Security Engineer

CSP

Auburn Hills (MI)

On-site

USD 110,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

CSP is seeking a hands-on Security Engineer to lead cybersecurity and compliance initiatives across a multi-site manufacturing environment. This role owns end-to-end management of security audits, including ISO 27001 and TISAX, and serves as the primary point of accountability for audit readiness, security questionnaires, and IT policy lifecycle management.

The Security Engineer will ensure CSP maintains a strong, scalable, and audit-ready security posture aligned with customer, regulatory, and

Qualifications

  • 5–8+ years in cybersecurity or IT security.
  • Experience with ISO 27001/TISAX audits.
  • Experience handling security questionnaires and audit evidence.
  • Strong IT/security policy writing and maintenance.
  • Experience in multi-site or manufacturing environments.

Responsibilities

  • Lead and manage cybersecurity audits (ISO 27001, TISAX) across sites.
  • Own audit readiness, evidence collection, and auditor coordination.
  • Maintain IT policies, standards, and procedures; align with ISO 27001 Annex A and TISAX.
  • Implement security controls across Microsoft 365 and Entra ID; enforce least privilege and MFA.
  • Support physical security systems in plant environments; coordinate with facilities.
  • Monitor and improve security posture through risk assessments and automation.

Skills

Audit management
Policy development
Cybersecurity engineering
Risk assessment

Tools

Entra ID
Microsoft 365
Endpoint protection

Job description

CSP is seeking a hands-on Security Engineer to lead and execute cybersecurity and compliance initiatives across a multi-site manufacturing environment. This role owns end-to-end management of security audits, including ISO 27001 and TISAX, and serves as the primary point of accountability for audit readiness, security questionnaires, and IT policy lifecycle management. The Security Engineer will ensure CSP maintains a strong, scalable, and audit-ready security posture aligned with customer, regulatory, and industry requirements while supporting business operations across corporate and plant locations.

Audit & Compliance Ownership
  • Lead and manage all cybersecurity audits, including ISO 27001 and TISAX assessments
  • Own audit readiness including control validation, evidence collection, and auditor coordination
  • Act as the primary owner for customer, OEM, and third-party security questionnaires
  • Track audit findings, assign remediation actions, and ensure timely closure
  • Maintain audit artifacts and ensure continuous compliance posture
  • Partner with IT and business teams to ensure controls are implemented and operating effectively
Policy & Governance Management
  • Own and maintain all IT and information security policies, standards, and procedures
  • Align policies with ISO 27001 Annex A and TISAX requirements
  • Ensure policies are practical, enforceable, and aligned to business operations
  • Drive policy lifecycle including creation, review, approval, and updates
  • Support development and ongoing maturity of CSP’s ISMS
Security Engineering & Operations
  • Implement and maintain security controls across identity, endpoints, and Microsoft 365
  • Administer and secure Microsoft Entra ID (Azure AD) and Active Directory
  • Enforce least privilege access, MFA, Conditional Access, and identity governance
  • Manage Microsoft Defender suite across endpoint, identity, and Office 365
  • Support incident detection, investigation, and response
  • Secure Microsoft 365 (Exchange, SharePoint, Teams, OneDrive)
  • Manage device compliance using Intune and endpoint management tools
  • Monitor environment for threats and respond to alerts
  • Implement hardening standards and baseline configurations
Plant & Physical Security Systems
  • Support and standardize security controls across manufacturing plant environments
  • Engineer and support badge access control, video surveillance, and door systems
  • Partner with plant IT and facilities to maintain physical security systems
  • Ensure alignment of physical security with audit and compliance requirements
Monitoring, Risk & Continuous Improvement
  • Support vulnerability management and remediation tracking
  • Conduct risk assessments and gap analyses
  • Identify opportunities to improve security posture through automation and tooling
  • Maintain documentation to support audit readiness and operational excellence
Qualifications
Required
  • 5–8+ years of experience in cybersecurity, security engineering, or IT security
  • Proven experience managing or supporting ISO 27001, TISAX, or similar audits
  • Hands‑on experience completing security questionnaires and audit evidence collection
  • Strong experience writing and maintaining IT/security policies
  • Technical expertise in Microsoft 365 Security, Entra ID, and endpoint protection platforms
  • Experience working in multi‑site or manufacturing environments preferred
  • Strong analytical, documentation, and communication skills
Preferred
  • Certifications such as CISSP, CISM, Security+, AZ-500, or SC-200
  • Experience with Microsoft Sentinel or other SIEM platforms
  • Familiarity with ISMS lifecycle and risk management frameworks
  • Experience supporting automotive/OEM customer security requirements
  • Exposure to manufacturing systems such as QAD
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer: ISO 27001 & TISAX Audit Lead
Security Engineer: ISO 27001 & TISAX Audit Lead

CSP • Auburn Hills (MI)

On-site
USD 110,000 - 160,000
Information Security and Compliance Manager
Information Security and Compliance Manager

Transhield, Inc. • Elkhart (IN)

On-site
USD 120,000 - 180,000
Information Security Program Lead
Information Security Program Lead

MSA, The Safety Company • Cranberry Township

On-site
USD 120,000 - 180,000
Senior Security & Compliance Engineer
Senior Security & Compliance Engineer

Advanced Operations Partners • United States

On-site
USD 140,000 - 190,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Vivos Holdings • Smyrna (TN)

On-site
USD 120,000 - 190,000
Cyber Security Compliance Engineer
Cyber Security Compliance Engineer

Leonardo • Philadelphia

On-site
USD 120,000 - 160,000
IT Security Engineer
IT Security Engineer

Ken's Foods • Marlborough (MA)

On-site
USD 125,000 - 135,000
IT Security Engineer
IT Security Engineer

Ken’s Foods, Inc. • Marlborough (MA)

On-site
USD 125,000 - 135,000
Information Security Program Lead
Information Security Program Lead

MSA - The Safety Company • Cranberry Township

On-site
USD 120,000 - 180,000
Sr Security Engineer
Sr Security Engineer

The Timberline Group • St. Louis (MO)

On-site
USD 110,000 - 160,000