Principal Cyber Security Engineer, Technology and Digital
Application Security
Cloud Platforms
Cloud Security
Cloud Security Architecture
Cloud Security Assurance
Data Security
Engineering
Identity and Access Management
Incident Response
Information Security
InfoSec
Security
Security Certifications
Security Operations
Security Standards
Security Testing
Technical Lead
Job Description
In this on-site Florida role, you will lead security planning and execution to protect data, systems, and networks across on-prem and cloud environments.
Responsibilities
- Plan, implement, manage, monitor, and upgrade security measures for data, systems, and networks on premise and in the cloud
- Design, implement, maintain, oversee, and upgrade security controls required to protect organizational infrastructure
- Evaluate security needs and establish best practices and standards accordingly
- Lead and support team members with troubleshooting for security and network issues
- Respond to system and network security breaches and oversee others during breach response
- Troubleshoot network and security issues and incidents
- Guide others in testing and identifying network and system vulnerabilities
- Lead others to routinely conduct penetration testing and drive security validation through testing and scans
- Enable appropriate security controls to protect the organization’s data and infrastructure
- Communicate and report to relevant internal departments
Requirements
- 8+ years of work experience producing clean, high-quality code in one or more OOP language(s): Java, .NET, Python, or JavaScript frameworks
- Familiarity with cloud security deployment and implementation issues; AWS preferred
- Experience manually auditing source code to identify security issues and remediate programming security weaknesses
- Proven ability to understand, replicate, remediate OWASP TOP 10 vulnerabilities and assess impact
- Experience using proxy tooling such as Burp, ZAP, or Fiddler
- Ability to define enterprise security architecture standards and address common API security risks, including OAuth and JSON Web Token (JWT)
- Familiarity with CI/CD pipelines, build systems, and containerized architecture
- Plus one or more security certifications: OSCP, CSSLP, GWAPT, CISSP, eWPT, CEH, or similar
- Mobile application penetration testing experience is a plus
- Experience across information security operations, including vulnerability management, risk management, computer and network security, authentication and authorization, security protocols, and applied cryptography
- Experience guiding others to implement and support information security policies, procedures, and practices for company-wide computing and networking systems
- Ability to train others in security procedures and incident resolution
Technologies
- Java, .NET, Python, JavaScript frameworks
- AWS
- Burp, ZAP, Fiddler
- OWASP TOP 10
- OAuth, JSON Web Token (JWT)
- CI/CD pipelines
- Containerized architecture
- OSCP, CSSLP, GWAPT, CISSP, eWPT, CEH
Location and Compensation
- Location: Florida (onsite)
- Salary: USD 144,738 - 188,159 per year
- Education: Bachelors
Benefits
- Career growth and development opportunities with clear pathways and ongoing support
- Comprehensive health and wellness resources beyond traditional benefits
- Wellness program that can help employees eliminate their medical plan deductible to reduce out-of-pocket healthcare costs
- Tuition reimbursement to support continued learning and advancement