Enterprise Security Engineer

Jenzabar

United States

On-site

USD 83,000 - 95,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Medical Insurance
Life Insurance
Dental Insurance
Vision Insurance
PTO
Paid Parental Leave
Paid Holidays
Short Term Disability
Long Term Disability
401K
Educational Assistance

Job summary

Jenzabar is seeking an Enterprise Security Engineer to design, implement, and maintain secure enterprise infrastructure across on-premises and cloud environments. You will establish security architecture standards, govern IAM systems, and ensure segmentation between internal corporate systems and cloud platforms.

The role requires deep expertise in Azure, GCP, and modern detection/monitoring platforms such as Microsoft Sentinel and CrowdStrike, with a focus on secure deployment and

Qualifications

  • 5+ years in enterprise security engineering or similar
  • Experience designing secure back-office and hybrid cloud environments
  • Expertise with Azure and Google Cloud Platform (GCP) and cloud-native security features
  • Hands-on experience with Microsoft Sentinel, CrowdStrike Falcon, SIEM/XDR/EDR; fluent in KQL and FQL
  • Strong IAM knowledge: AD, Azure AD/Entra ID, IAM policies, SSO, MFA, PAM
  • Proficiency with IaC tools and scripting (PowerShell or Python)
  • Strong networking, encryption, certificates, and security protocols knowledge
  • Excellent cross-functional communication skills

Responsibilities

  • Design, implement, and maintain secure enterprise infrastructure across on-premises and cloud
  • Establish security architecture standards and govern IAM systems
  • Lead security architecture reviews and guide secure design principles
  • Configure and maintain SIEM and monitoring tools (Microsoft Sentinel, CrowdStrike)
  • Ensure secure data handling and encryption practices across systems

Skills

Security architecture
Cloud security Azure/GCP
SIEM/XDR/EDR
IAM & SSO
IaC tooling
PowerShell / Python
Networking & encryption
Communication
KQL / FQL

Job description

The Enterprise Security Engineer is responsible for designing, implementing, and maintaining secure enterprise infrastructure across both on-premises and cloud environments. This role establishes security architecture standards, governs identity and access management systems, and ensures segmentation between internal corporate systems and cloud platforms. The engineer will bring deep expertise in enterprise security technologies, cloud security (Azure, GCP), and modern detection/monitoring platforms such as Microsoft Sentinel and CrowdStrike premises and cloud environments.

ESSENTIAL TASKS

Enterprise Security Architecture:

  • Support the design and maintenance of secure network architectures through the provision of recommendations and best practices for segmentation, firewall policies, and access control standards across corporate back-office infrastructure
  • Establish and maintain enterprise security baselines, system hardening standards, and configuration management policies aligned to industry frameworks
  • Lead security architecture reviews for new and existing systems and provide guidance to engineering teams on secure design principles

Cloud Security (Azure & GCP):

  • Design, implement, and maintain cloud security controls in Azure, Google Cloud Platform (GCP), AWS including network security groups, service accounts, workload identity federation, logging, and cloud-native security tooling
  • Support secure integration and connectivity between on-premises environments and cloud-hosted applications and infrastructure
  • Apply cloud hardening standards, ensure proper encryption configurations, and enforce secure deployment patterns.
  • Contribute to cloud security initiatives by applying security best practices for Google Kubernetes Engine (GKE) and supporting the organization’s transition from Windows-based environments to modernized cloud-native deployments
  • Develop and implement secure configurations for Cloud SQL in alignment with evolving cloud database security standards

Security Infrastructure & Tooling:

  • Configure, maintain, and develop SIEM and security monitoring technologies including Microsoft Sentinel, CrowdStrike Falcon, and other endpoint, log analytics, or detection platforms
  • Develop and maintain detection rules, alert logic, and automated workflows to strengthen enterprise security posture
  • Manage PKI and security certificates, including lifecycle management, renewal processes, and deployment automation

Infrastructure Security:

  • Conduct infrastructure security assessments across servers, networks, applications, and cloud environments to identify vulnerabilities and misconfigurations.
  • Remediate or coordinate remediation of identified issues in collaboration with infrastructure, engineering, and cloud teams.
  • Design and implement secure data handling standards, encryption policies, and key management practices.

AI Utilization:

  • Leverage AI-enabled tools and analytics to enhance decision-making, improve efficiency, and drive measurable business outcomes when appropriate.
  • Apply sound judgment and ethical standards when using AI, ensuring accuracy, data privacy, and responsible human-in-the-loop oversight.
PREFERRED SKILLS AND EXPERIENCE
  • 5+ years in enterprise security engineering, infrastructure security, or a systems engineering role with strong security responsibilities
  • Experience designing and securing corporate back office and hybrid cloud environments
  • Expertise with major cloud platforms, particularly Azure and Google Cloud Platform (GCP), and cloud-native security features
  • Hands-on experience with Microsoft Sentinel, CrowdStrike Falcon, or other SIEM/XDR/EDR technologies. Demonstrated fluency in Kusto Query Language (KQL) and Falcon Query Language (FQL)
  • Strong understanding of identity and access management, including Active Directory, Azure AD/Entra ID, IAM policies, SSO, MFA, and PAM solutions
  • Proficiency with infrastructure-as-code (IaC) tools and automation scripting using PowerShell or Python
  • Strong knowledge of networking, encryption, certificates, and security protocols
  • Excellent communication skills with the ability to work effectively across cross-functional teams

The pay range for this position is $83,000-$95,000/year; however, base pay offered may vary depending on job-related knowledge, geographic location, skills, and experience. This position is eligible for an annual bonus in addition to a full range of benefits. This information is provided per the relevant state and local pay transparency laws for the location in which this position will be performed.

Medical Insurance, Life Insurance, Dental Insurance, Vision Insurance, PTO, Paid Parental Leave, Paid Holidays, Short Term Disability, Long Term Disability, 401K, Educational Assistance

Jenzabar does not discriminate in employment opportunities or practices on the basis of race, color, sex, gender, gender identity, pregnancy, childbirth and related medical conditions, genetics, genetic markers and carrier status, creed, religion, national origin, ancestry, age, disability, medical condition, marital status, sexual orientation, military service, veteran status, or any other status protected by state and federal laws.

Please Note: Jenzabar does not sponsor applicants for work visas.

Electronic Monitoring Notice:

Job applicants are advised that Jenzabar reserves the right to monitor, access, review, and disclose electronic activity conducted on Company‑owned devices, networks, and systems, as well as activity involving Jenzabar applications or accounts accessed on personal devices. Monitoring may include email, messaging, internet usage, files, applications, and other electronic communications or data, and is performed for security, compliance, and operational purposes.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Enterprise Security Engineer
Enterprise Security Engineer

NEPSE Trading • Northern (KY)

Hybrid
USD 83,000 - 95,000
Senior Enterprise Security Engineer – Cloud & SIEM
Senior Enterprise Security Engineer – Cloud & SIEM

Jenzabar • United States

On-site
USD 83,000 - 95,000
Medical Insurance
Life Insurance
Dental Insurance
+8
Information Security Architect (Endpoints and Servers)
Information Security Architect (Endpoints and Servers)

Jabil • United States

Remote
USD 126,000 - 227,000
Medical, dental, and vision insurance
401(k) retirement plan
Employee stock purchase plan
+1
Senior Account Manager
Senior Account Manager

Jenzabar • Village of Westbury (NY)

On-site
USD 60,000 - 67,000
Medical Insurance
Life Insurance
Dental Insurance
+6
Security Engineer
Security Engineer

Insight Global • Naperville (IL)

On-site
USD 100,000 - 130,000
Cloud Engineer – AWS Enclave & Secure Migrations
Cloud Engineer – AWS Enclave & Secure Migrations

J5 Consulting • Chantilly (VA)

On-site
USD 90,000 - 130,000
100% employer-paid health coverage
6% 401(k) match
PTO
+3
Senior Staff Engineer - DevSecOps
Senior Staff Engineer - DevSecOps

Exelixis Inc • Alameda (CA)

On-site
USD 154,500 - 220,500
401(k) plan with company contributions
Group medical, dental, and vision coverage
Flexible spending accounts
+1
Senior IT Systems Engineer
Senior IT Systems Engineer

United States Digital Space LLC • Gunnison (CO)

On-site
USD 130,000 - 172,000
Evergreen - Security Engineer
Evergreen - Security Engineer

JW Affinity IT • Town of Charlotte (NY)

On-site
USD 120,000 - 180,000
Retirement Plan (401k) with matching
Life Insurance Plan
PTO
+7
Senior Microsoft Platform Engineer
Senior Microsoft Platform Engineer

Jensenhughes • Columbia (MD)

On-site
USD 125,600 - 140,000
Retirement plan
Healthcare coverage
Competitive rewards package