M&A Security Engineer
Job Description
In this role, you will lead information security initiatives for organizations joining Cognizant through mergers and acquisitions. Working with the M&A Security Insertion and Integration Team, you will strengthen security posture by managing endpoint and identity security, handling incident and vulnerability remediation, and administering key security tooling.
Role Summary
You will support security insertion and integration activities for newly acquired companies. Your focus will include endpoint and identity security management, monitoring and remediating security incidents and workstation vulnerabilities, and administering endpoint security and management technologies.
Responsibilities
- Strengthen the security posture of acquired entities by supporting security insertion and integration activities.
- Manage endpoint and identity security, including access reviews, authentication support, multifactor authentication enrollment, workstation compliance, security updates, and vulnerability remediation.
- Monitor and remediate security incidents and workstation vulnerabilities using Microsoft 365 Defender, Microsoft Defender for Endpoint, and Microsoft Sentinel.
- Administer endpoint security and management technologies, including Microsoft Intune, Mosyle, JAMF, and related tools.
- Assess security controls and configurations; recommend infrastructure improvements; develop progress reports; and communicate security concerns and events to the M&A Security Insertion and Integration Team lead and acquired entity security leadership.
- Review user and administrative access periodically and remove permissions no longer necessary.
- Examine simulated and realistic phishing emails and implement protections against malicious domains.
- Assist with implementation of system security configurations.
- Monitor software currency across operating systems, browsers, and other workstation applications.
Required Qualifications
- Three to five years of progressive information security experience across areas such as application security, infrastructure security, identity and access management, vulnerability management, cyber threat management, security architecture, or information technology risk management.
- A bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent professional experience.
- Experience implementing and maintaining information technology and security controls across complex networks, systems, applications, and infrastructure.
- Proficiency in endpoint security and management, identity management, multifactor authentication, and security information and event management technologies.
- Experience monitoring, managing, and tuning core security controls.
- Knowledge of information risk management frameworks, regulations, data-protection guidelines, security standards, and industry best practices.
- Ability to understand, build, and document complex information security designs provided by architecture teams and apply confidentiality, integrity, and availability principles.
- Ability to incorporate security designs and technologies into new and legacy environments, including environments undergoing technology transitions or upgrades.
- Broad knowledge of IT systems, networking and security components, applications, operating systems, and risk-mitigation controls.
- Technical aptitude and critical-thinking skills, including ability to identify security risks, resolve complex problems, and recommend appropriate controls.
- Ability to communicate technical risks clearly to IT business leaders and senior management.
- Strong written and verbal communication, organization, time-management, and multitasking skills.
- Experience working with global teams across time zones, cultures, and languages.
- Proficiency with word-processing, spreadsheet, and presentation software.
- A strong sense of ownership and alignment with Cognizant values: Work as One, Dare to Innovate, Raise the Bar, Do the Right Thing, and Own It.
- CISSP, CISM, or another relevant, industry-recognized information security certification.
- A graduate degree in Computer Science, Engineering, information security, or a related field.
- Experience with Microsoft Intune, Mosyle, JAMF, Microsoft Defender for Endpoint, Microsoft 365 Defender, or Microsoft Sentinel.
- Knowledge of controls such as web application firewalls, intrusion detection and prevention systems, and application allowlisting.
- Work model: East Coast preferred.
Preferred Technologies
- Microsoft 365 Defender
- Microsoft Defender for Endpoint
- Microsoft Sentinel
- Microsoft Intune
- Mosyle
- JAMF
Location and Work Model
San Jose, CA (hybrid). This is a hybrid position requiring 3 days a week in the Cognizant office. Work model is East Coast preferred.
Compensation
- Annual salary: USD 105,000 - 115,000, depending on experience and other qualifications.
- Eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.
Application Details
- Applications accepted until October 21, 2026.
Benefits
- Medical/Dental/Vision/Life Insurance
- Paid holidays plus Paid Time Off
- 401(k) plan and contributions
- Long-term/Short-term Disability
- Paid Parental Leave
- Employee Stock Purchase Plan