- Role: SeniorInformation Security Engineer
- Skills: Information Security, Power Shell, Security Operations, Networking & Infrastructure Security, Identity & Access Management (IAM), Risk & Compliance Management, Security Monitoring Tools, Cloud Security Concepts
- Experience: 5+ years
- Location: Chicago IL - Day 1 onsite
Job Description:
Role Summary:
We are seeking a skilled Information Security Engineer to support enterprise security operations, security validation, vulnerability management, identity management, compliance monitoring, and cloud security initiatives.
The role is responsible for protecting enterprise infrastructure, applications, cloud environments, and data assets through proactive security controls, continuous monitoring, risk identification, and security governance practices.
The ideal candidate will possess strong security fundamentals, experience in enterprise security operations, and hands-on exposure to modern cybersecurity technologies.
Key Responsibilities
Security Operations
- Monitor and support enterprise security infrastructure and controls.
- Investigate security alerts, threats, and incidents.
- Support security monitoring, threat detection, and incident response activities.
- Collaborate with business and technology teams to address security risks.
Vulnerability & Risk Management
- Perform vulnerability assessments and validation activities.
- Track remediation activities and verify closure of security findings.
- Support risk assessment and mitigation initiatives.
- Monitor security posture across infrastructure and cloud environments.
Identity & Access Management
- Support IAM solutions and privileged access controls.
- Validate authentication, authorization, and access provisioning processes.
- Review access controls and compliance requirements.
- Ensure least-privilege and segregation-of-duty principles are followed.
- Support security governance across AWS, Azure, and GCP environments.
- Review cloud configurations and identify security gaps.
- Monitor cloud security controls and policy compliance.
- Support secure cloud adoption and cloud governance initiatives.
Security Compliance & Governance
- Support compliance initiatives aligned to ISO 27001, NIST, CIS, SOC2, and internal standards.
- Participate in security audits and control assessments.
- Maintain security documentation, evidence, and reports.
- Support implementation of security best practices and policies.
Security Automation
- Automate security monitoring, reporting, and validation activities.
- Develop scripts and automation solutions to improve security operations efficiency.
- Support integration of security controls within DevOps and CI/CD processes.