Security Engineer
$78.02k - $119.19kSargent & Lundy
Responsibilities
Sargent & Lundy is a leading consulting engineering firm specializing in the power and energy sectors. Since 1891, we have provided comprehensive engineering, design, and consulting services for both traditional and renewable power generation, grid modernization, nuclear power, and beyond. Our mission is to help clients achieve their energy goals effectively by leveraging advanced technologies and adopting sustainable practices.
Role Overview
We are looking to hire a senior fully technical, hands-on Security Engineer who can take a security requirement and turn it into a working control, then tune it, monitor it, and improve it over time . You will be responsible for operating the technical security controls and platforms that protect Sargent & Lundy, our clients, and our partners . This is not a security governance, policy-writing, or process management role.
You will work side by side with the IT Infrastructure, Cloud Engineering, Application teams, SOC, and GRC. Controls you build will support and enhance our security posture and aligns with ISO 27001, NIST 800-171, and CMMC 2, and protect sensitive data .
Key Responsibilities
Identity and Zero Trust
Establish, enforce and operate the full IAM lifecycle in Microsoft Entra: SSO, MFA, conditional access, lifecycle workflows, entitlement management, and privileged access integration.
Build and tune Zero Trust controls across identity, device, network, and application layers, including conditional access policies, and continuous verification.
Partner to i ntegrate IAM with the rest of the security stack so that XSIAM, CASB, DLP, and EDR/ XDR all see consistent identity signal .
Run technical access reviews and tighten entitlement design where you find drift.
Cloud Security: Azure and Oracle Cloud
Establish and enforce cloud security controls in Azure and Oracle Cloud Infrastructure: landing zones, network security groups, identity, key management, encryption, logging, and workload protection.
Operate CSPM tooling against both clouds, triage findings, and provide secure configurations at the cloud resource level alongside the cloud engineering team.
Partner to b uild secure-by-default templates so cloud teams can deploy without round-tripping every change through security.
Palo Alto Security Platform
Understand and m anage Prisma Access (SASE) for remote users and sites: tunnels, security policy, SSO integration, and traffic forwarding rules.
Understand and partner with SOC to tune Palo Alto XSIAM, including data source onboarding, parser tuning, correlation rules, detection content, and SOAR playbooks that feed Unit 42.
Data Protection and Microsoft Purview DLP
Implement Microsoft Purview at a deep technical level: Information Protection, DLP, Insider Risk Management, sensitivity labels, and auto-classification.
Author and tune DLP policies across endpoint, Outlook and Exchange, Teams, SharePoint, OneDrive, and Egnyte. Reduce noise without missing real exposure.
Handle DLP incident triage, label troubleshooting, and policy iteration based on what production actually shows you.
AI Usage Security
Implement technical controls for safe AI usage across the company: data-exposure prevention for generative AI tools, prompt and usage monitoring, and integration with the existing DLP and CASB stack.
Evaluate emerging AI risks (prompt injection, model abuse, sensitive-data leakage, shadow AI) and design configurations that mitigate them in our environment.
Partner with product and engineering teams shipping AI-enabled features so the controls land at the right layer.
Architecture and Design Reviews
Review the security design of new SaaS, IaaS, PaaS, and in-house applications and produce specific, actionable findings.
Work with project teams early so controls are designed in, not retrofitted after go-live.
This position offers the flexibility of a hybrid schedule with the expectation of 3 days per week in our downtown Chicago office, and 2 days remote from home.
Qualifications
Required Experience
Bachelor's degree in Computer Science , Information Systems, Cybersecurity, or a related field. Equivalent professional experience will be considered.
5+ years of hands-on Security Engineering experience with demonstrated ownership of enterprise security platforms in production. Pure governance, audit, or policy-only backgrounds will not match the work in this role.
Deep, hands-on IAM lifecycle experience with Microsoft Entra (SSO, MFA, conditional access, lifecycle workflows) and applied Zero Trust implementation.
Hands-on cloud security experience with Microsoft Azure (required) and Oracle Cloud Infrastructure (strongly preferred), including technical configuration of native security services.
Hands-on configuration and operation of the Palo Alto security platform: Prisma (Access and Cloud), Cortex XDR, and XSIAM.
Implementation-level experience with Microsoft Purview for DLP, including policy authoring, classification, labeling, tuning, and incident handling.
Working knowledge of AI risks (data exposure, prompt injection, model misuse, shadow AI) and the controls used to mitigate them in an enterprise setting.
Comfort working across on-prem and cloud environments and across Windows, macOS, and Linux endpoints.
Familiarity with compliance frameworks (ISO 27001, NIST 800-171, CMMC Level 2, SOC 2) and the ability to translate a control requirement into a working configuration.
Certifications: CompTIA Security+ or (ISC)² SSCP or PCCSE (Palo Alto Networks Certified Cloud Security Engineer) an equivalent foundational technical certification.
Preferred Experience
Microsoft Azure Security certification (AZ-500 or equivalent).
Microsoft Purview Information Protection and DLP certification or equivalent.
Oracle Cloud Infrastructure security credentials.
Microsoft Cybersecurity Architect (SC-100),
CISSP or CCSP .
Soft Skills
Strong written and verbal communication . You can walk an engineer through a config in one conversation and a business stakeholder through the impact in the next.
Bias for action. You would rather build a working control and iterate than spend weeks producing a perfect document.
Comfort with ambiguity. You can take a vague security ask and break it into a concrete configuration plan.
Collaboration across teams. You will work daily with SOC, IT Infrastructure, Cloud, App Dev, and GRC, and the role only works if those partnerships do.
Operational discipline. You document what you build, version your configurations, and leave the next engineer better than you found it.
We do not sponsor employees for work authorization in the U.S. for this position.
About Sargent & Lundy
At Sargent & Lundy, we care about the health and well-being of our employees. Our commitment extends beyond the workplace, offering comprehensive healthcare plans and generous paid time off to support our team members in every aspect of their lives. We understand the importance of work-life balance, which is why we are proud to provide competitive, award-winning benefits. Our dedication to employee satisfaction has earned us the prestigious Top Workplaces Culture Excellence Award for compensation and benefits in 2022, 2023, and 2024.
Health & Wellness Financial Benefits Work-Life Balance
Health Plans: Medical, Dental, Vision
Life & Accident Insurance
Disability Coverage
Employee Assistance Program (EAP)
Back-Up Daycare
FSA & HSA
401(k)
Pre-Tax Commuter Account
Merit Scholarship Program
Employee Discount Program
Corporate Charitable Giving Program
Tuition Assistance
First Professional Licensure Bonus
Employee Referral Bonus
Paid Annual Personal/Sick Time (PST)
Paid Vacation
Paid Holidays
Paid Parental Leave
Paid Bereavement Leave
Flexible Work Arrangements
Compensation Range
$78,016 - $119,191
Transparency Statement
Sargent & Lundy discloses compensation ranges that comply with all local and state regulations. The total compensation package for eligible positions will include a base salary or an hourly rate and a comprehensive benefits package, reflecting our commitment to rewarding performance and supporting the overall well-being of our employees. Individuals may also be eligible to participate in our yearly discretionary bonus.
Equal Opportunity
Sargent & Lundy is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability status, protected veteran status, or any protected status as defined by applicable law.
Software Powered by ICIMS
CityChicago
StateIL
CountryUnited States
Area of InterestInformation Technology
TypeFull Time - Regular
Job ID2026-26399
Business GroupCEO Group
DepartmentInformation Security
$100k - $160k
...OAuth, and conditional access. -Design and maintain enterprise security platforms that enforce security policies across endpoints,... ...email compromise. -Collaborate with infrastructure and cloud engineering teams to implement security controls across hybrid environments...SuggestedPermanent employmentTemporary workWork at officeFlexible hours- ...Job Title Project Overview: Northern Trust is looking for an experienced resource to support Global Physical Security Systems, a suite of applications that control secure access (eg building badging, security cameras, etc.) to Northern Trust facilities globally....SuggestedFor contractorsRemote work
- ...Security Engineer PCT partners with venture-backed technology companies looking for Security Engineers to help build secure products, infrastructure, and organizations as they scale. Security roles across our portfolio may focus on product security, application security...Suggested
- Automation Opportunities The individual will be responsible for identifying opportunities for the automation of tasks, processes, or entire solutions and acting on them, as well as identifying any opportunities for improvement in the environment. Active Directory...Suggested
$110k - $150k
...Security Engineer l No Sponsorship Available Title: Security Engineer Compensation: $110,000 - $150,000 Work Environment: Hybrid (1 Day per week in Office) Daily Schedule: 8:00am - 4:30pm CST Office Locations: Skokie, IL; Warrenville, IL; Arlington...SuggestedPermanent employmentTemporary workWork experience placementWork at office1 day per week- ...Senior Security Automation Engineer The client is seeking a Senior Security Automation Engineer to help design, build, and scale an enterprise security automation platform that improves security control validation, evidence collection, compliance reporting, and integration...
- ...such as: Kerberos, NTLM, TCP, UDP, IPv4, IPv6, SAML, LDAP and Secure LDAP • Expert level knowledge of Windows server operating systems... ...Security Basic Qualification : Additional Skills : Azure Engineer,Security Engineer Background Check : No Drug Screen...
- ...Security Engineer We are seeking a Security Engineer with 4+ years of security operations experience to serve as a hands-on technical contributor within our 24/7 Security Operations Center (SOC). In this role you will be a core executor of our detection, investigation...Contract workLocal area
- ...Security Engineer Location: Chicago, IL or New York, NY (Hybrid) Overview Our client is seeking a Security Engineer to oversee the protection of cloud infrastructure, corporate systems, and production environments within a regulated financial technology...
- ...Chicago. United Airlines. USC only $77/hr c2c • Top 3 skill sets required for this role: Experience with security concepts and engineering security vulnerability mitigation solutions in both Windows end user compute and mobile environments. Broad infrastructure...
- ...their lives: health records, immigration status, housing and financial histories, and the details of families in crisis. The Security Engineer is the hands-on owner of protecting that trust. You will design, implement, and operate the technical controls that safeguard...
$58.8 - $84 per hour
...Title: Security Engineer Location: Chicago, IL Position Type : Contract Compensation Pay Range:$58.80-$84.00 per Hr Description Join our team as a Security Engineer based in Chicago, IL. This contract position involves designing, implementing...Contract work- ...Northern Trust Corp. is seeking a Sr Lead Cyber Security Engineer in Chicago, IL to lead the Workforce Authentication and Authorization team. You will drive authentication and access management initiatives across hybrid and cloud environments, applying zero-trust and least...
$145k - $195k
...Security Engineer Coinflow is the next-generation payment service provider revolutionizing global financial infrastructure with stablecoins, AI-driven fraud prevention, and instant settlement. Coinflow enables businesses to grow faster with instant settlement, fraud...WorldwideFlexible hours- ...Job Title: Security Engineer Location: Chicago, IL (Hybrid)- Local Only Job Type: Full-Time Essential Functions: Responsible for threat and vulnerability management across the environment utilizing CrowdStrike, Qualys & Splunk. Research, implement...Full timeWork at officeLocal area
$95k - $130k
...fully-customizable, end-to-end software solution to automate securities-based lending from origination through the life of the loan. By... ...We are seeking a highly motivated and detail-oriented Security Engineer to help secure our securities-backed lending SaaS platform....Full timeInternship$50 - $70 per hour
...Senior Network Security EngineerWe are seeking a Senior Network Security Engineer with deep expertise in Cisco Identity Services Engine (ISE) and identity-driven network segmentation to support and enhance a modern enterprise security architecture. This role will focus...Hourly payLive inRemote work$110k - $135k
...in mergers and acquisitions ABOUT THIS ROLE In this role, you will manage multiple aspects of information security operations, response, and engineering. This position will contribute to a team focusing on the included, but not limited to, incident response,...Local areaImmediate start- ...Security Operations - Senior Security Engineer Reporting to the Team Lead, Security Operations Engineering, the Security Operations – Senior Security Engineer will be part of a team of highly specialized engineers dedicated to solving complex, security specific challenges...Visa sponsorship
$131k - $169k
...Senior Security Engineer Seeking a development & cloud focused Senior Security Engineer to join our expanding security team. The ideal candidate will have passion for AppSec, Cloud and AI. They will be a skilled communicator and relationship builder capable of promoting...Work at officeWork from homeFlexible hoursDay shift- ...Senior Offensive Security Engineer - Pentester Denver, Colorado;Washington, District of Columbia; Seattle, Washington; Charlotte, North Carolina; Jacksonville, Florida; Jersey City, New Jersey; Chicago, Illinois To proceed with your application, you must be at least...Work at officeRemote workShift workDay shift
$98.4k - $160k
...Network Security EngineerAt Bank of America, we are guided by a common purpose to help make financial lives better through the power of... ...learn, grow, and make an impact. Join us!The Network Security Engineer is responsible for supporting multiple security engineering efforts...Work at officeFlexible hoursShift workDay shift$174.8k - $236.5k
...platform. Powered by patented Attack Signal Intelligence, it empowers security teams to rapidly prioritize, investigate and respond to the... ..., visit Position Overview As a Security Engineer (Pre-Sales) at Vectra.ai, you will blend deep technical expertise...Worldwide$140k - $160k
...poster from Informatic Technologies, Inc. About the Company: A Leading Financial Service Client is looking to hire a strong Security Engineer who can lead Red team exercises against a hybrid environment using threat intelligence and the MITRE Telecommunication&CK...Full time- ...Network Security EngineerThe Network Security Engineer will have practical, hands-on experience with all aspects of network security and its management in an enterprise environment. This role is expected to provide strong leadership and relevant recommendations with regard...Night shift
$112k - $130k
...Senior Security EngineerRemote - United StatesJR013945 At Ensono, our Purpose is to be a relentless ally, disrupting the status quo... ...CURIOSITY, PASSION Role Summary The Senior Information Security Engineer is responsible for designing, implementing, and maintaining...Full timeTemporary workRemote workWork from homeFlexible hours- ...Overview: The Senior Security Engineer works in Optiv's 24x7x365 Security Operations Center as a member of the Managed Security Services team. The Senior Security Engineer uses technical knowledge on a number of security technologies to analyze and respond to security...
- ...Senior Network Security EngineerConfidential search for a Senior Network Security Engineer for a highly respected Chicago organization undergoing a significant modernization of its technology infrastructure.The ideal candidate is someone who lives at the intersection of...
$155.58k - $320.32k
...more about our AI interview philosophy and how we use AI in our recruiting process here . Pinterest’s Security team is seeking an experienced Security Software Engineer to help keep our 619 million monthly active users safe from real-world threats. You will build...Full timeWork at officeRemote workRelocationRelocation package- ...Security Operations EngineerThe Security Operations Engineer role provides daily incident response in addition to providing 24x7 support and operational availability of the security infrastructure. Responsibilities include the monitoring and investigation of security...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer. Be the first to apply!
- security engineer Chicago, IL
- principal security engineer Chicago, IL
- sr information security engineer Chicago, IL
- information technology security engineer Chicago, IL
- senior cloud security engineer Chicago, IL
- cloud security engineer Chicago, IL
- senior application security engineer Chicago, IL
- application security engineer Chicago, IL
- aws cloud security engineer Chicago, IL
- network security engineer Chicago, IL


