Senior Cybersecurity Engineer
Location
United States
Posted
75 days ago
Salary
$150K - $180K / year
Seniority
Senior
Job Description
Senior Cybersecurity Engineer
Integrated Specialty Coverages, LLC
About Integrated Specialty Coverages Integrated Specialty Coverages, LLC (ISC) is a growth stage technology and data-driven commercial MGA and insurance wholesaler leading innovation in the market. Backed by one of the leading private equity firms, Onex Partners, and led by a forward-thinking management team, ISC is combining the worlds of insurance and technology to create an Insurtech powerhouse. As a leading online distributor of insurance products for a range of industries and “Main Street USA”, we are looking for the right people to help us in our mission of achieving exponential growth. We strive to be the number one place to go for brokers and agents to source insurance. To accomplish this, we’re building a digitally focused team that deeply understands the intersection between user experience, data, and AI/ML to optimize the way we engage with our customers and partners. Job Summary We’re looking for a Senior Cybersecurity Engineer to design, build, and operate preventative and detective security controls and automation across our AWS‑first and enterprise environments. Reporting to the CISO, this role implements guardrails, platforms, and integrations and partners with infrastructure, platform, and application teams to embed security by default in our AWS cloud and enterprise environments. The role will perform hands-on engineering in multiple security domains including network security, endpoint security, email security, data security, vulnerability management, container security, and identity and access management. Position Responsibilities - Control Engineering & Operation - Design, implement, and maintain controls in AWS (IAM, KMS, VPC, GuardDuty, Security Hub, Detective, CloudTrail/CloudWatch), network, endpoint, email, data security, vulnerability, and identity domains. - Define SLOs for control availability, latency, coverage, and drift; implement telemetry to continuously measure those SLOs. - Security Automation & “Policy as Code” - Partner with infrastructure, platform, and application teams to build IaC modules (Terraform/CloudFormation) and platform automations (e.g., Python/Lambda, Step Functions) to enforce guardrails (account vending, baseline hardening, logging enablement, key policies, SCPs) using Git. - Implement break‑glass patterns and least‑privilege workflows that are auditable and reversible. - Detection Enablement - Engineer data pathways (e.g., CloudTrail, VPC Flow, ECS audit, identity logs) into SIEM/MDR tooling; ensure completeness, timeliness, and schema quality. - Translate Detection and Response Lead feedback on false positives/gaps into logging or control adjustments. - Vulnerability & Exposure Engineering - Own scanners/integrations, asset coverage, tagging standards, and develop risk‑based remediation pipelines (ticketing, auto‑remediation for low‑risk classes). - Partner with owners to remove friction (pre‑approved windows, canaries, rollbacks). - Identity & Secrets Hardening - Engineer least‑privilege patterns, permission boundaries, conditional access, and automated key/secret lifecycle (rotation, discovery, usage attestations). - Provide ready‑to‑consume roles/policies to teams. - Documentation & Reuse - Maintain runbooks, design docs, and reusable modules; ensure changes are versioned, peer‑reviewed, and test‑ - On‑Call (Engineering) - Participate in control‑health and platform on‑call (e.g., logging ingestion failures, drift, outages). - Escalate security events to the Detection & Response Lead/MDR. Minimum Qualifications - 7+ years in security engineering with production AWS (multi‑account/Organizations) and automation‑first delivery. - Domain experience in at least three of the following: - Network security (segmentation, routing, firewall, proxy, WAF) - Endpoint security (EDR/EPP, hardening, health attestation) - Email security (phishing protection, authentication, inbound/outbound controls) - Data security (classification, DLP, encryption, key management) - Vulnerability management (scanning, prioritization, remediation pipelines) - Container security (image scanning, runtime policy, supply chain) - Identity and access management (policy design, federation, least privilege) - IaC proficiency (Terraform preferred) and Python for automation; CI/CD integration experience (e.g., GitHub Actions, GitLab, CodePipeline). - Experience with root‑cause analysis and remediation of control failures (not incident RCA). - Demonstrated ability to independently drive complex projects to completion, as well as collaborate effectively with a complex set of stakeholders. Preferred Qualifications - Designed landing zones with SCPs, baseline detective controls, centralized logging, account vending, and guardrail automation. - Built event‑driven remediations (e.g., detect to auto‑tag/deny/quarantine) safely with approvals and rollbacks. - Advanced experience engineering security controls in AWS (for example, IAM, KMS, VPC, GuardDuty, Security Hub, Detective, CloudTrail, CloudWatch, Organizations, Control Tower), with automation first practices. - Industry certification such as AWS Certified Security – Specialty, Certified Information Systems Security Professional, GIAC Certifications, SANS. - Knowledge of security frameworks and standards such as NIST, ISO, and CIS. This role also offers bonus pay. Your ISC Talent Acquisition representative will share more details about the bonus component should you advance in the interview process. The starting annual pay scale for this position is listed below. Actual starting pay will be based on factors such as skills, qualifications, training, and experience. In addition, the company offers comprehensive benefits including medical, dental and vision insurance, 401(k) plan with match, paid time off, and other benefits. ISC's salary ranges are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training. National Pay Range $150,000—$180,000 USD Benefits of Working at ISC - Employee Ownership Program - every eligible employee shares in the financial rewards that grow when the company grows - Professional development opportunities - Owner Referral Program - Work from home reimbursement for remote/hybrid roles - Canary emergency financial assistance program - Comprehensive medical, dental, vision - Life/AD&D Insurance - Confidential, Employee Assistance Program - Health Savings Account, includes company contribution - Short-term disability - Voluntary benefits - supplemental accident, critical illness, hospital insurance - Employee discounts - 401(k) Plan with company match contribution - Addition Wealth Financial Wellness Program - Various Time Off Programs - 11 company paid holidays Applicants may contact the ISC HR department via e-mail or phone to request and arrange for an accommodation that will allow the applicant to successfully complete the application process. Applicants needing assistance may request accommodation at any time. Please contact ISC at HR@ISCMGA.com or 760-599-7242. ISC believes in creating long-term relationships by being responsive and relevant and by consistently delivering value to our community of customers. Specifically, we focus on attracting, developing, and retaining the best talent for our business, challenging our people, demonstrating a “can-do” attitude, and fostering a collaborative and mutually supportive environment. Diversity creates a healthier atmosphere: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, gender, gender identity, sexual orientation, marital status, medical condition, genetic information, mental or physical disability, military or veteran status, or any other characteristic protected by local, state, or Federal law. **Must be legally authorized to work in the United States.** **ISC participates in the Federal E-Verify program**
Job Requirements
- 7+ years in security engineering with production AWS (multi‑account/Organizations) and automation‑first delivery.
- Domain experience in at least three of the following: Network security (segmentation, routing, firewall, proxy, WAF)
- Endpoint security (EDR/EPP, hardening, health attestation)
- Email security (phishing protection, authentication, inbound/outbound controls)
- Data security (classification, DLP, encryption, key management)
- Vulnerability management (scanning, prioritization, remediation pipelines)
- Container security (image scanning, runtime policy, supply chain)
- Identity and access management (policy design, federation, least privilege)
- IaC proficiency (Terraform preferred) and Python for automation; CI/CD integration experience (e.g., GitHub Actions, GitLab, CodePipeline).
- Experience with root‑cause analysis and remediation of control failures (not incident RCA).
- Demonstrated ability to independently drive complex projects to completion, as well as collaborate effectively with a complex set of stakeholders.
- Design, implement, and maintain controls in AWS (IAM, KMS, VPC, GuardDuty, Security Hub, Detective, CloudTrail/CloudWatch), network, endpoint, email, data security, vulnerability, and identity domains.
- Define SLOs for control availability, latency, coverage, and drift; implement telemetry to continuously measure those SLOs.
- Partner with infrastructure, platform, and application teams to build IaC modules (Terraform/CloudFormation) and platform automations (e.g., Python/Lambda, Step Functions) to enforce guardrails (account vending, baseline hardening, logging enablement, key policies, SCPs) using Git.
- Implement break‑glass patterns and least‑privilege workflows that are auditable and reversible.
- Engineer data pathways (e.g., CloudTrail, VPC Flow, ECS audit, identity logs) into SIEM/MDR tooling; ensure completeness, timeliness, and schema quality.
- Translate Detection and Response Lead feedback on false positives/gaps into logging or control adjustments.
- Own scanners/integrations, asset coverage, tagging standards, and develop risk‑based remediation pipelines (ticketing, auto‑remediation for low‑risk classes).
- Partner with owners to remove friction (pre‑approved windows, canaries, rollbacks).
- Engineer least‑privilege patterns, permission boundaries, conditional access, and automated key/secret lifecycle (rotation, discovery, usage attestations).
- Provide ready‑to‑consume roles/policies to teams.
- Maintain runbooks, design docs, and reusable modules; ensure changes are versioned, peer‑reviewed, and tested.
- Participate in control‑health and platform on‑call (e.g., logging ingestion failures, drift, outages).
- Escalate security events to the Detection & Response Lead/MDR.
Benefits
- Employee Ownership Program - every eligible employee shares in the financial rewards that grow when the company grows.
- Professional development opportunities.
- Owner Referral Program.
- Work from home reimbursement for remote/hybrid roles.
- Canary emergency financial assistance program.
- Comprehensive medical, dental, vision.
- Life/AD&D Insurance.
- Confidential, Employee Assistance Program.
- Health Savings Account, includes company contribution.
- Short-term disability.
- Voluntary benefits - supplemental accident, critical illness, hospital insurance.
- Employee discounts.
- 401(k) Plan with company match contribution.
- Addition Wealth Financial Wellness Program.
- Various Time Off Programs.
- 11 company paid holidays.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Participate in experiential learning that integrates knowledge and theory learned in the classroom with practical application and skills development • Assist with supporting the assigned area, gaining practical application experience, and expanding knowledge and skills base • Observe the workplace and gain industry knowledge while performing job-specific tasks to assist with operations
Middle School Science Teacher
Stride, Inc.Stride, Inc., formerly known as K12 Inc., is a leading provider of personalized online education programs and services, including customized tutoring, online ed
Job Description Required Certificates and Licenses: Michigan Teaching Certification Required. Must have a middle school Science certificate. Residency Requirements: Must reside in Michigan. The Middle School Science Teacher is a highly qualified, state certified educator responsible for delivering specific course content in an online environment. Teachers provide instruction, support, and guidance, manage the learning process, and focus on students’ individual needs. Teachers monitor student progress through Stride K12’s learning management system. They actively work closely with students and parents/learning coaches to advance each student’s learning toward established goals. Teachers typically work from home but must travel occasionally throughout the year to various school functions, such as state testing or as otherwise required by the school. Start Date: Immediately for the current 2025/2026 school year. This position offers a base salary around $47,000 plus the eligibility of a performance bonus. K12, a Stride Company, believes in Education for ANY ONE. We provide families with an online option for a high-quality, personalized education experience. Students can thrive, find their passion, and learn in an environment that encourages discovery at their own pace. Passionate Educators are needed at the Stride K12 partner school, Michigan Virtual Charter Academy (MVCA). We want you to be a part of our talented team! The mission of Michigan Virtual Charter Academy (MVCA) is to provide an exemplary individualized and engaging educational experience for students by incorporating school and community/family partnerships coupled with a rigorous curriculum along with a data-driven and student-centered instructional model. Student success will be measured by valid and reliable assessment data, parent and student satisfaction, and continued institutional growth within the academic community. Join us! This is a full-time position. Ability to work independently, typically 40+ hours per week is required. Ability to maintain a professional home office without distraction during workday, typically 9-5 (or 8-4) or as defined by the school. ESSENTIAL FUNCTIONS: Reasonable accommodation may be made to enable individuals with disabilities to perform the essential duties. · Provides rich and engaging synchronous and asynchronous learning experiences for students · Commitment to personalizing learning for all students · Demonstrates a belief in all students’ ability to succeed and meet high expectations · Differentiates instruction based on student level of mastery · Augments course content according to prescribed policies and procedures using appropriate asynchronous and synchronous tools under guidance from principal and coach · Maintains grade book ensuring student academic integrity, makes student placement and promotion decisions, and alerts administrators to concerns about student performance and progress · Prepares students for high stakes standardized tests · Understands that a primary responsibility is to establish and maintain positive rapport with families and regularly communicates with and responds to students and learning coaches/parents in a timely manner · Supports learning coaches/parents with student curricular and instructional issues, as well as basic troubleshooting in a virtual classroom environment that is in line with academy policies and procedures · Travels as required (on average once per month and/or approximately 20% of the time) for face-to-face professional development, student testing, and as required by school REQUIRED MINIMUM QUALIFICATIONS: · Bachelor's degree AND · Active state teaching license AND · Ability to clear required background check DESIRED QUALIFICATION: · Experience working with proposed age group. · Experience supporting adults and children in the use of technology. · Experience teaching in an online (virtual) and/or in a brick-and-mortar environment. · Experience with online learning platforms. · Ability to work collaboratively with other teachers to interpret and produce numeric, tabular, and graphic representations of student data, and use it to drive instructional decisions. · Receptive to receiving coaching regularly with administrators and teacher trainers. · Ability to embrace change and adapt to ensure excellent student outcomes. · Proficient in Microsoft Excel, Outlook, Word, PowerPoint. · Ability to rapidly learn and adapt to new technologies and teaching platforms. · Ability to maintain teacher certification/professional development hours and fluency in K12 systems, programs and curriculum. Compensation & Benefits: Stride, Inc. considers a person’s education, experience, and qualifications, as well as the position’s work location, expected quality and quantity of work, required travel (if any), external market and internal value when determining a new employee’s salary level. Salaries will differ based on these factors, the position’s level and expected contribution, and the employee’s benefits elections. Offers will typically be in the bottom half of the range. Work Environment: The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. · This position is virtual. The above job is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow any other instructions, and perform any other related duties, as assigned by their supervisor. All employment is “at-will” as governed by the law of the state where the employee works. It is further understood that the “at-will” nature of employment is one aspect of employment that cannot be changed except in writing and signed by an authorized officer. Bachelor’s degree, 0-1 year of related professional experience Job Type Regular The above job is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow any other instructions, and perform any other related duties, as assigned by their supervisor. All employment is “at-will” as governed by the law of the state where the employee works. It is further understood that the “at-will” nature of employment is one aspect of employment that cannot be changed except in writing and signed by an authorized officer. If you are a job seeker with a disability and require a reasonable accommodation to apply for one of our jobs, you can request the appropriate accommodation by contacting stridecareers@k12.com. Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities Stride, Inc. is an equal opportunity employer. Applicants receive consideration for employment based on merit without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status, or any other basis prohibited by federal, state, or local law. Stride, Inc. complies with all legally required affirmative action obligations. Applicants will not be discriminated against because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant.
Senior Security Operations Engineer, Detection & Response
JobgetherWe use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team. We appreciate your interest and wish you the best! Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time. #LI-CL1 We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Role Description This role offers a high-impact opportunity to strengthen and maintain an organization’s security posture across global cloud environments, endpoints, and SaaS platforms. You will lead threat detection, incident response, and continuous monitoring initiatives while serving as a subject matter expert in security operations. The position requires collaboration across multiple teams to improve detection coverage, automate workflows, and enhance overall security resilience. You will actively participate in 24/7 on-call rotations, drive the development of detection rules and runbooks, and mentor junior engineers. Ideal candidates thrive in fast-paced, high-pressure environments, enjoy solving complex security challenges, and are passionate about automation and process improvement. This is a role where your contributions directly protect organizational assets and empower teams to respond efficiently to threats. - Lead investigations and coordinate response efforts for security incidents across global infrastructure, minimizing impact and recovery time - Participate in 24/7 on-call rotations, managing active security events and incidents - Develop and maintain detection rules, runbooks, and response procedures aligned with the organization’s threat model - Triage and investigate alerts from tools such as EDR, CSPM, and cloud security platforms, reducing false positives and improving detection accuracy - Automate alert triage workflows and enhance mean time to detection and response using tooling and AI enrichment - Collaborate with Infrastructure, Application Security, and Enterprise Security teams to implement secure-by-design principles - Conduct tabletop exercises and game days to test detection, response, recovery, and remediation capabilities - Mentor junior security engineers and cross-functional team members on incident handling best practices Qualifications - 8+ years of professional experience in security, including at least 4 years in security operations, incident response, threat hunting, or threat detection - Demonstrated experience leading security incident investigations and coordinating cross-team response efforts - Hands-on experience with security tooling (SIEM, SOAR, EDR, CSPM) with focus on detection engineering and alert tuning - Experience with cloud-native production environments and multi-cloud platforms (AWS, Azure, GCP) - Proficiency in automation tools and scripting (Python, Terraform) and leveraging AI for workflow improvements - Strong understanding of attacker tactics, techniques, and procedures (TTPs) and frameworks such as MITRE ATT&CK - Excellent communication skills for both technical and non-technical stakeholders - Ability to work effectively in a distributed, remote environment and manage high-pressure situations calmly Requirements - Experience with tools such as Wiz, Crowdstrike, Jamf, Okta, and Google Workspace - Knowledge of Kubernetes-based environments and SaaS integrations - Relevant certifications (GCIH, GCIA, GCFA, or equivalent) - Experience with eDiscovery, digital forensics, or bug bounty management - Contributions to open source security tooling or detection content Benefits - Competitive salary range: $175,000 – $212,000 USD (select locations: $194,000 – $235,000 USD) - Equity or comparable benefits depending on legal and geographic limitations - Unlimited vacation policy - 401(k) plan with 3% guaranteed contribution - Comprehensive healthcare coverage - Paid parental leave - Wellness and home office stipends - Professional development opportunities and a collaborative, inclusive work environment
Information System Security Officer, ISSO
Falconwood, IncorporatedA Certified Veteran-Owned Women-Owned Business
• Plan, implement, and maintain all phases of the Risk Management Framework (RMF) for assigned systems • Assist in the development and maintenance of security documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), and Plans of Action and Milestones (POA&Ms) • Work closely with the Information System Security Manager (ISSM) in executing their duties and responsibilities • Collaborate with system owners, stakeholders, and other security professionals • Provide security guidance and training to system users • Prepare and present security briefings to management • Ensure compliance with all Department of Defense (DoD) and Department of Navy (DoN) cybersecurity policies • Ensure relevant policy and procedural documentation is current and accessible to properly authorized individuals


