Technology Risk - Vice President - Security Engineer (Dallas, TX)

Goldman Sachs

Dallas (TX)

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Goldman Sachs is looking for a Windows Platform Security Engineer to design and maintain security controls across its enterprise Windows ecosystem. The ideal candidate will possess deep expertise in OS hardening, endpoint protection, identity governance, and modern workplace technologies.

The role requires at least eight years of relevant experience and strong skills in security configuration management and IAM solutions. Join Goldman Sachs to contribute significantly to cybersecurity in a dynamic environment.

Qualifications

  • Minimum of eight years of experience in Windows platform security or a related field.
  • In-depth knowledge of Windows OS hardening for workstations and servers.
  • Experience in identity and access management solutions including MFA.

Responsibilities

  • Design and maintain security controls for the Windows ecosystem.
  • Collaborate with various teams to ensure a consistent security posture.
  • Conduct vulnerability assessments and remediation planning.

Skills

Windows platform security experience
Security configuration management tools
Technical influence and collaboration
Complex technical infrastructure comprehension
Strong communication skills

Tools

EDR/XDR platforms
Patch management tools
Mobile device management tooling

Job description

Job Description

Windows Platform Security Engineer to design and maintain comprehensive security controls across enterprise Windows ecosystem. The ideal candidate will possess deep expertise spanning operating system hardening, endpoint protection, identity governance, modern workplace technologies, and hybrid cloud environments.

Job Duties
  • Design, implement, and maintain security baselines and hardening standards across the Windows platform (client and server operating systems).
  • Administer and optimize endpoint security tooling, including EDR/XDR, antivirus, and threat detection solutions.
  • Manage Identity and Access Management (IAM) controls, including authentication, authorization, privileged access, and conditional access policies.
  • Architect and enforce network security controls across on-premises and cloud environments, including proxy and web gateway solutions.
  • Collaborate with Infrastructure, Cloud, and Cyber Defense teams to ensure consistent security posture across hybrid environments.
  • Conduct vulnerability assessments and remediation planning.
  • Apply security best practices to harden OSes, maintain secure configurations and reduce host attack surface.
  • Draft security policies, standards and procedures.
  • Contribute to technical and business discussions for security strategy with an emerging threat landscape.
  • Design and develop for shared services, workflows and processes for on-premises and hybrid (on prem + cloud) solutions.
  • Design for integrated security controls, workflows, data protection, authentication and authorization.
  • Design security for monitoring, logging, IAM, encryption, data protection, detection and preventive controls.
  • Advise and design with commercial and open-source security tools and controls.
  • Stay up to date with cybersecurity threats, risks and vulnerabilities with potential impact on services.
  • Secure modern workplace solutions including Windows Desktops, productivity solutions, and enterprise browser deployments.
Skills And Experience
  • At least eight-plus years’ experience in Windows platform security or a related role.
  • Proficient with security configuration management tools.
  • Ability to influence technical teams, business units and collaborate to reduce attack surface.
  • Capacity to comprehend complex technical infrastructure, identities, access controls and least privilege.
  • Strong written and oral communication skills across varying levels of the organization.
Windows Operating System Security
  • In-depth knowledge of Windows OS hardening (Workstations and Windows Servers).
  • Experience with Group Policy (GPO), Security Baselines, and hardening Benchmarks.
Endpoint Security Tools
  • Experience with EDR/XDR platforms.
  • Configuration of endpoint protection, threat hunting, and automated remediation.
  • Experience with patch management and endpoint compliance / mobile device management tooling.
Identity & Access Management (IAM)
  • Understanding of identity & access management solutions.
  • Implementation of Conditional Access, Multi-Factor Authentication (MFA), and Privileged Identity Management (PIM).
  • Understanding of authentication protocols (Kerberos, NTLM, SAML, OAuth, OpenID Connect).
  • Experience with Single Sign-On (SSO) and identity lifecycle governance.
Windows Desktops & Modern Workplace
  • Experience securing Windows Desktop deployments.
  • Knowledge of provisioning policies, security baselines, and access controls for Windows Desktops.
  • Experience with modern workplace productivity tooling on desktop.
Browser Security
  • Experience managing and securing enterprise browsers.
  • Configuration of browser policies, extension governance, and safe browsing controls.
Networking & Proxy Solutions
  • Strong understanding of networking fundamentals (TCP/IP, DNS, DHCP, VPN, firewalls).
  • Experience with proxy and secure web gateway solutions.
  • Knowledge of network segmentation, Zero Trust networking, and Secure Access Service Edge (SASE) concepts.
Cloud Security
  • Demonstrable experience securing cloud environments.
  • Familiarity with network security groups (NSGs).
  • Understanding of hybrid identity, RBAC, and cloud security posture management (CSPM).
  • Experience managing security across both on-premises and cloud (hybrid) architectures.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Technology Risk - Vice President - Security Architecture (Dallas, TX)
Technology Risk - Vice President - Security Architecture (Dallas, TX)

Goldman Sachs • Dallas (WV)

On-site
USD 130,000 - 170,000
IT Security Engineer
IT Security Engineer

Janestreet • New York (NY)

On-site
USD 95,000 - 130,000
Windows Systems Engineer
Windows Systems Engineer

VTG • Herndon (VA)

On-site
USD 120,000 - 150,000
Senior Security Program Lead
Senior Security Program Lead

GlobalSource IT • Columbia (SC)

On-site
USD 90,000 - 120,000
Competitive compensation
Professional growth opportunities
Collaborative team environment
+1
Windows Systems Engineer
Windows Systems Engineer

VT Group (VTG) • Herndon (VA)

On-site
USD 120,000 - 150,000
Windows Systems Engineer
Windows Systems Engineer

Vosper Thornycroft Group • Herndon (VA)

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
IT Security Administrator
IT Security Administrator

Jobtailor • Frederick (MD)

On-site
USD 85,000 - 118,000
Sr. Security Risk Analyst
Sr. Security Risk Analyst

VC5 Consulting • Houston (TX)

On-site
USD 110,000 - 140,000
Information Security Engineer
Information Security Engineer

eTrepid • Mechanicsville (MD)

On-site
USD 90,000 - 130,000