Information Security Engineer

Dealer Tire

United States

On-site

USD 120,000 - 155,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Dealer Tire is seeking an Information Security Engineer to lead risk assessments, security monitoring, and policy development across our infrastructure and AI workloads. You will partner with IT and engineering to implement secure-by-design practices and incident response.

Role focuses on vendor risk management, AI security, and compliance with OWASP Top 10 for AI/LLM environments, with cross-team collaboration and continuous security improvement.

Qualifications

  • Bachelor's degree in computer science, information security, information systems or related field required or equivalent 3–5 years security experience.
  • Strong scripting skills in PowerShell and Bash.
  • Professional security certifications (CISSP, Security+, CISA) preferred.

Responsibilities

  • Vendor risk assessments for new and current vendors, including AI vendors and data flows.
  • Develop security automation and monitoring, including AI tool usage telemetry.
  • Policy, runbook development, incident reporting and AI risk findings.
  • Provide secure-by-design guidance and align with OWASP Top 10 for AI apps.
  • Investigate security incidents and support IT during incidents.

Skills

Vendor risk assessment
AI security
Security monitoring
Automation scripting
Incident response
Pen testing analysis
OWASP knowledge
Collaboration
Adaptability

Education

Bachelor's in CS/Info Security or related field

Job description

As an Information Security Engineer, your essential job functions will include the following:

Key Responsibilities:

  • Vendor Risk Assessment Management (25%) - Performing vendor risk assessments for new vendors and reviewing the risk of current vendors. Maintaining our matrix of 3rd party vendor to features. Includes evaluation of AI vendors and AI workloads: data flows, the model and data supply chain, and agentic and MCP integrations.
  • Troubleshooting / Problem Solving (30%) - Evaluate alerting processes and systems and develop security automation processes. Includes using AI-based engineering tools, such as AI coding assistants and MCP servers, to build security automation, along with detection engineering and the secure design of AI-enabled systems.
  • Documentation and Reporting (15%) - Policy & Runbook development, incident reporting, pen testing analysis. Includes AI review patterns and AI usage telemetry; technical AI risk findings feed the Governance and Policy impact assessments and AI compliance program.
  • Security Monitoring (10%) - Build out new monitoring capabilities, developing alerts, integrate new feeds. Includes shadow-AI discovery and monitoring of AI tool usage and egress.
  • Security Guidance (20%) - Provide security guidance for compliance issues such as OWASP development practices, privacy protection, network security practices, and security framework compliance. Includes secure-by-design guidance for teams building with AI, aligned to the OWASP Top 10 for LLM and Agentic Applications and MITRE ATLAS.

Additional Responsibilities:

  • Configure technologies such as security information and event management, artificial intelligence and machine learning, intrusion detection and prevention, and various anti-malware solutions to allow for monitoring of computer systems.
  • Investigate security breaches and incidents. Determine if event requires further action and escalation. Assist other teams within IT during incidents, document steps taken and lessons learned.
  • Provide technical security guidance for compliance issues such as OWASP development practices, privacy protection, network security practices, and security framework compliance to projects and teams.
  • Analyze current vulnerability management systems for effectiveness and make recommendations to maintain and improve accuracy and scalability of systems.
  • Evaluate new vendors and products for security risks and compliance with security policies.
  • Develop security automation processes to improve security posture.
  • Research new security threats and solutions. Stay current with IT security news and developments in the field.

Other Duties as Assigned

Position Requirements:

  • Bachelor's degree in computer science, information security, information systems or other related field is required and/or equivalent of 3-5 years of information security work experience with exposure to infrastructure/network and multiplatform environments.
  • Advanced skills in scripting and automation tools like Powershell and Bash.
  • Professional security certification, such as a Certified Information Systems Security Professional (CISSP), CompTIA Security+, SANS Cybersecurity Certification, Certified Information Systems Auditor (CISA) or other similar credentials, is preferred but not required.
  • Demonstrated knowledge of security issues, techniques, and implications across the most popular computer, cloud, and IaaS platforms.
  • Working knowledge of AI and large language model security concepts, including prompt injection and the data-as-code trust boundary, authorization for autonomous and agentic systems, and the AI model and data supply chain.
  • Familiarity with AI security frameworks such as the OWASP Top 10 for LLM and Agentic Applications, the NIST AI Risk Management Framework, and MITRE ATLAS. AI security credentials are a plus.
  • Ability to work independently as well as a team.
  • Results Orientation
  • AgilityInitiative
  • Customer Focus
  • Learn Quickly
  • Recognize Implications
  • Apply Knowledge

Physical Job Requirements:

  • Continuous viewing from and inputting data to a computer screen.
  • Travel as necessary (<10%).

Drug Policy

  • Dealer Tire is a drug‑free environment. All applicants being considered for employment must pass a pre‑employment drug screening before beginning work.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Analyst
IT Security Analyst

Fortegra • Jacksonville (FL)

On-site
USD 85,000 - 120,000
Security Engineer
Security Engineer

SentriLock • Olde West Chester (OH)

On-site
USD 110,000 - 160,000
Information Security Application and Compliance Analyst - Austin, Dallas, Houston
Information Security Application and Compliance Analyst - Austin, Dallas, Houston

Vinson & Elkins • Dallas (TX)

On-site
USD 110,000 - 160,000
Information Security Application and Compliance Analyst
Information Security Application and Compliance Analyst

Vinson & Elkins • Houston (TX)

On-site
USD 110,000 - 150,000
AI-Application Security Engineer
AI-Application Security Engineer

Stifel Financial Corp. • St. Louis (MO)

On-site
USD 90,000 - 120,000
Security Engineer
Security Engineer

Sentrilock • West Chester Township (OH)

On-site
USD 110,000 - 150,000
Security Engineer
Security Engineer

CRICO • Boston (MA)

On-site
USD 90,000 - 130,000
AI Cyber Engineer
AI Cyber Engineer

Ampcus Inc • Chantilly (VA)

On-site
USD 120,000 - 160,000
Senior Information Security Engineer
Senior Information Security Engineer

Jobtailor • Massachusetts

On-site
USD 110,000 - 150,000
Information Security Analyst
Information Security Analyst

Compunnel, Inc. • Charlotte (NC)

On-site
USD 80,000 - 120,000