Ntiva, established in 2004, is a leading provider of IT consulting, managed IT services, cybersecurity solutions, and cloud-based technologies. The company is c
Security Engineer - Senior Level
Location
Virginia
Posted
41 days ago
Salary
$81K - $120K / year
Seniority
Senior
Job Description
Security Engineer - Senior Level
Ntiva
Title: Security Engineer (Senior Level) Location: Mc Lean, VA Job Description: Job Category: Technical Requisition Number: SECUR001972 - Full-Time - Hybrid - Locations Showing 1 location Mc Lean, VA 22102, USA Job Details Description Are you looking for limitless career opportunities with a company that values growth, innovation, and teamwork? At Ntiva, we’re more than a Managed Services Provider, we’re a community dedicated to helping each other, our clients, and their businesses thrive both personally and professionally. Ntiva is a culture of people who are passionate about the work…and each other. Our clients view us as an essential part of their teams, relying on us for strategic guidance, fast solutions to complex challenges, and proactive support. With strategic locations across the U.S. and leadership from our founder, Steven Freidkin, we’re on the front lines of a fast-paced industry, facing cybersecurity threats and rapid technology changes together. If you thrive in a dynamic, supportive environment and enjoy going above and beyond, we’d love to meet you. Come explore one of our many opportunities and grow with us! How you’ll make an Impact As a Senior Security Engineer, you serve as the senior technical advisor for high-risk security remediation, planned security infrastructure changes, and limited post containment recovery for GovCon clients. You are responsible for performing risk based technical analysis, sequencing recommendations, and clearly defining change guardrails that protect system stability, compliance posture, and service margins. This role owns engineering judgment and technical recommendations, not just implementation. You are expected to identify unsafe or insufficiently defined work, recommend delays when requirements are not met, and ensure all changes include clear success, validation, and rollback criteria. Location and Work Expectations - This is a hybrid -remote role with approximately 5% on-site work at client sites throughout the US if needed. The specific allocation of remote versus onsite requirements may fluctuate based on business needs. - This role also includes participation in a rotating on-call schedule. What you will be doing - Provide senior level technical recommendations and execution guidance for high-risk remediation and availability impacting security changes. - Analyze and recommend change sequencing, blast radius reduction strategies, rollback feasibility, and validation requirements. - Require defined success criteria and rollback plans prior to execution; formally recommend delay or redesign when requirements are insufficient. - Execute approved proactive security remediation requiring advanced engineering judgment or infrastructure changes. - Perform approved, availability impacting security changes including firewall, firmware, and network security updates. - Implement configuration hardening and security control changes across servers, endpoints, and network infrastructure. - Serve as the senior technical lead for post containment recovery, guiding environments back to a validated steady state following MSSP/SOC containment. - Coordinate technical recovery activities across company stakeholders, and third-party vendors to prevent uncontrolled rebuild work. - Validate remediation outcomes against defined technical success criteria and confirm verified closure of findings. - High‑impact and high‑risk remediation requiring senior engineering analysis and judgment. - Planned firewall, firmware, and infrastructure security updates on an approved cadence. - Availability‑impacting security changes executed with defined rollback and validation steps. - Post‑containment recovery technical leadership for: - Business Email Compromise (BEC) - Malware mitigation/removal (non‑ransomware) - Foreign or impossible login events (nonforensic) - EDR agent deployment, health monitoring, and lifecycle management across all endpoints and servers - EDR Policy configuration, tuning, and optimization aligned to GovCon risk profiles - Implementation, and maintenance of web filtering security policies - Review and investigation of web filtering security events - Review and actioning of MDR threat intelligence and recommendations to enhance client environments - Participation in quarterly client security posture reviews to assess risk trends and control effectiveness - Review of DLP policies and tuning to reduce false positives while maintaining protection efficacy - Review and update of Microsoft Sentinel data connectors - Other duties as assigned You’ll be successful in this role if you have - 5+ years of experience in Security Engineering, Infrastructure Engineering, or Systems Engineering, with ownership of high impact changes. - Demonstrated authority executing availability impacting security changes using disciplined rollback and validation practices. - Strong working knowledge of firewalls, network security devices, and firmware lifecycle management. - Experience with configuration hardening for Windows and Linux servers. - Solid understanding of identity, endpoint, and network security controls, including the use of compensating controls. - Experience leading post incident technical recovery following MSSP/SOC containment, including stabilization and determination of steady state. - Experience supporting GovCon or compliance driven environments (CMMC, DFARS, ITAR, NIST 800171 preferred). - Ability to partner effectively with internal teams, vendors, and client stakeholders. - Strong problem-solving skills with emphasis on stability, predictability, scope enforcement, and verified closure. - Ability to operate under pressure with a tactful, professional demeanor. Required language skills - Ability to communicate professionally, in English, both written and orally - Ability to write business correspondence and process procedures - Ability to effectively present information and respond to questions from groups of managers, clients, and the general public Benefits and Perks - Medical, Dental and Vision coverage for employee and family - 401k + company-matched contributions 4% match on 5% contribution - no vesting period! (Employee and Company contribute after 90 days) - Group Term Life and Accidental Death and Dismemberment coverage (company provided) - Short-Term (voluntary enrollment) and Long-Term Disability coverage (company provided) - Health Savings Account (HSA) Options / PPO Options - Employee Assistance Program - Paid Time Off (PTO) + Volunteer Time Off (VTO) + 8 Paid Holidays + 3 Floating Holidays - Education Reimbursement Program - Generous Employee Referral Program - cash bonus for successful referrals! - Dynamic Recognition and Rewards - Clear Promotion and Advancement Tracks - Work with Industry-Leading Talent The base pay range for this position is expected to be between $81,000.00 and $120,000.00 per year. The base pay offered may vary depending on multiple non-discriminatory factors including, but not limited to, market location, job-related knowledge, skills, and experience. The total compensation package for this position also includes medical benefits, 401(k) eligibility, and PTO. Additional details of participation in these benefit plans will be provided if an employee receives an offer of employment. FLSA Status: Salaried, Exempt Work Authorization Criteria This position requires U.S. citizenship due to federal government contract obligations and access to secured information systems. Workspace Requirements and Remote Work Policy Team members must establish a dedicated safe workspace that is free from distractions, hazards, and that is secure from unauthorized access. This includes following Ntiva’s IT User and Security Policies that include but are not limited to password-protecting all equipment, keeping confidential and proprietary documents secure, refraining from using public Wi-Fi, having adequate arrangements in place to avoid significant interruptions from caregiving responsibilities during work hours (except in emergency situations with manager approval). Any remote work away from a team member’s normal expected dedicated safe workspace must be requested by team member, is subject to review by management, and must adhere to Ntiva policies and procedures. Our Commitment to a Diverse Workforce At Ntiva, we are committed to creating and maintaining a diverse, inclusive, and welcoming work environment for all employees and job applicants. We firmly believe that a diverse workforce fosters a wider range of perspectives, experiences, and ideas that lead to increased creativity, innovation, and problem-solving capabilities. As an equal opportunity employer, we actively seek to recruit and retain a diverse workforce that reflects the communities we serve. We prohibit discrimination of any kind, including but not limited to race, color, religion, gender, gender identity or expression, sexual orientation, marital status, national origin, age, hair length, protective hairstyles, organ donor status, disability, veteran status, or any other legally protected status and comply with all applicable laws governing nondiscrimination in employment. Equal Opportunity Employer This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Cyber Security Technical Writer
ICFFounded in 1969, ICF is a global advisory and technology services company headquartered in Reston, Virginia. It delivers data-driven solutions across energy, en
Lead the refinement and quality assurance of cybersecurity content, ensuring clarity and accuracy, while collaborating with subject matter experts to translate complex technical concepts into actionable guidance for diverse audiences.
Role Description American Express Travel Related Services Company, Inc. seeks Sr. Cybersecurity Architects to develop plans and strategies for information security tools, processes, and programs. At American Express, our culture is built on a 175-year history of innovation, shared values, and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleagues. - Deliver differentiated products - Provide world-class customer service - Operate with a strong risk mindset - Uphold our brand promise of trust, security, and service As part of Team Amex, you’ll experience our powerful backing with comprehensive support for your holistic well-being and many opportunities to learn new skills, develop as a leader, and grow your career. Here, your voice and ideas matter, your work makes an impact, and together, you will help us define the future of American Express. Company Description
Senior Engineer, Security Operations
ACVACV is a technology company that has revolutionized how dealers buy and sell cars online. We are transforming the automotive industry. ACV Auctions Inc. (ACV) has applied innovation and user-designed, data-driven applications and solutions. We are building the most trusted and efficient digital marketplace with data solutions for sourcing, selling, and managing used vehicles with transparency and comprehensive insights that were once unimaginable. We are disruptors of the industry and we want you to join us on our journey.
Role Description The Senior Operations Engineer is a critical role responsible for the overall security posture of ACV Auctions Threat landscape. Reporting directly to the Director of Cybersecurity Operations, this individual will own and mature the Security Operations program, integrating security practices throughout the environment. This position requires a self-motivated and highly organized engineer with excellent communication and technical skills. - Lead proactive, hypothesis-driven threat hunting across endpoint, cloud, and identity environments - Develop and refine detection logic, correlation rules, and behavioral analytics within SIEM and EDR platforms - Map adversary tactics, techniques, and procedures (TTPs) to MITRE ATT&CK to improve detection coverage - Analyze threat intelligence and emerging attack patterns to strengthen defenses - Lead and scale cybersecurity operations across enterprise or multi-tenant environments - Oversee incident triage, investigation, containment, and remediation - Act as escalation point for high-severity incidents - Improve alert fidelity and reduce false positives through tuning and automation - Mature the alert and incident management tracking systems - Standardize workflows and playbooks to ensure operational consistency - Design and implement incident response frameworks and playbooks - Lead response efforts for advanced threats across environments supporting up to large user bases - Conduct root cause analysis and post-incident reviews - Automate response actions to reduce mean time to detect/respond (MTTD/MTTR) - Secure multi-cloud environments (AWS, GCP) through posture management and configuration monitoring - Detection of Zero Trust principles and violations across identity and access management systems - Strengthen controls within platforms such as CASB and DLP solutions - Automate workflows and security operations processes for tracking the remediations actioned against the environment - Integrate tooling and orchestrate response using SOAR or similar platforms - Continuously improve detection capabilities and operational efficiency - Deliver AI enabled automations and tooling for the ACV Security Operations Center - Deliver executive-level reporting (MBRs/QBRs) on security posture, threats, and risk - Translate technical findings into business-relevant insights to present to external stakeholders - Collaborate cross-functionally with IT, engineering, and leadership teams - Perform additional duties as assigned. Qualifications - 8+ years’ experience - Minimum of a 4 year Bachelor’s degree - Strong understanding of security frameworks and best practices (NIST CSF, ISO 27001, CIS Controls) - Extensive experience with cloud security, with a strong focus on securing applications deployed in AWS and/or GCP environments - Experience with modern software development including Agentic and Generative AI techniques - Familiarity with adversarial AI/ML techniques and their protections, such as Interference attacks and others in the MITRE ATLAS framework - Excellent communication, interpersonal, and leadership skills - Ability to work effectively in a remote environment and manage geographically dispersed teams - Knowledge of CASB, DLP and SASE technologies - Proven ability to be agile and work effectively in a dynamic environment - Demonstrated ability to perform under pressure and respond rapidly to emerging incidents and situations - Excellent coordination, project management, and organization skills - Practical hands-on experience engineering and implementing data security controls in cloud environments - Linux and Kubernetes/Container management and security - DevOps code based implementation and management - Knowledge of AWS including but not limited to S3, Lambda, RDS, EC2 and AWS Security Center - Understanding of TCP/IP Networking including knowledge of Protocols and Services - Overall understanding of the Security domain, compliance, business, risk, ops etc. Requirements - Strong understanding of security frameworks and best practices - Extensive experience with cloud security - Experience with modern software development - Excellent communication and leadership skills - Ability to work effectively in a remote environment - Knowledge of CASB, DLP and SASE technologies - Proven ability to be agile in a dynamic environment - Practical hands-on experience in cloud environments Benefits - Multiple medical plans including a high deductible, low cost health plan - Company-sponsored (paid) Short-Term Disability, Long-Term Disability, and Life Insurance - Comprehensive optional benefits such as Dental, Vision, Supplemental Life/AD&D, Legal/ID Protection, and Accident and Critical Illness Insurance - Generous paid time off options, including uncapped vacation days, sick days, paid company holidays, floating holidays, parental leave, bereavement leave, jury duty leave, and voting leave - Employee Stock Purchase Program with additional opportunities to earn stock in the Company - Retirement planning through the Company’s 401(k)
Principal Solutions Executive - Security - East
CDWCDW Corporation is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers in the United States, the United Kingdom and Canada. A Fortune 500 company and member of the S&P 500 Index, CDW helps its customers to navigate an increasingly complex IT market and maximize return on their technology investments. For more information about CDW, please visit www.CDW.com. Our broad array of products and services range from hardware and software to integrated IT solutions such as security, cloud, hybrid infrastructure and digital experience.
Description At CDW, we make it happen, together. Trust, connection, and commitment are at the heart of how we work together to deliver for our customers. It's why we're coworkers, not just employees. Coworkers who genuinely believe in supporting our customers and one another. We collectively forge our path forward with a level of commitment that speaks to who we are and where we're headed. We're proud to share our story and Make Amazing Happen at CDW. CDW Security is the business unit within CDW, Inc. built to help customers feel confident as they address security challenges and strive for impactful business outcomes. We maintain industry-leading expertise in the areas of strategy, risk, compliance, identity and access management, data privacy, secure infrastructure, and workforce development, to name a few. The products and services related to this expertise provide CDW clients everything needed to develop and mature effective security programs. As part of the Security Solutions Executive team, you will be responsible for selling security services and products. The Security Solutions Executive is expected to enhance CDW Security's presence, market share, and revenue growth in the cybersecurity market. Specifically, you will support the sales team with full sales lifecycle management through strategic account planning, research, opportunity management, relationship-building, partnering with services teams and OEM vendors, pursuit, and closure. What you will do: * Develop and execute successful strategies that expand CDW Security's customer base and achieve bookings, revenue, and gross profit targets. * Establish a detailed, comprehensive understanding of all capabilities, service offerings, value proposition, market positioning, selling strategy and process, as well as key differentiators. * Cultivate productive relationships with key personnel in current and targeted accounts. * Identify, engage, qualify, develop, and earn new clients. * Manage, support, and grow relationships as part of the extended sales team with prospects and clients as a consultative seller. * Network with a broad range of client organizations and leadership in key fields, including: Information Technology, Information Security, Finance, Internal Audit, Data Privacy, Compliance, and Legal, Enterprise Risk Management, Procurement / Supply Chain Management. * Proactively coordinate with other CDW Security resources to drive sales cycles, meet company objectives, and exceed client expectations. These key internal resources include Subject Matter Experts, Practice Leadership, Sales Management and Marketing. * Build strong relationships with the partner community to identify opportunities for CDW and those partners. * Understand industry landscapes and follow trends that impact our clients' business risk, strategic decision-making, and budget planning and expenditure. * Provide accurate sales pipeline updates and forecasts. * Proactively populate and maintain all information in Salesforce. * Provide onboarding support and mentorship to entry level Security Solutions Executives. * Enhance CDW Security's and your personal brand through participation at industry events, speaking engagements, blogging and other forms of acceptable public communication. * Proactively work with marketing to develop regional events that attract senior leadership from key accounts and prospects. What we expect of you: * Bachelor's Degree and 10+ years experience identifying opportunities and full lifecycle management for security services and products and/or equivalent experience as a security practitioner OR 14+ years experience identifying opportunities and full lifecycle management for security services and products and/or equivalent experience as a security. * Mastery of at least four of the security focus areas in the security portfolio: Identity and Access Management, Security Program Development Privacy, Risk and Compliance, Third-Party Risk Management, Threat and Vulnerability Management, Cyber Workforce Development, Cloud Security, Secure Infrastructure, Physical Security, Emerging Security Technologies.= * Experience with enterprise sales, with both strategic planning and day-to-day execution. * Proven performance record with demonstrated year-over-year metrics. * Successful record of meeting or exceeding sales goals. * Ability to take personal ownership of professional goals and achieve financial targets. * Strong ambition and sense of urgency. * Energetic networker and relationship-builder. * Ability to work with and effectively coordinate across extended internal teams and partners. * Excellent, professional written and verbal communication and interpersonal skills. * Ability to travel as needed for customer meetings and to develop/maintain partner relationships. Pay range: $100,000 - $140,000, depending on experience and skill set Annual bonus target of $30,000 subject to terms and conditions of plan Additionally, uncapped commission subject to terms and conditions of plan Benefits overview: https://cdw.benefit-info.com/ Salary ranges may be subject to geographic differentials * CDW is committed to being an AI-fluent organization * We're looking for people who bring curiosity, a learner's mindset, and a willingness to engage with ever-evolving technology and tools. We value adopting AI as a partner, openness to experimentation, and a shared interest in learning together on AI. Our goal is to create a culture where AI enhances- not replaces- human creativity and decision-making. You don't need to be an expert today; what matters is your readiness to explore, adapt, and grow with us as we integrate AI responsibly and effectively into our work.Additionally, CDW is committed to fostering an equitable, transparent, and respectful hiring process for all applicants. During our application process, our goal is to understand your experience, strengths, skills, and qualifications. As an AI forward company, we see AI not just as a tool, but as a catalyst for new ways of thinking, creating, and communicating. We encourage candidates to embrace an AI mindset, one that's curious, adaptive, and ready to explore what's possible. We welcome thoughtful use of AI to expand your perspective and elevate how you share your story, while ensuring your application remains rooted in your own background, judgment, and voice. * About Us * CDW is a Fortune 500 technology solutions provider that helps businesses, government, education, and healthcare organizations achieve what's possible through technology. What makes CDW different isn't just what we do- it's how we do it. At CDW we act as one- building trust, speaking candidly, and working together to achieve more. We play to win- focusing on what matters most and delivering for our customers. And we think forward- staying curious, moving fast, and continuously learning. We believe meaningful work happens when people feel supported, heard, and empowered to contribute. That's why we think of ourselves as coworkers, not just employees- working together to solve complex challenges and deliver real impact for our customers and communities. As a full-stack, full-lifecycle technology partner, CDW brings deep expertise, strong relationships, and broad industry knowledge to help turn ideas into outcomes. When you join CDW, you become part of a collaborative environment where your work matters, your growth is supported, and your contributions help shape what's next. Together, we deliver the full promise of what technology can do. * Together, we Make Amazing Happen. * CDW is an equal opportunity employer. All qualified applicants will receive consideration for employment without regards to race, color, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status or any other basis prohibited by state and local law.


