Enable job alerts via email!

Senior IT Security Engineer

Arhaus

Boston Heights (OH)

On-site

USD 100,000 - 150,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Arhaus seeks a Senior IT Security Engineer to lead security efforts across its complex infrastructure. The role involves designing robust security solutions, overseeing incident responses, and ensuring compliance with regulations. Ideal candidates will have a strong background in cybersecurity engineering, leadership experience, and a deep understanding of cloud security frameworks.

Qualifications

  • 5+ years of progressive hands-on experience in cybersecurity engineering with leadership responsibilities.
  • Deep experience with cloud platforms (AWS and/or Azure) and their security services.
  • Proven experience with enterprise security tools.

Responsibilities

  • Lead design, implementation, and optimization of security controls across on-premise and cloud.
  • Oversee incident response lifecycle and mentor junior team members.
  • Define security policies and ensure compliance with industry standards.

Skills

Cybersecurity Engineering
Leadership
Scripting/Automation
Cloud Security
Compliance Knowledge

Education

Bachelor’s degree in Computer Science, Information Security, or a related field

Tools

Splunk
CrowdStrike
Qualys
Palo Alto Networks
Fortinet

Job description

Arhaus was founded in 1986 on a simple idea: Furniture and décor should be sustainably sourced, lovingly made, and built to last. Today, we partner with artisans around the world who share our vision, creating beautiful, heirloom-quality pieces that can be used—and loved—for generations.

As a Senior IT Security Engineer, you will play a critical leadership role in designing, implementing, and managing advanced security solutions that protect our complex hybrid infrastructure—including data centers, cloud environments (AWS, Azure), eCommerce platforms, distribution centers, call centers, and retail store systems. You will lead cross-functional efforts to integrate security into infrastructure, applications, and business operations, and act as a trusted advisor to IT, DevOps, Compliance, and business stakeholders.

Essential Duties & Responsibilities:

  • Lead the design, implementation, and optimization of security controls and tools across on-premise and cloud environments, ensuring robust protection of distributed systems.
  • Oversee and enhance the incident response lifecycle—monitoring, triaging, investigating, and remediating security incidents while mentoring junior team members on best practices.
  • Conduct and guide advanced threat modeling and risk assessments for new technologies, infrastructure changes, and third-party services.
  • Define, refine, and enforce security policies, standards, and procedures, ensuring alignment with industry frameworks such as NIST, CIS, and PCI-DSS.
  • Provide technical leadership to IT, DevOps, and Data Engineering teams to ensure secure-by-design architectures and automated security across infrastructure and CI/CD pipelines.
  • Administer and tune enterprise-grade security tools and platforms (e.g., SIEM, IDS/IPS, endpoint protection, firewalls, WAFs, vulnerability scanners) and ensure their integration with monitoring and alerting systems.
  • Lead and participate in security audits, penetration testing efforts, and periodic risk assessments; drive remediation efforts based on findings.
  • Spearhead security strategy initiatives and threat landscape analysis to guide technology investments and control enhancements.
  • Support and help lead regulatory compliance efforts (e.g., PCI-DSS, SOX, CCPA) and interface with auditors, legal, and risk management functions.
  • Mentor junior engineers and contribute to knowledge-sharing across the security and IT organization.

Requirements:

  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent professional experience.
  • 5+ years of progressive hands-on experience in cybersecurity engineering, including leadership or mentoring responsibilities.
  • Expertise in securing infrastructure, networks, applications, and cloud environments.
  • Deep experience with cloud platforms (AWS and/or Azure) and their security services (e.g., IAM, VPC security, KMS, Security Hub).
  • Proven experience with enterprise security tools (e.g., Splunk, CrowdStrike, Qualys, Palo Alto Networks, Fortinet).
  • Strong proficiency in scripting or automation (e.g., Python, PowerShell, Bash) for security operations and tooling.
  • In-depth understanding of compliance and regulatory requirements such as PCI-DSS, SOX, and GDPR.

Preferred:

  • Industry certifications such as CISSP, GIAC, OSCP, AWS Certified Security Specialty, or similar.
  • Experience with security for data platforms (e.g., Snowflake, BigQuery, Redshift).
  • Background securing eCommerce platforms and APIs (e.g., Shopify, Magento, custom apps).
  • Familiarity with retail IT infrastructure, including POS systems, wireless networks, and store operations.
  • Understanding of Zero Trust security models and identity solutions like Okta, Azure AD.


Arhaus is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind. Arhaus is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decisions at Arhaus are based on business needs, job requirements, and individual qualifications, without regard to race, color, sex, sexual orientation, gender identity, religion or belief, family or parental status, or any other status protected by the laws or regulations in the locations where we operate. Arhaus will not tolerate discrimination or harassment based on any of these characteristics. Arhaus encourages applicants of all ages.

Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Sr Network Security Engineer (REMOTE)

Lensa

null null

Remote

Remote

USD 120,000 - 160,000

Full time

Today
Be an early applicant

Senior Network/Security Engineer

Meridian IT

Deerfield null

Remote

Remote

USD 110,000 - 150,000

Full time

Yesterday
Be an early applicant

Sr. Network Security Engineer

Telos Corporation

Ashburn null

Remote

Remote

USD 120,000 - 150,000

Full time

Yesterday
Be an early applicant

Sr. Network Security Engineer

MedStar Health

Ashburn null

Remote

Remote

USD 110,000 - 150,000

Full time

Today
Be an early applicant

Sr. Network Security Engineer

McKesson’s Corporate

Irving null

Remote

Remote

USD 144,000 - 241,000

Full time

7 days ago
Be an early applicant

Senior Cloud Security Engineer (Remote)

Prog Leasing, LLC

null null

Remote

Remote

USD 120,000 - 160,000

Full time

2 days ago
Be an early applicant

Senior Cloud Network Security Engineer

The Brixton Group

Charlotte null

Remote

Remote

USD 120,000 - 140,000

Full time

14 days ago

Senior Cloud Security Engineer

Tech Cratic

null null

Remote

Remote

USD 112,000 - 179,000

Full time

9 days ago

Senior Cloud Security Engineer

Avant Digital Inc.

San Francisco null

Remote

Remote

USD 120,000 - 180,000

Full time

10 days ago