Job Closed
This listing is no longer active.
Cerity Partners Tax, Accounting & Advisory Services is a highly sophisticated CPA and advisory practice serving high-net-worth individuals, multi-generational families, real estate investors, entrepreneurs, family offices, and closely held businesses. Our clients expect a high-touch experience and proactive advice. We emphasize planning and strategy—not simply preparing tax returns after the fact. We have been highly successful in attracting and retaining exceptional professionals because of the sophistication of our work, our flexible work environment and our firm culture. We maintain a two-level review process designed to ensure exceptional technical quality and client service. We also make a significant investment in training and professional development. All staff members are assigned a mentor ("buddy") and participate in regular monthly check-ins with principals and partners to support ongoing development, communication and career growth.
Cybersecurity Engineer
Location
Illinois + 3 moreAll locations: Illinois | Kentucky | New York | Massachusetts
Posted
72 days ago
Salary
$115K - $130K / year
Seniority
Senior
Job Description
Cybersecurity Engineer
Cerity Partners
• Deploy, configure, tune, and maintain enterprise security tools including EDR, SIEM, email security, DNS filtering, and endpoint management platforms. • Monitor security alerts and events across the environment, performing triage, investigation, and escalation of potential incidents. • Manage and optimize detection rules, alerting thresholds, and automated response workflows within SIEM and EDR platforms. • Support the administration and enforcement of Conditional Access Policies, application control policies (AppLocker), and identity and access management configurations within Microsoft Entra ID (Azure AD). • Assist with the deployment and management of mobile device management (MDM/MAM) policies through Microsoft Intune. • Conduct vulnerability assessments and coordinate remediation efforts with IT infrastructure and application teams. • Develop and maintain PowerShell or Python scripts to automate routine security tasks, reporting, and data collection. • Manage the end-to-end vulnerability management lifecycle - scanning, prioritization, remediation tracking, and validation across servers, endpoints, and cloud resources. • Coordinate and execute OS and third-party application patching across the environment, ensuring timely remediation of critical and high-severity vulnerabilities in alignment with established SLAs and maintenance windows. • Triage vulnerability scan results and prioritize remediation based on exploitability, asset criticality, and environmental context. • Monitor threat intelligence feeds and vendor advisories (Microsoft Patch Tuesday, CISA KEV catalog, vendor-specific bulletins) and track patching compliance metrics to support both proactive risk reduction and SOC 2 audit evidence requirements. • Participate in incident detection, investigation, containment, and remediation activities. • Perform log analysis and forensic investigation across endpoint, network, identity, and cloud environments. • Document incidents thoroughly, including root cause analysis, timeline reconstruction, and lessons learned. • Coordinate with the managed SOC provider on alert escalation, tuning requests, and incident handoff procedures. • Contribute to the development and testing of incident response playbooks and procedures. • Support the ongoing maintenance of SOC 2 Type 2 compliance, including evidence collection, control testing, and audit coordination through our compliance automation platform (Drata).
Job Requirements
- 5 - 7 years of hands-on experience in cybersecurity engineering, security operations, or a closely related technical security role.
- Strong working knowledge of Microsoft Azure and M365 security capabilities, including Entra ID (Azure AD), Conditional Access, Defender suite, and Purview.
- Experience deploying, managing, and tuning EDR platforms (e.g., SentinelOne, CrowdStrike, Microsoft Defender for Endpoint).
- Experience with SIEM platforms - log ingestion, correlation rule development, alert tuning, and dashboard creation (e.g., FortiSIEM, Sentinel, Splunk, or comparable).
- Demonstrated experience managing enterprise patching programs across Windows endpoints and servers, with familiarity in patch management tooling (e.g., WSUS, Intune, SCCM/MECM, or third-party solutions).
- Hands-on experience with vulnerability scanning platforms (e.g., Tenable, Qualys, Rapid7) including scan configuration, result analysis, and remediation workflow management.
- Ability to assess and prioritize vulnerabilities using contextual risk factors beyond raw CVSS scores, including asset exposure, exploit availability, and business impact.
- Solid understanding of identity and access management concepts including MFA, SSO, RBAC, and privileged access management.
- Familiarity with endpoint management tools such as Microsoft Intune and application control technologies like AppLocker.
- Experience with vulnerability management tools and processes (e.g., Tenable, Qualys, Rapid7).
- Working knowledge of common security frameworks and standards (NIST CSF, CIS Controls, MITRE ATT&CK).
- Competency in scripting for automation and reporting (PowerShell preferred; Python a plus).
- Strong analytical and problem-solving skills with the ability to investigate complex security events across multiple data sources.
- Excellent written and verbal communication skills - able to clearly explain technical security topics to both technical and non-technical audiences.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field - or equivalent practical experience.
Benefits
- Health, dental, and vision insurance – day 1!
- 401(k) savings and investment plan options with 4% match
- Flexible PTO policy
- Parental Leave
- Financial assistance for advanced education and professional designations
- Opportunity to give back time to local communities
- Commuter benefits
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Information Security Officer
GFT TechnologiesAs a pioneer for digital transformation GFT develops sustainable solutions across new technologies.
• Review and interpret security-related contractual obligations to ensure alignment with the ISMS. • Ensure the ISMS is implemented in accordance with the country’s legal and regulatory requirements. • Coordinate directly with Asset Owners and internal teams to define and implement security controls, processes, and tools. • Support the SOC in investigations and remediation actions for incidents or policy violations. • Collaborate with Data Protection Officers to perform impact assessments and ensure compliance with local data protection laws. • Report to the Regional ISO and the CISO on the effectiveness of security controls and the level of compliance. • Support Asset Owners in client compliance programs. • Coordinate activities to ensure continuity of operations within the defined scope (client, country, program, or department). • Support planning and execution of response and recovery actions in case of disruptions. • Ensure proper documentation of incidents and collaborate with teams involved in crisis situations. • Maintain alignment with client contractual requirements and obligations. • Facilitate communication with internal and external stakeholders when necessary. • Contribute to the continuous improvement of continuity and recovery plans.
Staff Product Manager, AI Security, Data Access Governance and DLP
DropboxDropbox is the one place to keep life organized and keep work moving.
Role DescriptionDropbox is expanding its capabilities in AI-powered security, content access governance, and data loss prevention (DLP) to help SMB and mid-market businesses secure and manage their content with enterprise-grade protection. Following our acquisition of Nira, we have taken the first steps to integrate its data access governance technology into Dropbox Dash. Now, we are focused on deepening this integration across the Dropbox portfolio and expanding our security offering in the broader data access governance, DLP and AI Security markets. We are looking for a Staff Product Manager to lead this next phase — defining the strategy and key capabilities, shaping the roadmap, and scaling a new security business within Dropbox. This is a 0 → 1 opportunity to establish Dropbox as a leader in AI and Data security for SMBs and mid-market companies, bringing AI-driven access governance, insider risk protection, and compliance automation to businesses that need it most. Responsibilities - Build next-generation security products – Shape and deliver innovative solutions by integrating Nira’s governance capabilities into Dropbox and driving a standalone security offering for the broader market. - Lead an AI-driven roadmap – Define and launch intelligent features that use AI and automation to streamline access control, enforce real-time DLP, and proactively detect security risks. - Expand Dropbox’s impact in the market – Identify opportunities in the SMB and mid-market security space, craft a clear product vision, and accelerate adoption with a differentiated value proposition. - Deliver breakthrough product experiences – Partner with engineering and design to launch automated access reviews, AI-powered security insights, and compliance workflows that raise the bar on security. - Turn insights into action – Work directly with customers to uncover their toughest data governance and AI security challenges, and translate those needs into high-impact product features. - Drive seamless execution – Collaborate across engineering, security, compliance, and go-to-market teams to launch products that meet global standards (SOC 2, ISO 27001, GDPR, etc.) and delight customers. Requirements - Hands-on Security Product Expertise – 10+ years of product management experience, including 3+ years building solutions in Access Governance, DLP, DSPM, SSPM, or AI Security. - BS/MS in Computer Science, Engineering, Business, Information Systems, Applied Math or Statistics, or relevant experience. - Deep Domain Knowledge – Experience tackling data and IP protection challenges, especially in Access Management and DLP for Google Workspace, Microsoft OneDrive, Dropbox, Box, or similar SaaS platforms. - Customer-First Mindset – Passion for solving real customer pain points, with a track record of shipping security products that are powerful yet simple to use. - Proven 0 → 1 Builder – You’ve taken security products from idea to launch, driving adoption and impact in environments ranging from enterprise SaaS to fast-moving startups. - AI + Security Innovation – Experience applying AI/ML to security challenges—automating access controls, detecting risks, and strengthening data protection. - Cross-Functional Partner – Comfortable working side by side with engineering, security, GTM, and legal teams, blending technical know-how with product vision to ship great outcomes. Preferred Qualifications - Experience in building and scaling data ingestion systems and data platforms, - Experience working with AI/SaaS products or platforms such as ChatGPT, Gemini, Claude and understanding of data security risks with using AI and SaaS products. - Exposure to access and data security challenges and solutions for using AI agents in enterprise. CompensationUS Zone 1 This role is not available in Zone 1 US Zone 2 $212,700—$287,700 USD US Zone 3 $189,000—$255,800 USD
Role Description Incumbent serves as a Aviation Safety Technician (AST) in a Flight Standards Office providing technical support to Aviation Safety Inspectors (ASIs) and the public. Performs or assists with a wide range of certification, surveillance, and investigation duties requiring research and evaluation in accordance with current FAA safety directives/orders. Tasks are performed following prescribed or established procedures to assist inspectors, investigators, and Flight Standards program officials in their fact-finding or program administration responsibilities and requires basic evaluative judgment. The work performed falls primarily in one of the following categories: - Inspections: Determinations based on visual or other specific inspection techniques, governed by specific procedures. - Technical support: Searching for, gathering, screening, and providing factual information related to inspections or investigations. Duties and Responsibilities - Technical Administration: Provides technical knowledge and support to aviation safety inspectors, the general public, stakeholders, and airmen regarding a wide variety of aviation-related topics. - Extracts safety data and information from FAA records to identify trends affecting aviation safety. - Provides technical assistance and/or support with certification, surveillance, investigation, and/or enforcement, including: - Certification Support: - Provides technical support to ASIs during certification of operators and air agencies. - Reviews airmen certification files for accuracy. - Reviews inspection authorization files for renewal eligibility. - Conducts Operational Color Vision Tests. - Reviews designee management system to determine renewal eligibility. - Compiles data for technical reports. - Surveillance Support: - Assists ASIs with surveillance of aviation events. - Assists in drafting and issuing waivers and authorizations. - Investigation Support: - Drafts Enforcement Investigative Reports (EIR) for review and final approval by an ASI. - Acts as the Point of Contact (POC) for safety assets (PPE) related to accident investigations. - Enforcement Support: Responsible for enforcement functions including conducting violations, voluntary disclosure, suspect illegal charters, incidents, navigation, and altitude deviation investigations. Qualifications - At least one year (52 weeks) of specialized experience equivalent to the (FG/GS-8) level. - Experience gathering and compiling aviation safety data. - Experience analyzing aviation safety information for identifying trends. - Experience preparing technical reports and documents. - Experience conducting or assisting in aviation investigations such as complaints, occurrences, incidents, accidents, and/or violations. - Technical training and/or certification experience applicable to a regulatory aviation environment is preferred. Requirements - US Citizenship is required. - Selective Service Registration is required for males born after 12/31/1959. - Must submit an SF50 (See Required Documents). - Security Requirement: Moderate Risk (5). Completion and favorable adjudication of a background investigation prior to appointment is required. Benefits - Comprehensive benefits package for federal employees. - Access to a range of benefits designed to make your federal career rewarding.
• Provide expert security engineering support to ensure that the NADACS portfolio adheres to DoD and Army cybersecurity policies and frameworks. • Assist in the design, assessment, and implementation of security controls to ensure system compliance with regulatory requirements, such as Risk Management Framework (RMF) and FedRAMP. • Analyze and document existing systems and processes to identify areas for security enhancements and recommend improvements across the NADACS Portfolio. • Collaborate with Program Management Office (PMO) leadership to integrate security requirements within four primary Levels of Effort (LoEs): Staffing, Contract Management, Corporate Governance, and Onboarding/Offboarding efforts. • Perform security assessments and audits to track and monitor compliance with cybersecurity guidelines and training requirements. • Ensure cybersecurity documentation and deliverables are accurate, complete, and delivered according to client and regulatory standards. • Develop alternative information security strategies to address and meet organizational security objectives. • Foster strong relationships with technical stakeholders, clients, and vendors to address and resolve security-related challenges effectively.



