Security Engineer
$78.02k - $119.19kSargent & Lundy
Description
Sargent & Lundy is a leading consulting engineering firm specializing in the power and energy sectors. Since 1891, we have provided comprehensive engineering, design, and consulting services for both traditional and renewable power generation, grid modernization, nuclear power, and beyond. Our mission is to help clients achieve their energy goals effectively by leveraging advanced technologies and adopting sustainable practices.
Role Overview
We are looking to hire a senior fully technical, hands-on Security Engineer who can take a security requirement and turn it into a working control, then tune it, monitor it, and improve it over time . You will be responsible for operating the technical security controls and platforms that protect Sargent & Lundy, our clients, and our partners . This is not a security governance, policy-writing, or process management role.
You will work side by side with the IT Infrastructure, Cloud Engineering, Application teams, SOC, and GRC. Controls you build will support and enhance our security posture and aligns with ISO 27001, NIST 800-171, and CMMC 2, and protect sensitive data .
Key Responsibilities
Identity and Zero Trust
Establish, enforce and operate the full IAM lifecycle in Microsoft Entra: SSO, MFA, conditional access, lifecycle workflows, entitlement management, and privileged access integration.
Build and tune Zero Trust controls across identity, device, network, and application layers, including conditional access policies, and continuous verification.
Partner to i ntegrate IAM with the rest of the security stack so that XSIAM, CASB, DLP, and EDR/ XDR all see consistent identity signal .
Run technical access reviews and tighten entitlement design where you find drift.
Cloud Security: Azure and Oracle Cloud
Establish and enforce cloud security controls in Azure and Oracle Cloud Infrastructure: landing zones, network security groups, identity, key management, encryption, logging, and workload protection.
Operate CSPM tooling against both clouds, triage findings, and provide secure configurations at the cloud resource level alongside the cloud engineering team.
Partner to b uild secure-by-default templates so cloud teams can deploy without round-tripping every change through security.
Palo Alto Security Platform
Understand and m anage Prisma Access (SASE) for remote users and sites: tunnels, security policy, SSO integration, and traffic forwarding rules.
Understand and partner with SOC to tune Palo Alto XSIAM, including data source onboarding, parser tuning, correlation rules, detection content, and SOAR playbooks that feed Unit 42.
Data Protection and Microsoft Purview DLP
Implement Microsoft Purview at a deep technical level: Information Protection, DLP, Insider Risk Management, sensitivity labels, and auto-classification.
Author and tune DLP policies across endpoint, Outlook and Exchange, Teams, SharePoint, OneDrive, and Egnyte. Reduce noise without missing real exposure.
Handle DLP incident triage, label troubleshooting, and policy iteration based on what production actually shows you.
AI Usage Security
Implement technical controls for safe AI usage across the company: data-exposure prevention for generative AI tools, prompt and usage monitoring, and integration with the existing DLP and CASB stack.
Evaluate emerging AI risks (prompt injection, model abuse, sensitive-data leakage, shadow AI) and design configurations that mitigate them in our environment.
Partner with product and engineering teams shipping AI-enabled features so the controls land at the right layer.
Architecture and Design Reviews
Review the security design of new SaaS, IaaS, PaaS, and in-house applications and produce specific, actionable findings.
Work with project teams early so controls are designed in, not retrofitted after go-live.
This position offers the flexibility of a hybrid schedule with the expectation of 3 days per week in our downtown Chicago office, and 2 days remote from home.
Qualifications
Required Experience
Bachelor's degree in Computer Science , Information Systems, Cybersecurity, or a related field. Equivalent professional experience will be considered.
5+ years of hands-on Security Engineering experience with demonstrated ownership of enterprise security platforms in production. Pure governance, audit, or policy-only backgrounds will not match the work in this role.
Deep, hands-on IAM lifecycle experience with Microsoft Entra (SSO, MFA, conditional access, lifecycle workflows) and applied Zero Trust implementation.
Hands-on cloud security experience with Microsoft Azure (required) and Oracle Cloud Infrastructure (strongly preferred), including technical configuration of native security services.
Hands-on configuration and operation of the Palo Alto security platform: Prisma (Access and Cloud), Cortex XDR, and XSIAM.
Implementation-level experience with Microsoft Purview for DLP, including policy authoring, classification, labeling, tuning, and incident handling.
Working knowledge of AI risks (data exposure, prompt injection, model misuse, shadow AI) and the controls used to mitigate them in an enterprise setting.
Comfort working across on-prem and cloud environments and across Windows, macOS, and Linux endpoints.
Familiarity with compliance frameworks (ISO 27001, NIST 800-171, CMMC Level 2, SOC 2) and the ability to translate a control requirement into a working configuration.
Certifications: CompTIA Security+ or (ISC)² SSCP or PCCSE (Palo Alto Networks Certified Cloud Security Engineer) an equivalent foundational technical certification.
Preferred Experience
Microsoft Azure Security certification (AZ-500 or equivalent).
Microsoft Purview Information Protection and DLP certification or equivalent.
Oracle Cloud Infrastructure security credentials.
Microsoft Cybersecurity Architect (SC-100),
CISSP or CCSP .
Soft Skills
Strong written and verbal communication . You can walk an engineer through a config in one conversation and a business stakeholder through the impact in the next.
Bias for action. You would rather build a working control and iterate than spend weeks producing a perfect document.
Comfort with ambiguity. You can take a vague security ask and break it into a concrete configuration plan.
Collaboration across teams. You will work daily with SOC, IT Infrastructure, Cloud, App Dev, and GRC, and the role only works if those partnerships do.
Operational discipline. You document what you build, version your configurations, and leave the next engineer better than you found it.
We do not sponsor employees for work authorization in the U.S. for this position.
Award-Winning Benefits
At Sargent & Lundy, we care about the health and well-being of our employees. Our commitment extends beyond the workplace, offering comprehensive healthcare plans and generous paid time off to support our team members in every aspect of their lives. We understand the importance of work-life balance, which is why we are proud to provide competitive, award-winning benefits. Our dedication to employee satisfaction has earned us the prestigious Top Workplaces Culture Excellence Award for compensation and benefits in 2022, 2023, and 2024.
Health & Wellness Financial Benefits Work-Life Balance
Health Plans: Medical, Dental, Vision
Life & Accident Insurance
Disability Coverage
Employee Assistance Program (EAP)
Back-Up Daycare
FSA & HSA
401(k)
Pre-Tax Commuter Account
Merit Scholarship Program
Employee Discount Program
Corporate Charitable Giving Program
Tuition Assistance
First Professional Licensure Bonus
Employee Referral Bonus
Paid Annual Personal/Sick Time (PST)
Paid Vacation
Paid Holidays
Paid Parental Leave
Paid Bereavement Leave
Flexible Work Arrangements
Compensation Range
$78,016 - $119,191
Transparency Statement
Sargent & Lundy discloses compensation ranges that comply with all local and state regulations. The total compensation package for eligible positions will include a base salary or an hourly rate and a comprehensive benefits package, reflecting our commitment to rewarding performance and supporting the overall well-being of our employees. Individuals may also be eligible to participate in our yearly discretionary bonus.
Awards & Recognition
Equal Opportunity
Sargent & Lundy is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability status, protected veteran status, or any protected status as defined by applicable law.
CityChicago
StateIL
CountryUnited States
Area of InterestInformation Technology
TypeFull Time - Regular
Job ID2026-24559
Business GroupCEO Group
DepartmentInformation Security
$104k - $156k
...Posting Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and operate security controls that protect Relativity's employee endpoints and the enterprise systems they access. You will help...SuggestedRemote work$95k - $130k
...fully-customizable, end-to-end software solution to automate securities-based lending from origination through the life of the loan. By... ...We are seeking a highly motivated and detail-oriented Security Engineer to help secure our securities-backed lending SaaS platform....SuggestedInternshipFlexible hours- ...Security Engineer -Level L2 Arete Technologies, Inc. offers a set of innovative Consulting and Outsourcing services, bridging the gap between requirements and outputs of various dexterous and facile companies worldwide. The thrust of providing global deliverables with...SuggestedRemote workWorldwide
$100k - $160k
...OAuth, and conditional access. -Design and maintain enterprise security platforms that enforce security policies across endpoints,... ...email compromise. -Collaborate with infrastructure and cloud engineering teams to implement security controls across hybrid environments...SuggestedPermanent employmentTemporary workWork at officeFlexible hours- ..., DHCP and WINS, including hosts and lmhosts files • Expert level knowledge of protocols such as: Kerberos, NTLM, TCP, UDP, IPv4, IPv6, SAML, LDAP and Secure LDAP • Expert level knowledge of Windows server operating systems • Knowledge of Semperis ADFR and DSP...Suggested
- ...Security Engineer Location: Chicago, IL or New York, NY (Hybrid) Overview Our client is seeking a Security Engineer to oversee the protection of cloud infrastructure, corporate systems, and production environments within a regulated financial technology...
$46.64 - $72.29 per hour
...Security Engineer III - Identity And Access Management Location: Illinois / Indiana / Wisconsin | Hybrid (Primarily Remote, Occasional Onsite) Work Schedule: Remote 90% with some light travel on-site for meetings and go-live, and 1 week rotations of 24/7 support...Full timeRemote workMonday to Friday$41.64 - $64.54 per hour
...offered is determined by a candidate's expertise and years of experience, among other factors.**Position Highlights:*** Position: Security Engineer III* Hourly Pay Range: $41.64 - $64.54. The hourly pay rate offered is determined by a candidate’s expertise and years of...Hourly payFull timeFor contractorsRemote workMonday to FridayFlexible hours$120k - $140k
...Firewall Security Networking Engineer Publicis Re:Sources is the backbone of Publicis Groupe, the world's most valuable agency group. We are the only full-service, end-to-end shared service organization in the industry, enabling Groupe agencies to do what they do best...- ...in Chicago is seeking a Director of Human Resources to enhance security measures for its securities-backed lending SaaS platform. The... ...secure SDLC, and vulnerability management while collaborating with engineering and business teams. Candidates should have a relevant bachelor...
$175k - $215k
...Network Security Engineer Waymo is an autonomous driving technology company with the mission to be the world's most trusted driver. Since its start as the Google Self-Driving Car Project in 2009, Waymo has focused on building the Waymo Driver—The World's Most Experienced...Full timeRemote work- ...Network Security Engineer III, Chicago, IL The Network Security Engineer III position is part of a collaborative team that provides technical solutions and support to caregivers and employees across all locations. Essential responsibilities include providing solutions...Work experience placementCasual workLocal areaAfternoon shift2 days per week
$80k - $92k
...with occasional travel to USA, and in Canada. Role Description: We are looking for a highly qualified Senior Network Security Engineer to join our Network & Security Business Unit. The professional will be responsible for the design, implementation, maintenance...Local areaRemote work$90 - $100 per hour
...We are seeking a Senior Network Security Engineer with deep expertise in Cisco Identity Services Engine (ISE) and identity-driven network segmentation to support and enhance a modern enterprise security architecture. This role will focus on designing, implementing, and...Hourly payLive inRemote work3 days per week$140k - $165k
...thinking, rapidly growing organization with helping people as its number one goal, we want to hear from you. The Role As a Senior Security Engineer, you'll harden the security posture of our AWS environment and our software development pipeline. Cloud Security and...Full time$117k - $158k
...Senior Network Security Engineer Wintrust provides community and commercial banking, specialty finance and wealth management services through its 16 bank charters and nine non-bank businesses. Wintrust delivers the sophisticated solutions of a large bank while staying...Temporary workFlexible hours- ...Senior Security Engineer Chicago Overview: The Senior Security Engineer works in Optiv's 24x7x365 Security Operations Center as a member of the Managed Security Services team. The Senior Security Engineer uses technical knowledge on a number of security technologies...
- ...Network Security Engineer The Network Security Engineer will have practical, hands-on experience with all aspects of network security and its management in an enterprise environment. This role is expected to provide strong leadership and relevant recommendations with...Night shift
$100k - $138k
...work that helps drive global business, investment and innovation forward. What You'll Do The Senior Physical Security Engineer is responsible for the technical implementation, configuration, testing, and ongoing support of integrated physical security...Work at officeLocal areaRemote workWorldwideFlexible hours- ...POA&M tracking activities, supporting remediation efforts and preparation of recurring cybersecurity scorecard data. - Monitor security tools and alerts, performing initial triage and escalating issues in accordance with defined processes. - Maintain and update incident...Minimum wageContract workTemporary workWork experience placementRemote work
- ...Security Operations - Senior Security Engineer Reporting to the Team Lead, Security Operations Engineering, the Security Operations – Senior Security Engineer will be part of a team of highly specialized engineers dedicated to solving complex, security specific challenges...Visa sponsorship
$131k - $169k
...Senior Security Engineer Seeking a development & cloud focused Senior Security Engineer to join our expanding security team. The ideal candidate will have passion for AppSec, Cloud and AI. They will be a skilled communicator and relationship builder capable of promoting...Work at officeWork from homeFlexible hoursDay shift$110k - $150k
...Job Description Job Description Sr. Network Security Engineer – Direct Hire/Local Field Support 4755 CHI Healthcare Infrastructure | Zero Trust | Multi‑Vendor | High‑Visibility Role Locations: Chicago - Remote-first with occasional onsite visits to local MSP...Local areaRemote workNight shift$95k - $130k
...A technology company in Chicago is seeking a motivated Security Engineer to enhance the security of its SaaS platform. The role involves working on application security, managing vulnerabilities, and integrating security into development workflows. Ideal candidates will...Flexible hours- ...industry. This position is remotely based. We are unable to offer work sponsorship for this role. We are seeking a Sr. Security Engineer who will be responsible for providing guidance and improving the organization's security strategy as a security generalist. This...Casual workLocal areaRemote workFlexible hours
$72k - $141k
...Senior Security Engineer, Platform Security Tooling & AI You have a clear vision of where your career can go. And we have the leadership to help you get there. At CNA, we strive to create a culture in which people know they matter and are part of something important...Work experience placement$155.58k - $320.32k
...Design and build out our rules, processes, and platform for our secure development lifecycle. Deliver and review code that is well-... ...We’re Looking For Bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent experience. 5+ years of experience...Work at officeLocal areaRelocationRelocation package$108.25k - $130k
...friends and family still call for tech advice, this might be a great team for you. WHERE YOU’LL FIT WITHIN THE TEAM The SaaS security engineer will lead and scale our SaaS security program, with primary ownership of our SSPM platform and related initiatives. The role is...Full timeWork experience placementWork at office1 day per week- A leading tech recruitment firm is seeking a Senior Executive Recruiter for a full-time role in Chicago. This hybrid position requires expertise in privileged access management solutions, particularly with tools like CyberArk and HashiCorp Vault. The successful candidate...Full time
$60k - $70k
Zachary Piper Solutions is seeking a Communications Network Engineer in Chicago, IL to support secure IT solutions for federal customers. The ideal candidate will have 4 years of experience in enterprise networks, strong skills in LAN/WAN/BAN administration, and relevant...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!
- security infrastructure engineer Chicago, IL
- senior cloud security engineer Chicago, IL
- senior application security engineer Chicago, IL
- lead security engineer Chicago, IL
- physical security engineer Chicago, IL
- security engineering manager Chicago, IL
- endpoint security engineer Chicago, IL
- sr information security engineer Chicago, IL
- senior security operations engineer Chicago, IL
- IT security engineer Chicago, IL


