their security needs and provide tailored solutions.
Security Operations & Infrastructure:
Oversee implementation and management of SIEM, MDR, IDS/IPS across client accounts managed by your team.
Configure and manage network security policies across perimeter and internal network equipment, including firewalls and wireless access points.
Apply and enforce security configuration benchmarks (e.g., CIS, NIST) across your team's engagements.
Participate in and oversee incident response planning, tabletop exercises, and the development of IR plans and playbooks.
Review and ensure backup, redundancy, and replication solutions meet availability and recovery best practices, including oversight of recovery testing.
Ensure compliance with regulatory requirements and industry standards across client environments.
Cross-Functional Collaboration & Practice Development:
Collaborate with cross-functional teams to ensure security is integrated into all aspects of client IT infrastructure.
Develop and maintain technical security standards and operational procedures for the MSSP practice.
Assist with the implementation and configuration of security awareness training programs and solutions.
Contribute to the evolution of Echelon's security engineering methodology, tooling standards, and delivery templates.
Partner with sales and delivery leadership on scoping and staffing for new and expanding client engagements.
Your Knowledge, Skills, and Abilities:
Bachelor's degree in Computer Science, Information Security, or related field.
Relevant certifications: CCSP, CISSP, CEH, CISM, or similar.
5+ years as a Senior Security Engineer or equivalent technical role, including experience working in managed IT or security services (MSP or MSSP), handling numerous clients and environments simultaneously.
2+ years of direct people management experience - managing engineers or technical staff, including performance reviews, coaching, and career development.
Demonstrated ability to balance a personal billable book of work (60%+ utilization) with team leadership responsibilities.
Strong understanding of security technologies and frameworks across cloud, network, endpoint, and identity domains.
Proven ability to manage multiple, simultaneous client engagements across a team and deliver quality results under tight deadlines.
Excellent problem-solving and analytical skills.
Strong communication and interpersonal skills, including the ability to coach technical staff and communicate with clients.
Applicants must have authorization to work in the United States without current or future visa sponsorship.
Preferred Qualifications:
Prior experience managing a team of security engineers, technical consultants, or client-facing engineering staff at an MSP or MSSP.
Familiarity with regulatory requirements such as FFIEC, SOC 2, ISO 27001, GDPR, CMMC, HIPAA, PCI-DSS, etc.
Familiarity with popular security frameworks such as CIS, NIST, ISO, SOC2.
Experience with enterprise security technologies (firewalls such as Palo Alto and FortiGate; endpoint tools such as CrowdStrike, SentinelOne, and FortiEDR).
Experience working in or with a Security Operations Center (SOC).
Experience leading or participating in security assessments and audit efforts.
Familiarity with DevSecOps practices and tools.
Track record of building or scaling a security engineering team - including staffing models, technical playbooks, and QA processes.
Skilled in gathering, assessing, and presenting technical security metrics and trends to both technical and non-technical audiences.
Ability to be agile and juggle multiple clients, initiatives, and priorities effectively - both personally and across a team.
We currently offer the following benefits:
Access to medical, dental, and vision insurance through Cigna, with the majority of the employee cost covered by the employer
Employer funding to HSA accounts and FSA access
Access to a 401(k) through Vanguard with a guaranteed employer contribution
Flexible vacation policy that allows you to manage your schedule and rest and recharge when you need to
11 holidays with flexibility based on what is important for you and those you love
Family-friendly benefits, including weeks off for Maternity leave, weeks off for non-birthing parent leave, employer-paid short-term and long-term disability, employer-paid life insurance, and access to additional life insurance, hospital coverage, accidental coverage, discounted mental health support, and more
Support for individual development through certifications, continued learning, conferences, and more