Sr. CyberSecurity Engineer
Think Systems, Inc.
100% Remote: Preferred locations: Columbus, OH, Cincinnati, OH, Richmond, VA or Dallas, TX.
EST OR CST required. Think Consulting is a national technology and operations consulting firm partnering with organizations to build the people, process, and technical capability behind their growth. We've been engaged by Our Client - a fast-scaling, multi-operating-company enterprise - to identify a Senior Cyber Security Engineer who can build a real engineering bench around a maturing security program. Why This Role Exists
Our Client is scaling its technology estate faster than its security controls were originally built to carry - ERP consolidation in flight, a new enterprise data platform, AI assistants rolling out, and a growing footprint of field-service and operational technology (OT) systems across multiple business units. Security today is delivered through a mix of cloud-native tooling, a managed detection provider, and fractional/vCISO oversight. What's missing is a deep, hands-on engineering bench that owns the controls end to end.
The Senior Cyber Security Engineer is the senior technical practitioner in that function - the person who designs, builds, and operates Our Client's preventive and detective controls across identity, endpoint, email, cloud, network, and data protection; hardens new environments as the business stands them up; leads incident response on the technical side; and turns audit and insurance requirements into implemented configuration rather than documented intent.
This is a builder's role in a high-velocity environment. New business units and acquisitions arrive with their own tenants, tooling, and gaps. Success here is measured in controls that are deployed, monitored, and evidenced - not in policy binders or dashboards nobody acts on. What You'll Own
Security Architecture & Engineering
Technical Environment Layer Platform / Tooling Identity Modern cloud identity platform - conditional access, MFA, PIM, identity protection Endpoint & Email Enterprise EDR/XDR and email security suite Detection & Response Cloud-native SIEM and XDR; 24x7 managed detection and response partner Cloud & Infrastructure Major public cloud platform; hybrid Windows and Linux estate Data & AI Governance Enterprise data governance platform - DLP, sensitivity labeling, model and prompt governance Data Platform Modern cloud data lakehouse/warehouse platform Vulnerability Management Enterprise vulnerability scanning, attack surface management, penetration testing partners Network Firewall, secure edge and remote access, segmentation across business unit sites Business Systems ERP, financial, and integration platforms across multiple business units Field Service & OT Field-service systems, fleet telematics, and connected field devices Candidates with deep Microsoft security-stack experience (Entra ID, Defender XDR, Sentinel, Purview) will be especially well-matched, but the core requirement is enterprise-grade security engineering depth - not a specific vendor stack. What You Bring
Required:
How We'll Measure Success in Year One
Who Thrives in This Role
EST OR CST required. Think Consulting is a national technology and operations consulting firm partnering with organizations to build the people, process, and technical capability behind their growth. We've been engaged by Our Client - a fast-scaling, multi-operating-company enterprise - to identify a Senior Cyber Security Engineer who can build a real engineering bench around a maturing security program. Why This Role Exists
Our Client is scaling its technology estate faster than its security controls were originally built to carry - ERP consolidation in flight, a new enterprise data platform, AI assistants rolling out, and a growing footprint of field-service and operational technology (OT) systems across multiple business units. Security today is delivered through a mix of cloud-native tooling, a managed detection provider, and fractional/vCISO oversight. What's missing is a deep, hands-on engineering bench that owns the controls end to end.
The Senior Cyber Security Engineer is the senior technical practitioner in that function - the person who designs, builds, and operates Our Client's preventive and detective controls across identity, endpoint, email, cloud, network, and data protection; hardens new environments as the business stands them up; leads incident response on the technical side; and turns audit and insurance requirements into implemented configuration rather than documented intent.
This is a builder's role in a high-velocity environment. New business units and acquisitions arrive with their own tenants, tooling, and gaps. Success here is measured in controls that are deployed, monitored, and evidenced - not in policy binders or dashboards nobody acts on. What You'll Own
Security Architecture & Engineering
- Design and implement technical security architecture across identity, endpoint, email, network, cloud, and data - translating strategy into deployed, tested configuration.
- Serve as security engineering's design authority on major programs: ERP consolidation, enterprise data platform buildout, AI assistant deployment, CRM selection, and integration platform work.
- Build and maintain hardening standards and secure baselines for Windows, Linux, mobile, and cloud workloads - enforced through configuration management, not manual review.
- Define the secure-by-default reference patterns other IT teams build against: network segmentation, secrets management, logging, and third-party connectivity.
- Lead security engineering for acquisition integrations: assess the acquired estate, prioritize remediation, and bring new tenants and endpoints onto company standards.
- Own the technical relationship with the managed detection and response (MDR) provider - tuning detections, closing coverage gaps, validating alert quality, and holding the provider to response SLAs.
- Engineer detection content and log pipelines across a modern SIEM/XDR stack, including data source onboarding, analytics rules, and automated response playbooks.
- Act as technical incident commander during security incidents: containment, forensics, eradication, recovery, and post-incident review with tracked corrective actions.
- Run purple-team and tabletop exercises against realistic scenarios - ransomware, business email compromise, vendor compromise, OT disruption - and convert findings into engineering work.
- Own and continuously improve incident response runbooks, escalation paths, and evidence-handling procedures.
- Engineer and operate the identity security stack - conditional access, MFA and phishing-resistant authentication, privileged identity management, and joiner-mover-leaver lifecycle automation.
- Drive least-privilege across cloud and on-prem: privileged access workstations, just-in-time elevation, service account governance, and periodic access recertification.
- Secure machine and workload identity for integrations, APIs, and automation, including secrets management and credential rotation.
- Partner with application teams so role design in ERP, CRM, and field-service platforms is enforceable and segregation-of-duties conflicts are caught before go-live.
- Own the vulnerability management program end to end - discovery, prioritization by exploitability and business exposure, remediation tracking, and SLA reporting.
- Run internal and third-party penetration testing and red-team engagements, driving findings to closure with accountable technical owners.
- Maintain an accurate asset inventory across endpoints, servers, cloud resources, SaaS, and field devices.
- Assess and monitor third-party and supply chain risk for critical vendors, and set security requirements built into vendor selection and contracts.
- Quantify and report residual risk to leadership in terms of business impact, not raw finding counts.
- Translate cyber insurance, customer, and contractual security requirements into implemented controls with audit-ready evidence.
- Support attestation and assessment work against recognized frameworks (e.g., NIST CSF, CIS Controls) as the technical subject matter expert.
- Extend appropriate controls into OT and field-service environments - facilities systems, shop floor, fleet telematics, connected field devices - with segmentation and monitoring suited to availability-sensitive systems.
- Partner with AI/data teams on securing assistant and model use: data exposure controls, prompt and output handling, and guardrails against shadow AI.
- Deliver security awareness and phishing simulation content that changes behavior, and coach IT and business unit staff on secure practice.
Technical Environment Layer Platform / Tooling Identity Modern cloud identity platform - conditional access, MFA, PIM, identity protection Endpoint & Email Enterprise EDR/XDR and email security suite Detection & Response Cloud-native SIEM and XDR; 24x7 managed detection and response partner Cloud & Infrastructure Major public cloud platform; hybrid Windows and Linux estate Data & AI Governance Enterprise data governance platform - DLP, sensitivity labeling, model and prompt governance Data Platform Modern cloud data lakehouse/warehouse platform Vulnerability Management Enterprise vulnerability scanning, attack surface management, penetration testing partners Network Firewall, secure edge and remote access, segmentation across business unit sites Business Systems ERP, financial, and integration platforms across multiple business units Field Service & OT Field-service systems, fleet telematics, and connected field devices Candidates with deep Microsoft security-stack experience (Entra ID, Defender XDR, Sentinel, Purview) will be especially well-matched, but the core requirement is enterprise-grade security engineering depth - not a specific vendor stack. What You Bring
Required:
- Bachelor's degree in computer science, information systems, cybersecurity, or equivalent practical experience.
- 7+ years in information security, with at least 3 in a hands-on security engineering role owning production controls.
- Deep, current expertise with a modern cloud security stack (identity, XDR, SIEM, data governance) - configuration, tuning, and troubleshooting at enterprise scale.
- Demonstrated incident response experience as a technical lead, from detection through containment, eradication, and post-incident review.
- Strong foundation in identity and access engineering: conditional access design, privileged access management, least-privilege enforcement.
- Practical experience running a vulnerability management program with measured remediation against defined SLAs.
- Working knowledge of a recognized control framework (NIST CSF, CIS Controls) and experience producing audit-grade evidence.
- Scripting and automation capability (PowerShell, Python, or equivalent) applied to security operations at scale.
- Ability to explain technical risk and remediation trade-offs clearly to IT leadership and non-technical executives.
- Industry certification: CISSP, GCIH, GCIA, GPEN, OSCP, or Microsoft security certifications.
- Experience securing multi-tenant or multi-business-unit environments and integrating acquisitions onto a common security standard.
- Experience in construction, specialty contracting, manufacturing, distribution, or field services, including OT/ICS exposure.
- Experience securing enterprise AI deployments - assistant governance, data exposure controls, model/prompt risk.
- Cloud security depth in Azure or AWS, including posture management, workload protection, and infrastructure-as-code review.
- Experience managing an MDR/SOC provider relationship to measurable outcomes.
- Familiarity with cyber insurance underwriting requirements and customer security questionnaire processes.
How We'll Measure Success in Year One
- Secure baselines defined and enforced across endpoints, servers, and cloud workloads, with measured configuration compliance rather than sampled review.
- Conditional access and phishing-resistant MFA fully deployed enterprise-wide, with privileged access under just-in-time control.
- Detection coverage mapped to a recognized threat framework, priority log sources onboarded, alert quality measurably improved.
- Vulnerability remediation operating to defined SLAs, with critical/high findings trending down quarter over quarter.
- Incident response plan tested through at least two exercises, with corrective actions tracked to closure.
- Security engineering requirements embedded as a standard gate in ERP, data platform, and AI program delivery.
- Acquisition security integration playbook published and applied to at least one business unit onboarding.
- Cyber insurance and customer security requirements satisfied with evidence produced from operating systems, not assembled by hand.
Who Thrives in This Role
- A hands-on engineer first - builds and operates controls rather than delegating them to documents.
- A risk-based prioritizer - distinguishes what's exploitable and material from what's merely reportable.
- Calm and decisive under incident pressure , with disciplined communication to leadership.
- Enables the business securely instead of defaulting to no - finds the controlled path to yes.
- Automates repeat work and measures control effectiveness continuously.
- Collaborative across IT pillars - infrastructure, applications, data, integration, and AI.
- Intellectually current on the threat landscape without chasing tooling for its own sake
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Sr. CyberSecurity Engineer in United States vacancy
$140k - $190k
Job DescriptionEverforth ECS is seeking a Sr. TORQ/SOAR Engineer to join our team in Arlington, VA (Hybrid).This position is contingent upon... ...Services (MSSP) team at ECS, a leading provider of cybersecurity, cloud, AI, data, and enterprise transformation solutions....SeniorContract work$112k - $179k
ResponsibilitiesPeraton is seeking to hire an experienced Cybersecurity Engineer for its Federal Strategic Cyber group. Location: Chandler, AZ or Washington DC.Roles and Responsibilities:The Cybersecurity Engineer supports a 24x7 Security Operations Center (SOC) by engineering...SeniorContract workShift work$113.9k - $170.9k
...enabling solutions for global security. Our Engineering and Sciences (E&S) organization pushes... ...in the Cyber specialty discipline. As a Cybersecurity Systems Engineer (CSSE) supporting the... ...position can be filled at the Principal or the Sr. Principal Level.Basic Qualifications...SeniorFull timeRelocation packageShift work$118.96k - $178.44k
About the Job:The Senior Threat Hunt Engineer is an advanced and highly trusted role supporting the enterprise cybersecurity program. As a member of Northwestern Mutual's Threat Hunting Program under the Threat Intelligence umbrella, the Senior Threat Hunt Engineer is primarily...SeniorFull time$115k - $161k
DescriptionThe Senior Cybersecurity Engineer is responsible for designing, implementing, and operating enterprise security controls across network, cloud, and identity domains. This role leads detection and response engineering, ensures the effectiveness of security controls...SeniorPermanent employmentTemporary workFor contractors$98k - $176k
...values and culture. Learn more about Target here.JOIN TARGET CYBERSECURITY AS A SENIOR ENGINEER - INCIDENT RESPONSE ENGINEERINGAs a Senior Engineer, you... ...this job are described within this job description.As a Sr. Engineer, you’ll take the lead as you…Use your technology...SeniorFull timeTemporary workWork experience placementFlexible hours$166k - $202k
As a Sr. Cybersecurity Engineer II, you’ll design and develop technical architecture components enabling application teams to integrate with zero trust authentication and authorization services. You will work closely with application developers, security architects, and...SeniorFull timeLocal area$140k - $215k
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since... ...starts with you.About the Role:CrowdStrike is looking for AI engineers who have strong experience in building AI applications and agents...SeniorFull timeWork experience placementWork at officeLocal area2 days per week3 days per week- Job OverviewSenior Cybersecurity Engineer, CIAM is responsible for designing, developing, scripting, configuring, testing and maintaining complex Cybersecurity and Risk management tools and technologies for M Health Fairview. This highly experienced Senior Cybersecurity...SeniorTemporary workWork at officeRelocation package
- Why GMF Cybersecurity?Innovation isn’t just a talking point at GM Financial, it’s how we operate... ...with specialized teams, including Engineering, Threat Intelligence, Vulnerability Management... ...#LI-Hybrid #LI-ST1About the role:The Sr Cybersecurity Engineer - Incident Response...SeniorWork experience placementWork at officeVisa sponsorshipFlexible hours
$118.91k - $214.36k
...and Incident Response (IR) teams detect, investigate, and contain cyber threats to T-Mobile and our customers. It applies cybersecurity engineering judgment to the delivery of TR initiatives, sequencing technical work and communicating progress on the capabilities that...SeniorFull timeTemporary workPart timeWork experience placementLocal areaFlexible hours$118.91k - $214.36k
...decisions, and delivery in close partnership with teams across cybersecurity and the broader business. The work strengthens the... ...Intelligence (AI) Cybersecurity Security Automation Security Engineering and TestingSecurity Incident and Escalation ManagementSecurity...SeniorFull timeTemporary workPart timeWork experience placementLocal areaFlexible hours$147k - $237.5k
...are, you’re in the right place.Who We AreIn order to be the cybersecurity partner of choice, we must trailblaze the path and shape the... ...that drives great outcomes.Job SummaryAs a Forward Deployed Engineer (FDE) for Prisma AIRS, you are a hands-on developer and systems...SeniorFull timeWork at officeLocal area$113.9k - $170.9k
...enabling solutions for global security. Our Engineering and Sciences (E&S) organization pushes... ...Systems Engineering with an emphasis in Cybersecurity.The qualified applicant will become part... ...can be filled at the Principal or Sr. Principal level.Basic Qualifications for...SeniorFull timeRelocation packageShift work- ...Description Insight Global is looking for a Senior Security Engineer to support a government-focused vulnerability remediation... ...Policy: Skills and Requirements • 5-7+ years experience in cybersecurity engineering within medium-large enterprises with a focus on...Senior
- ...Sr Principal Systems EngineerTalon is a small business engineering firm providing innovative, end-to-end, rapid-turn solutions to our government and commercial... ...applications to include aircraft, ballistics, cybersecurity, motorsports, armor development, biological systems...SeniorWork at office
$156.4k - $234.6k
...enabling solutions for global security. Our Engineering and Sciences (E&S) organization pushes... ...looking for you to join our team as a Sr Principal Cyber Systems Engineer based in... ...in the Cyber specialty discipline. As a Cybersecurity Systems Engineer (CSSE) supporting the...SeniorFull timeRelocationShift work$100k - $200k
...we bring together some of the most curious minds in networking and cybersecurity. ANS was founded to disrupt the status quo. For over 20 years, our team provides expertise in network, system engineering and both offensive and defensive cybersecurity operations.What we do...SeniorTemporary workLocal area$135.8k - $203.6k
...an integral part of our Systems Security Engineering team, you will be responsible for... ...development experience in Anti-Tamper and/or Cybersecurity, to include architecture design, trade studies... ...to start. Basic Qualifications for Sr. Principal Systems Security Engineer: Bachelor...SeniorFull timeContract workRelocation packageShift work$119.6k - $179.4k
...looking for you to join our team as a Principal Cyber Systems Engineer or Senior Principal Cyber Systems Engineer in Annapolis, MD.... ...mitigate risks. Define, decompose, and ensure the integration of cybersecurity throughout the system development lifecycle. Provide expert...SeniorFull timeFor contractorsRelocation packageShift work$125.3k - $187.9k
...collaborative teams. As a Cyber Systems Engineer - Level 3/4 located in Dulles, VA or Gilbert... ...remediating, mitigating, and reporting cybersecurity vulnerabilities discovered through use... ...3 years of cyber systems experience.Sr Principal Cyber Systems Engineer: Bachelor...SeniorFull timeRemote workRelocation packageShift work$108.2k - $162.4k
...Principal Or Sr. Principal Cybersecurity Systems Engineer (CSSE)At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for generations to come. Our pioneering and inventive...SeniorShift work$107.9k - $195.05k
Engineering the Mission. Enabling Intelligence.Join Leidos and help shape the future of geospatial intelligence! We are seeking an experienced... ...’ mission. You’ll work alongside software engineers, cybersecurity professionals, and government partners to transform mission needs...SeniorFull timeContract work- About This RoleWe are seeking a Senior Software Quality Engineer who excels at turning requirements into effective test strategies... ...software releases and change management activities.Familiarity with cybersecurity, risk management, and software compliance requirements....Senior
$135k - $202.6k
...Systems is currently seeking a Senior Principal Cyber Systems Engineer for a new and exciting effort located in Melbourne, FL.We're... ...highly motivated, team-oriented individual that understands cybersecurity and the importance to our mission. The candidate will be responsible...SeniorFull timeRelocation packageShift work- ...autonomy, mobility, and security.GM Defense IT is seeking a Sr. System Engineer to support critical GM Defense work by leading and... ...solutions that streamline IT processes while conforming to cybersecurity and compliance controls.Partner with GM IT security leadership...SeniorPermanent employmentFull timeLocal areaWork from homeRelocation package
- ...Sr. Cybersecurity Operations Analyst Insight Global is looking for a Sr. Cybersecurity Operations Analyst to join a large HCM company on a 6 month contract-to-hire basis. This role will be remote based in the US with core working hours of 9-5pm EST and will require...SeniorContract workRemote work
$160k - $250k
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since... ...CrowdStrike is seeking a Senior-to-Principal Software Development Engineer in Test (SDET) for our NG-SIEM Product Group. NG-SIEM is...SeniorFull timeContract workWork experience placementWork at officeLocal areaFlexible hours$140k - $215k
As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since... ...learn, flexible and capable of managing large scale/complex engineering projects in a fast-paced environment through innovative AI-enhanced...SeniorFull timeWork experience placementWork at officeLocal areaWorldwideFlexible hours2 days per week- ...autonomous vehicle system integration and test to join our Systems Engineering team in Indianapolis, IN. This position involves creating... ...functional safety standards (ex. MIL-STD-882) and supporting cybersecurity risk assessments for vehicle autonomy.Experience providing...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr. CyberSecurity Engineer. Be the first to apply!
Related searches
- srs distribution United States
- senior operations coordinator United States
- senior licensing manager United States
- senior associate architect United States
- senior revenue operations analyst United States
- senior dynamics crm developer United States
- senior application security United States
- senior functional analyst United States
- senior account director United States
- sr hr business partner United States

