Position Overview
The Senior Information Security Engineer is tasked with overseeing the development and deployment of advanced security solutions across an organization's technology stack. They lead complex projects, such as building secure cloud environments or fortifying enterprise-wide systems against sophisticated attacks. Their responsibilities include reviewing and updating security architectures to address evolving threats and compliance needs, guiding other engineers, managing cross‑functional initiatives, and ensuring security standards are met during system upgrades or migrations. They also analyze incident trends and recommend long‑term improvements to enhance overall security resilience.
Essential Responsibilities
- Implement security solutions that reinforce a defense‑in‑depth and zero‑trust posture.
- Contribute to complex security projects.
- Install, configure, maintain, patch, and troubleshoot all information security tools and infrastructure, including SIEM, SOAR, WAF, PAM, firewalls, and secure web/email gateways.
- Perform routine configuration reviews of information security technology and infrastructure against industry best practices, vendor‑supplied recommendations, and the company's internal baselines.
- Create and maintain internal documentation such as network, architectural and data flow diagrams, and internal procedures for all information‑security‑owned products and tools.
- Train the security team on newly deployed technologies and act as an escalation point and subject‑matter expert for all information‑security‑owned systems.
- Support proof‑of‑concept efforts of new security technology solutions while working closely with vendors and resellers, implementing and testing novel technologies to safeguard access to resources, enterprise networks, and computer systems.
- Participate in and lead security incident response procedures as outlined in the company security incident response plan, including triage and communication with senior leadership.
- Work closely with the Governance, Risk, and Compliance team to document internal operational and audit procedures, gather technical evidence, and speak to cybersecurity procedures and standards.
Qualifications
- Bachelor's degree in computer science, cybersecurity (or related field), or 5 years of professional experience as an information security engineer.
- Extensive hands‑on experience with security tools such as SIEM, SOAR, WAF, PAM, firewalls, and secure web/email gateways.
- Articulate with strong business acumen and executive presence.
- Coachable and willing to learn with an emphasis on a positive demeanor.
- Ability to take initiative and drive results.
- Successful completion of the Nlets fingerprinting background assessment.
Preferred
- Information security industry certifications such as CISSP, CompTIA Security+, CEH, OSCP.
- Hands‑on experience with the CrowdStrike suite of cybersecurity tools.
- Proficiency in scripting languages (e.g., Python, PowerShell, Bash) for automation and tool development.
- Extensive knowledge of networking protocols, operating systems (Windows, Linux).
- Experience in security operations and incident response.
- Experience securing cloud‑native environments (Kubernetes, Docker) and implementing DevSecOps practices.
- Experience with zero‑trust architecture.
- Knowledge of machine learning for anomaly detection or threat intelligence.
Verra Mobility Values
- Own It – focus on high performance, accountability, and innovation.
- Do What’s Right – champion integrity, good judgment, and ethical behavior.
- Choose Courage Over Comfort – pursue progress, challenge assumptions, and address issues early.
- Win Together – collaborate, value differences, think globally, and develop others.
Verra Mobility is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.