Cyber Security Engineer

Qualibar

United States

Hybrid

USD 120,000 - 180,000

Full time

20 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Qualibar is seeking a Cyber Security Engineer to join the Infrastructure team in the United States. This hands-on role focuses on hardening a distributed enterprise across offices, remote sites, and cloud workloads, configuring, tuning, and defending controls.

You will own audit and certification readiness, partner with development and platform teams on secure pipelines, and apply an offensive mindset to validate defenses through testing.

Qualifications

  • Hands-on information security experience with security responsibility.
  • "Experience with firewalls, VPNs, endpoint protection, and email controls."
  • "Knowledge of TCP/IP, DNS, VLANs, and network segmentation."
  • "Experience securing Microsoft environments (AD, Entra ID, MS 365, Windows Server)."
  • "Linux/UNIX administration and hardening."
  • "Experience with vulnerability management and remediation."
  • "Understanding of penetration testing methods and tooling."
  • "Familiarity with CI/CD, containers, and secrets handling."
  • "Experience with audits or certifications (ISO 27001, SOC 2)."
  • "Azure security experience and OT exposure beneficial."

Responsibilities

  • Own the technical side of audits and certification readiness.
  • Collaborate with development and platform teams on secure delivery pipelines.
  • Validate defenses through testing rather than relying on reports.
  • Explain risk and remediation to business stakeholders.
  • Participate in on-call rotations.

Skills

Hands-on security
Network engineering
Systems engineering
Threat detection
Security auditing
CI/CD security
Incident response
Communication

Education

Bachelor's degree in Computer Science or IT

Job description

Cyber Security Engineer to join the Infrastructure organization and work alongside the Network and Security team. The technical work is primary: this is a hands-on engineering seat, not a policy desk. The person in this position will help harden a distributed enterprise environment that spans corporate offices, remote sites, and cloud workloads, and will spend most of their time configuring, tuning, and defending the controls that protect it.

Around that engineering core the role carries three further responsibilities. It owns the technical side of our audit and certification readiness, so the person who configures a control is also the one who can produce the evidence for it. It partners with development and platform teams on secure delivery pipelines and modern application practices. And it brings an offensive mindset to the environment, validating our defenses through testing rather than assuming they hold.

The role reports to the Manager of Network and Security and works closely with systems engineering, network engineering, and application teams. We are looking for an engineer who is comfortable owning a problem end to end, communicating clearly with non-security colleagues, and improving the environment steadily rather than waiting for a project to be handed over.

Required Qualifications

Hands-on experience in information security, network engineering, or systems engineering with substantial security responsibility.

Demonstrated production experience with enterprise firewalls and VPN, endpoint detection and response, and email security controls.

Working knowledge of TCP/IP, routing and switching, DNS, VLANs, and network segmentation, with the ability to read a packet capture and reason about traffic.

Practical experience securing Microsoft environments: Active Directory, Entra ID, Microsoft 365, and Windows Server.

Hands-on Linux and UNIX administration and hardening, including shell fluency, SSH and key management, service and file permissions, system logging, and patching.

Experience with vulnerability management tooling and with driving remediation across teams that do not report to you.

Understanding of penetration testing methodology and common offensive tooling, sufficient to validate a finding and reproduce it rather than only read the report.

Working familiarity with CI/CD pipelines and modern delivery practices, including source control workflow, build automation, containers, and secrets handling.

Direct experience supporting security audits or a certification effort, including evidence collection, control mapping, and working with external assessors.

Familiarity with a recognized security framework such as NIST CSF, CIS Controls, or ISO 27001, and the ability to translate a control into a concrete configuration change.

Clear written and verbal communication, including the ability to explain risk and remediation to business stakeholders and to write an audit-quality narrative.

Willingness to participate in an on-call rotation and to respond outside business hours during a security incident.

Preferred Qualifications

Bachelor's degree in computer science, information systems, cybersecurity, or equivalent practical experience.

Additional certifications such as OSCP, CySA+, GCIH, GCIA, GWAPT, CISSP, CISA, or a vendor certification in the firewall or endpoint platform they have used.

Experience carrying an organization through a formal certification such as ISO 27001, SOC 2, or a comparable attestation from readiness assessment to audit.

Hands-on Azure security experience, including conditional access, Defender for Cloud, and log analytics.

Experience securing a mixed estate where Linux and Windows systems share authentication and logging, or with Linux-based network and security appliances.

Scripting or automation skill for reporting, log parsing, pipeline integration, and repetitive response tasks.

Experience with DevSecOps tooling in a real pipeline, such as dependency scanning, container image scanning, or policy as code.

Experience in energy, fuel distribution, logistics, or another operationally distributed industry.

Exposure to OT or industrial control environments, or to card and payment data requirements such as PCI DSS.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer - Onsite
Security Engineer - Onsite

Insight Global • Naperville (IL)

On-site
USD 110,000 - 150,000
Security Engineer
Security Engineer

Enterprise Engineering Inc. (EEI) • New York (NY)

On-site
USD 120,000 - 160,000
Cybersecurity Network Engineer
Cybersecurity Network Engineer

TekBoox • Allendale (NJ)

On-site
USD 100,000 - 130,000
Cyber Security Engineer
Cyber Security Engineer

FutureRecruit.net • New York (NY)

Hybrid
USD 90,000 - 130,000
Cyber Security Engineer—Technical Lead
Cyber Security Engineer—Technical Lead

Leidos • Bethesda (MD)

On-site
USD 150,000 - 180,000
Remote Senior Cybersecurity Engineer - Build & Own Controls
Remote Senior Cybersecurity Engineer - Build & Own Controls

Think Consulting • Columbus (OH)

On-site
USD 140,000 - 190,000
Cyber Security Engineer
Cyber Security Engineer

Access Search, Inc. • Tinley Park (IL)

On-site
USD 100,000 - 140,000
Information Security Engineer
Information Security Engineer

eTrepid • Mechanicsville (MD)

On-site
USD 90,000 - 130,000
Sr. CyberSecurity Engineer
Sr. CyberSecurity Engineer

Think Consulting • Columbus (OH)

On-site
USD 140,000 - 190,000
Cyber Security Specialist
Cyber Security Specialist

X-Bow Systems Inc. • Luling (TX)

On-site
USD 70,000 - 110,000