About this role:
This role is part of a specialized engineering team responsible for the end-to-end ownership of the Cisco Identity Services Engine (ISE) platform, which provides enterprise authentication, authorization, and network access control services across the organization. The Lead Engineer will serve as a primary subject matter expert for the platform, providing technical leadership for complex initiatives, defining solution architectures, and driving the strategic roadmap for authentication technologies. The role is responsible for evaluating emerging capabilities, designing scalable and resilient solutions, and ensuring the platform continues to meet evolving business, security, and regulatory requirements. This individual will also champion the team's automation strategy, identifying opportunities to improve operational efficiency, reduce risk, and accelerate delivery through automation of testing, deployment, and operational processes. Working across security, network, infrastructure, and application teams, the Lead Engineer will influence technology direction, provide mentorship to engineers, and lead the delivery of secure, reliable, and innovative authentication services that support the enterprise.
In this role, you will:
- Lead computer security incident response activities for highly complex events
- Conduct technical investigation of security related incidents and post incident digital forensics to identify causes and recommend future mitigation strategies
- Provide security consulting on large projects for internal clients to ensure conformity with corporate information, security policy, and standards
- Design, document, test, maintain, and provide issue resolution recommendations for highly complex security solutions related to networking, cryptography, cloud, authentication and directory services, email, internet, applications, and endpoint security
- Review and correlate security logs
- Utilize subject matter knowledge in industry leading security solutions and best practices to implement one or more components of information security such as availability, integrity, confidentiality, risk management, threat identification, modeling, monitoring, incident response, access management, and business continuity
- Identify security vulnerabilities and issues, perform risk assessments, and evaluate remediation alternatives
- Collaborate and influence all levels of professionals including managers
- Lead a team to achieve objectives
- Demonstrate proficiency in using AI‑assisted development and analysis tools (e.g., GitHub Copilot and approved code‑centric agents)
- Leverage AI to accelerate system design, coding, testing, analysis, and troubleshooting
- Apply strong technical judgment when validating and integrating AI‑assisted outputs into solutions
- Understand and account for model limitations, security risks, and operational considerations
- Apply AI responsibly in development and production environments
- Ensure AI usage aligns with security, compliance, privacy, and ethical standards
Required Qualifications:
- 5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the
following: work experience, training, military experience, education - 5+ years of experience with authentication protocols such as, EAP-TLS, MAC Authentication Bypass, SAML, OAuth, TACACS+, and
RADIUS - 1+ years of experience managing infrastructure as code using scripting languages such as Python or PowerShell
- 1+ years of experience with automation tools such as Ansible
- 1+ years of experience with Cisco Identity Services Engine
Desired Qualifications:
- Experience writing technical procedures, references, and other documentation
- Experience with Agile methodology of project delivery
- Knowledge and understanding of authentication principles such as MFA, RBAC, and least privilege
- Knowledge and understanding of core networking fundamentals such as DHCP and layer 3/4 operations
- Knowledge and understanding of layer 2 technologies including authentication mechanisms such as 802.1X
Job Expectations:
- Ability to work nights, weekends, and/or holidays as needed or scheduled.
- Ability to work on call as assigned .
Posting End Date:
30 Aug 2026
*Job posting may come down early due to volume of applicants.