Principal Cybersecurity Infrastructure Engineer
$139,700–$232,900 year
HybridBuffalo, New York, United States
Job Summary
Design and implement enterprise security architectures for Security Service Edge, Zero Trust, and data protection strategies across hybrid and multi-cloud environments. Lead deployment and tuning of Web/Cloud Proxy, CASB, DLP, and ZTNA solutions while establishing operational baselines and automation initiatives. Define testing methodologies, validation frameworks, and security metrics to assess data protection technologies, ensuring alignment with regulatory requirements and business objectives. Collaborate with cross-functional teams to integrate security controls into digital transformation initiatives and advise leadership on technology investments and risk management.
Required Qualifications
- Bachelor's degree
- Minimum of 7 years' relevant work experience
- Combined minimum of 11 years' higher education and/or work experience (in lieu of a degree)
- Advanced understanding of Security Service Edge (SSE), Secure Web Gateway (SWG), CASB, ZTNA, Enterprise Browser, Data Protection, and Zero Trust Architecture principles
- Expertise in designing enterprise-scale cloud security architectures across hybrid and multi-cloud environments
- Expert knowledge of security architecture, infrastructure lifecycle management, vendor best practices, and enterprise systems design
- Excellent ability to translate business, regulatory, and operational requirements into scalable security solutions and technical implementations
- Advanced level of critical thinking, risk analysis, and problem solving
- Excellent communication and interpersonal skills, effectively articulating complex technical concepts to executive, technical, risk, audit, and business audiences
- Experience partnering with senior leaders to design and implement strategic cybersecurity solutions that support business objectives
- Experience effectively collaborating with and influencing peers, stakeholders, and executive leadership
- Demonstrated proficiency in cross-functional collaboration, decision-making, and organizational change management
- Ability to effectively serve in an indirect leadership role while driving enterprise-wide security initiatives
- Advanced understanding of Security Service Edge (SSE), Secure Web Gateway (SWG), CASB, ZTNA, Enterprise Browser, Data Protection, and Zero Trust Architecture principles
- Expertise in designing enterprise-scale cloud security architectures across hybrid and multi-cloud environments
- Expert knowledge of security architecture, infrastructure lifecycle management, vendor best practices, and enterprise systems design
- Excellent ability to translate business, regulatory, and operational requirements into scalable security solutions and technical implementations
- Advanced level of critical thinking, risk analysis, and problem solving
- Excellent communication and interpersonal skills, effectively articulating complex technical concepts to executive, technical, risk, audit, and business audiences
- Experience partnering with senior leaders to design and implement strategic cybersecurity solutions that support business objectives
- Experience effectively collaborating with and influencing peers, stakeholders, and executive leadership
- Demonstrated proficiency in cross-functional collaboration, decision-making, and organizational change management
- Ability to effectively serve in an indirect leadership role while driving enterprise-wide security initiatives
- Four days onsite at our Seneca One Buffalo, NY location
- Flexibility to work from home one day per week
- No supervisory responsibilities
Desired Qualifications
- Advanced ability to analyze large datasets, security telemetry, and operational metrics to identify trends and drive informed decision-making
- Experience securing AI platforms, generative AI applications, and AI-enabled business processes using governance, monitoring, and AI security solutions
- Develop and maintain multi-year technology roadmaps and strategic plans for assigned security platforms, ensuring alignment with enterprise architecture, cybersecurity strategy, and business priorities
- Design and implement security controls supporting regulatory and compliance requirements including NYS DFS, GLBA, FFIEC guidance, data privacy obligations, and internal risk management standards
- Industry certifications such as CISSP, CCSP, GIAC, Microsoft Security Certifications, or equivalent
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.