Sr. Security Engineer, NYC NY - Hybrid Onsite

Stellent IT LLC

New York (NY)

Hybrid

USD 150,000 - 190,000

Full time

11 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Stellent IT LLC in New York, NY, is seeking an experienced Senior Security Engineer to join its Information Security team in a fast-paced financial services environment. Reporting to the Cybersecurity Manager, you will design, implement, administer, and continuously improve enterprise security controls that protect systems, applications, networks, data, and information assets.

The Senior Security Engineer will lead across identity and access management, cloud and endpoint security, vulnerability

Qualifications

  • 7+ years in cybersecurity with engineering or operations experience.
  • Experience leading security projects from planning to operation.
  • Proficient in enterprise security tech across cloud, network, endpoint, identity.
  • Knowledge of SIEM, EDR, vulnerability scanners, and email security.
  • Experience securing Azure and Microsoft 365 environments.
  • Experience in regulated industries such as financial services.

Responsibilities

  • Design, implement, maintain, and improve security controls across cloud, network, endpoint.
  • Lead security engineering initiatives and architecture reviews.
  • Manage identity security controls including Entra ID and MFA.
  • Operate security tools: SIEM, DLP, vulnerability management, email security.
  • Lead vulnerability management activities and remediation.
  • Support incident response and threat hunting.
  • Develop security procedures and governance materials.
  • Perform risk assessments and recommend mitigations.
  • Support audits and compliance with ISO 27001/NIST/SOC.
  • Review security changes to systems and configurations.
  • Collaborate with IT and business teams to integrate security requirements.
  • Monitor emerging threats and recommend improvements.

Skills

Security engineering
Architecture design
Threat modeling
Communication
Independent work

Education

Bachelors in Cybersecurity or related

Tools

SIEM
EDR
IDS/IPS
Azure AD
Microsoft Defender

Job description

Sr. Security Engineer

NYC NY - Hybrid Onsite

12 + Months (Contract to hire preferred)

Virtual Interview

JD:

Location: HYBRID - must live in NY, NJ, or CT, expectation is 3 days per week in the NYC midtown office, will be flexibility to this after first 6 months

Position Summary:

Our client is seeking an experienced Senior Security Engineer to join its Information Security team within a fast-paced financial services environment. Reporting to the Cybersecurity Manager, this role will help design, implement, administer, and continuously improve enterprise security controls that protect the organization's systems, applications, networks, data, and information assets.

The Senior Security Engineer will serve as a technical leader across identity and access management, cloud security, endpoint security, vulnerability management, network security, data protection, security monitoring, and incident response. This role partners with Infrastructure, Cloud, Networking, Application Development, business stakeholders, auditors, and security service providers to strengthen Our client's security posture, support regulatory and audit requirements, and advance strategic security initiatives.

The ideal candidate brings strong technical judgment, communication skills, ownership, and a customer-service mindset, with experience applying security frameworks and controls aligned with ISO 27001, NIST CSF, NIST RMF, CIS Controls, SOC requirements, and financial services regulatory expectations.

Core Responsibilities:
  • Design, implement, maintain, and continuously improve enterprise security controls across cloud, network, endpoint, identity, data protection, and monitoring domains.
  • Lead security engineering initiatives, including architecture reviews, secure design recommendations, technical implementation, and operational support of security technologies.
  • Manage and enhance identity security controls, including Microsoft Entra ID, Conditional Access, multi-factor authentication, privileged access management, role-based access controls, and identity governance.
  • Manage and optimize security tools and platforms, including endpoint protection, SIEM, DLP, vulnerability management, email security, network security, and cloud security solutions.
  • Lead vulnerability management activities, including assessments, remediation planning, risk prioritization, reporting, and coordination with technology teams.
  • Support incident response, threat hunting, root cause analysis, forensics, detection engineering, automation workflows, and incident response playbooks.
  • Develop and maintain security procedures and standards, technical baselines, procedures, implementation guidance, and other governance materials.
  • Perform technical risk assessments and recommend risk mitigation strategies for systems, applications, vendors, infrastructure, cloud environments, and business processes.
  • Support regulatory, audit, and compliance initiatives, including ISO 27001, NIST Cybersecurity Framework, SOC examinations, and other applicable security standards.
  • Review and approve security-related changes to enterprise systems, including firewall rules, cloud configurations, privileged access requests, and infrastructure modifications.
  • Partner with IT and business teams to integrate security requirements into enterprise initiatives and operational processes while balancing security, operational, and business objectives.
  • Evaluate emerging cybersecurity threats, technologies, and industry best practices; recommend improvements to strengthen security maturity and operational effectiveness.
Work Arrangements & Availability:
  • Our client offers a hybrid work program, with remote work opportunities based on role and department needs. Employees are expected to work in the office at least three days per week, with schedules determined by management based on business and operational requirements.
  • Candidates must be able to provide onsite support during business-critical incidents, technology outages, audits, and operational events, including occasional early morning coverage beginning as early as 7:00 AM or after-hours support when required.
Required Qualifications:
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field; equivalent experience may be considered.
  • 7+ years of cybersecurity experience, including security engineering, architecture, or advanced security operations responsibilities.
  • Experience leading security projects from planning and design through implementation and operational support.
  • Experience designing, implementing, and supporting enterprise security technologies and controls across cloud, network, endpoint, identity, vulnerability management, and monitoring domains.
  • Strong knowledge of security tools and platforms, including SIEM, EDR/EPS, IDS/IPS, vulnerability scanners, endpoint protection, email security, and network security solutions.
  • Experience securing cloud environments, preferably Microsoft Azure and Microsoft 365/O365, and working with cloud security architectures.
  • Strong understanding of networking concepts and protocols, including TCP/IP, DNS, DHCP, routing, switching, firewalls, VPN, WAFs, segmentation, and IDS/IPS/HIDS technologies.
  • Strong experience with Windows, Active Directory, Azure AD, Group Policy, event logs, and security hardening.
  • Understanding common attack patterns, threat progression, MITRE ATT&CK , NIST, CIS, and threat intelligence frameworks.
  • Experience supporting security programs within regulated industries such as financial services, banking, insurance, healthcare, or legal services.
  • Strong analytical, problem-solving, critical-thinking, troubleshooting, organizational, and prioritization skills.
  • Excellent written, verbal, and interpersonal communication skills, with the ability to communicate effectively with technical and non-technical stakeholders, including executive leadership.
  • Demonstrated ability to work independently and collaboratively, take ownership of issues, build relationships with technology teams, and influence security outcomes across the organization.
Preferred Qualifications:
  • Experience with Microsoft Azure security services, Microsoft Entra ID, Microsoft Purview, DLP, and information protection technologies.
  • Experience with network firewalls, network segmentation, vulnerability management platforms such as Tenable, and endpoint security platforms such as SentinelOne or Microsoft Defender.
  • Experience with cloud security platforms or CNAPP technologies.
  • Experience supporting ISO 27001, NIST, or financial services compliance programs.
  • Industry certifications such as CISSP, CCSP, CISM, or equivalent certifications.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Friedman Williams • New York (NY)

On-site
USD 120,000 - 150,000
Senior Security Engineer - C2H, W2 Only, No 3rd Party
Senior Security Engineer - C2H, W2 Only, No 3rd Party

CBTS • New York (NY)

Hybrid
USD 103,000 - 117,000
Senior Security Engineer
Senior Security Engineer

Chris Baily • New York (NY)

On-site
USD 150,000 - 190,000
On-site in NYC
Competitive salary
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Cyber Security Engineer (Team Lead)-W2
Cyber Security Engineer (Team Lead)-W2

Saransh Inc • Mahwah (NJ)

On-site
USD 130,000 - 170,000
Senior Security Engineer
Senior Security Engineer

Green Key Resources • New York (NY)

Hybrid
USD 140,000 - 190,000
Hybrid work environment
Senior Security Analyst
Senior Security Analyst

StaffXpert LLC • New York (NY)

Hybrid
USD 120,000 - 190,000
Sr. Security Engineer
Sr. Security Engineer

California Water Service • San Jose (CA)

On-site
USD 180,000 - 240,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Burlington Stores, Inc. • Beverly (NJ)

On-site
USD 100,000 - 130,000