BitSight Technologies

Security Engineer - Corporate Security

BitSight Technologies$100K — $140K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 4+ years of experience in dedicated information security roles.
  • Hands-on experience with SIEM and EDR solutions.
  • Expertise in security incident response and SOC operations.
  • Strong knowledge of least privilege access principles and defense-in-depth methodologies.
  • Solid understanding of TCP/IP networking and security protocols.
  • Familiarity with AWS cloud environments and associated security technologies.
  • Excellent verbal and written communication skills for diverse audiences.

Responsibilities

  • Develop and enhance security strategies against emerging threats.
  • Deploy and manage SIEM, EDR, and cloud security technologies for effective incident monitoring and response.
  • Lead security incident handling and response, including SOC operations and DFIR.
  • Enforce least privilege access and secure network architectures.
  • Support AI governance initiatives and assess AI security risks.
  • Collaborate effectively while working autonomously.
  • Utilize defense-in-depth methodology to maintain a secure environment.

Benefits

  • Medical, dental, and vision insurance.
  • Paid parental leave.
  • Flexible time off.
  • 401(k) plan with employee and company contributions.
  • Life and disability insurance.
  • Tuition reimbursement.
Full Job Description
We are looking for a skilled and passionate Cybersecurity Engineer to strengthen and scale our security capabilities in response to an evolving threat landscape. In this role, you will have the opportunity to shape our security strategy, drive the implementation of cutting-edge security technologies, and establish proactive defense mechanisms to safeguard our company and employees' data. As a subject matter expert, you will work with industry-leading security platforms, define preventative measures, and contribute to a culture of security excellence.

BitSight is transforming how companies manage information security risk with objective, verifiable, and actionable Security Ratings. BitSight's platform continuously analyzes vast amounts of external data on security issues and behaviors to help organizations manage third-party risk, underwrite cyber insurance policies, benchmark performance, conduct M&A due diligence, and assess aggregate risk. Fifty percent of the world's cyber insurance premiums are underwritten by BitSight customers, all four of the Big 4 accounting firms use BitSight, and four of the top five investment banks rely on our solution to manage cyber risks.

Key Responsibilities:
  • Develop and enhance security strategies to protect against emerging threats.
  • Deploy and manage SIEM, EDR, and cloud security technologies to monitor and respond to incidents effectively.
  • Lead or participate in security incident handling and response, including SOC operations and DFIR.
  • Enforce least privilege access principles and secure network architectures.
  • Support AI governance initiatives, including evaluating AI security risks, contributing to AI usage policies, and implementing controls for AI tools and integrations used across the organization.
  • Work autonomously while also thriving in a collaborative team environment.
  • Utilize defense-in-depth methodology to enhance and sustain a secure environment.


Required Qualifications:
  • 4+ years of experience in dedicated information security roles.
  • Hands-on experience with SIEM and EDR solutions.
  • Expertise in security incident response and SOC operations.
  • Strong knowledge of least access principles and defense-in-depth methodologies.
  • Solid understanding of TCP/IP networking and security protocols.
  • Understanding of AWS cloud environments and working with related security technologies.
  • Excellent verbal and written communication skills, with the ability to engage technical, non-technical, and executive audiences.


Preferred Qualifications:
  • Experience with vulnerability management, assessment, and remediation.
  • Familiarity with adversarial TTPs and attack frameworks (MITRE ATT&CK, etc.).
  • Knowledge of AI/LLM security risks, including prompt injection, model misuse, data exposure, and agentic AI threats.
  • Experience evaluating or implementing AI governance and security controls (e.g., MCP gateways, AI access policies, behavioral monitoring for AI tools).
  • Knowledge of security compliance frameworks (e.g., SOC 2, CIS, NIST 800 series, ISO 27001).
  • Experience with detection engineering tools (e.g., Suricata, YARA, Sigma).
  • Proficiency in Python for security automation, including threat detection and compliance workflows.


Preferred Certifications:
  • AWS Certified Security Specialty
  • SANS Certifications: GCIA, GCIH, GCFA, GCTI
  • ISC2: CISSP or CCSP
  • CompTIA Security+


The anticipated hiring base salary range for this position is US $100,000 to $140,000 annually for US-based employees. This range reflects the minimum and maximum target for new hire salaries for the position across all US locations, is based on a full-time work schedule, and is Bitsight's good faith estimate as of the date of this posting. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training.In addition to base salary, this role is eligible for participation in a bonus or commission plan and an equity grant. Bitsight also offers a competitive benefits package, including but not but limited to medical, dental, and vision insurance; paid parental leave; flexible time off; a 401(k) plan with employee and company contribution opportunities; life and disability insurance; and tuition reimbursement.

About BitSight Technologies

BitSight Technologies is a cybersecurity ratings company that provides cybersecurity risk management solutions to organizations. The company's platform uses a data-driven approach to assess the security posture of organizations and their vendors. BitSight's platform is used by companies to manage third-party risk, benchmark performance against industry peers, and improve their overall cybersecurity posture. The company was founded in 2011 and is headquartered in Boston, Massachusetts.
Learn more about BitSight Technologies
Size
500 employees
Industry
Founded
2011

Similar Jobs

More Jobs at BitSight Technologies

More Information Technology Jobs

Find similar Security Engineer - Corporate Security jobs: