Security Engineer - Onsite

Insight Global

Naperville (IL)

On-site

USD 110,000 - 150,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Insight Global seeks an Application Security Engineer to implement and operate security controls across endpoint, cloud, identity, and security operations platforms. The role emphasizes hands-on engineering, automation, and L2/L3 security support with close collaboration to IT Infrastructure, Cloud, and Security Operations teams.

The ideal candidate has 5+ years of security experience, strong scripting skills, and proficiency with security tools, cloud platforms (Azure/AWS), and vulnerability

Qualifications

  • Bachelor’s or Associate degree in Cybersecurity, Computer Science, Information Systems, or related field (or equivalent experience).
  • 5+ years of hands-on technology experience across multiple security domains (network, endpoint, cloud, vulnerability management).
  • Strong experience with security tools (vulnerability scanners, WAF, SCA).
  • Proficiency with scripting and automation (Python, PowerShell, Bash, REST APIs).

Responsibilities

  • Manage network security tools such as Web Application Firewalls (WAFs).
  • Troubleshoot WAF responses including DNS blocking, IP blocking, DNS resolution, URL redirects, and rate limiting.
  • Analyze application security attack patterns (SQL injection, directory traversal, password sprays, volumetric attacks).
  • Implement, administer, optimize, and maintain enterprise security tools and controls.
  • Investigate and resolve complex L2/L3 security incidents and alerts.
  • Monitor operational health of security platforms and services.
  • Support vulnerability management activities from identification to remediation coordination.
  • Develop and maintain technical documentation and runbooks.
  • Communicate incident status and metrics to stakeholders.
  • Automate security and operational processes via scripting, APIs, and infrastructure tooling.
  • Participate in on-call rotation for after-hours support.

Skills

Automation scripting
Vulnerability management
Security tools
Cloud security
Incident response
Endpoint security
Documentation
SOAR experience
Certifications CISSP/CISM

Education

Bachelor’s or Associate degree in Cybersecurity / CS / Info Systems

Tools

Vulnerability scanners
Web Application Firewall
Static code analysis
Qualys
Nessus
Rapid7
REST APIs

Job description

Job Description

The Application Security Engineer is a key member of the Application Security team, responsible for implementing, operating, and supporting security controls across endpoint, cloud, identity, and security operations platforms. This role is highly technical and execution-focused, emphasizing hands-on engineering, automation, and L2/L3 security support rather than governance, compliance, or application security activities.

Reporting to the Application Security manager, this individual partners closely with IT Infrastructure, Cloud, and Security Operations teams to strengthen the organization's security posture and ensure the effective operation of security technologies.

Key Responsibilities
  • Manage network security tools such as Web Application Firewalls (WAFs).
  • Troubleshoot network issues related Web Application Firewall responses such as DNS blocking, IP subnet blocking, DNS resolution failures, URL redirection, and rate limiting.
  • Analyze application security attack patterns such as SQL injections, directory traversal attacks, password sprays, and volumetric attacks.
  • Implement, administer, optimize, and maintain enterprise security tools and controls.
  • Investigate, troubleshoot, and resolve complex L2/L3 security incidents, alerts, and break/fix escalations.
  • Monitor and maintain the operational health and performance of security platforms and services.
  • Support vulnerability management activities, including identification, prioritization, remediation coordination, and validation.
  • Develop and maintain technical documentation, knowledge base articles, operational procedures, and runbooks.
  • Communicate incident status, operational metrics, and project updates to stakeholders.
  • Automate security and operational processes through scripting, APIs, and infrastructure tooling.
  • Participate in an on-call rotation to provide after-hours support when required.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.

Skills and Requirements
  • Bachelor’s or Associate degree in Cybersecurity, Computer Science, Information Systems, or related field (or equivalent experience)
  • 5+ years of hands on technology experience, including troubleshooting and root cause analysis - Experience across multiple security domains (network, endpoint, cloud, vulnerability management)
  • Strong experience with security tools (vulnerability scanners, web application firewalls, static code analysis)
  • Proficiency with scripting and automation (Python, PowerShell, Bash, REST APIs)
  • Working knowledge of cloud platforms and applying security controls (Azure and/or AWS)
  • Experience supporting endpoints, operating systems, networking, and identity systems
  • Strong analytical skills and attention to detail - Strong technical documentation practices
  • Self driven with curiosity and willingness to learn - Experience with vulnerability management tools (Qualys, Nessus, Rapid7, etc.)
  • Understanding of NIST, ISO, or ITIL frameworks - Experience integrating and automating security tools via APIs
  • Exposure to SOAR platforms (Swimlane, Splunk SOAR, etc.)
  • Security certifications such as CISSP, CISM, GIAC, or equivalent
  • Ability to work effectively in fast paced enterprise environments
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

Insight Global • Naperville (IL)

On-site
USD 100,000 - 130,000
Security Engineer
Security Engineer

Gravity IT Resources • Salt Lake City (UT)

On-site
USD 120,000 - 160,000
Security Engineer
Security Engineer

Enterprise Engineering Inc. (EEI) • New York (NY)

On-site
USD 120,000 - 160,000
Senior Security Engineer
Senior Security Engineer

Chris Baily • New York (NY)

On-site
USD 150,000 - 190,000
On-site in NYC
Competitive salary
Information Security Engineer
Information Security Engineer

eTrepid • Mechanicsville (MD)

On-site
USD 90,000 - 130,000
Cyber Security Engineer—Technical Lead
Cyber Security Engineer—Technical Lead

Leidos • Bethesda (MD)

On-site
USD 150,000 - 180,000
Sr. Security Engineer
Sr. Security Engineer

California Water Service • San Jose (CA)

On-site
USD 180,000 - 240,000
Application Security Engineer
Application Security Engineer

RedStream Technology • Charlotte (NC)

On-site
USD 120,000 - 150,000
Security Engineer
Security Engineer

RouteOne • Farmington Hills (MI)

On-site
USD 85,000 - 115,000
Information Security Analyst
Information Security Analyst

Cisive • Maryland

Hybrid
USD 80,000 - 110,000