Sr. Infosec Engineer

De Leon Consulting Group

Flower Mound (TX)

On-site

USD 120,000 - 170,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

De Leon Consulting Group seeks a Senior Information Security Engineer to coordinate the Governance, Risk and Compliance program and align with security policies and processes. You will lead assessments, identify risks, and communicate posture to leadership as the domain specialist for Security Governance, Risk, and Compliance.

You will drive the Information Security Risk Program, craft methodologies and policies, and mentor security analysts while collaborating with engineering and business

Qualifications

  • Experience implementing and assessing security in cloud-hosted environments.
  • Strong knowledge of security technologies, information systems and risk assessment methods.
  • Ability to learn new and evolving technologies in a fast-paced setting.
  • 8+ years in technical roles with 5+ years in information security.

Responsibilities

  • Lead and drive the Information Security Risk Program development and execution.
  • Develop a Security Risk Assessment methodology, policy, strategy and process.
  • Collaborate with local and remote security teams and owners to shape risk roadmap.
  • Lead risk assessments and document significant information security risks across systems.
  • Partner with Engineering on IT initiatives and security controls for efficiency.
  • Drive remediation efforts and track closure of deficiencies.
  • Advance GRC tools to share risk information with senior leadership.
  • Provide expert-level security consulting to business partners.
  • Maintain knowledge of standard methodologies and security trends.
  • Identify opportunities for collaboration and alignment across the program.
  • Mentor and train other security analysts.

Skills

Cloud security
Risk assessment
Security governance
Security standards (ISO/NIST/PCI)
Communication
Leadership & collaboration

Job description

At DLC, we know that technology connects and drives us. Our mission is to simplify technology so our customers can focus on their customers and businesses.

As a Senior Information Security Engineer, you will work closely with the Manager of the Governance, Risk and Compliance Program. The role will coordinate the DLC program in alignment with established security policies, standards, methodologies, and processes. You will lead and drive assessments to ensure compliance with internal and external requirements, identifying risks, and communicating the posture to the leadership team. You will also act as the domain specialist for Security Governance, Risk, and Compliance.

Key Responsibilities
  • Assist and influence management in the development, evolution, and execution of security risk strategies.
  • Take the lead in the creation effort of the Information Security Risk Program by crafting a Security Risk Assessment methodology, policy, strategy, and process.
  • Proactively work with local and remote Security teams and business owners to define the risk roadmap and program direction. Communicate and advocate for security enhancements and continuous improvements.
  • Lead gap and risk assessments to identify and document significant information security risks associated with all aspects of our systems, data, and infrastructure.
  • Partner with Engineering leadership on the development, and review of IT initiatives and Security controls to identify operational efficiency.
  • Lead remediation efforts and document completion status of deficiencies.
  • Advance GRC and other Security tools to collect, maintain and share security risk information with senior leadership.
  • Serve as a project lead by providing professional and expert-level security consulting services to business owners and partners.
  • Maintain broad knowledge of standard methodologies and trends in the field of Information Security and other technologies relevant to systems operated by the Operations teams.
  • Find opportunities for collaboration, inclusion, and alignment across the security program.
  • Act as a mentor and train other security analysts.
The Ideal Candidate Would Possess
  • Extensive experience implementing and assessing security in a cloud-hosted environment.
  • High-level of knowledge of security technologies, information systems, and risk assessment methodologies.
  • Desire to learn new and evolving technologies in a fast-paced environment.
  • The ideal candidate will have at least 8+ years of working within the technical arena with 5+ years of information security work experience.
  • Technical background in IT systems and networking in Cloud environments.
  • Experience analyzing vulnerability assessment reports and data and writing risk mitigation plans according to the assessment.
  • Must have the ability to lead and collaborate with technical and non-technical teams to further the goals and mission of the Security Risk and Compliance team
  • Excellent written and oral communication skills, as well as interpersonal skills including the ability to articulate to both technical and non-technical audiences.
  • Experience in security standards such as ISO 27001, 27002, 27005; NIST, COBIT, ITIL, PCI
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security Engineer
Senior Information Security Engineer

Grayson Search Partners • Nashville (TN)

On-site
USD 120,000 - 150,000
Group Director, Cyber Risk & Security Engineering
Group Director, Cyber Risk & Security Engineering

Brobston Group LLC • New York (NY)

On-site
USD 180,000 - 240,000
Senior Manager of Risk and Compliance
Senior Manager of Risk and Compliance

PTR Global • United States

On-site
USD 100,000 - 130,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Senior Security & Compliance Engineer
Senior Security & Compliance Engineer

Advanced Operations Partners • United States

On-site
USD 140,000 - 190,000
Security & Compliance Architect (Governance & Risk)
Security & Compliance Architect (Governance & Risk)

Michels Corporation • Milwaukee (WI)

On-site
Cyber Security Engineer
Cyber Security Engineer

StevenDouglas • West Palm Beach (FL)

On-site
USD 150,000 - 190,000
IT Security Engineer (Onsite)
IT Security Engineer (Onsite)

Colony Brands, Inc. • Monroe (WI)

On-site
USD 85,000 - 115,000
Manager of Information Security and Compliance
Manager of Information Security and Compliance

iboss • United States

On-site
USD 100,000 - 130,000
Health, Vision, Dental
401(k) with company match
Unlimited Paid Time Off
+1