Senior Security Engineer
$85,000–$115,000 year
HybridFramingham, Massachusetts, United States
Job Summary
Build, configure, and maintain security infrastructure including firewalls, identity platforms, and cloud controls across on-premises and Microsoft Azure environments. Lead incident detection, investigation, containment, and recovery while managing third-party risk processes from end to end. Implement cloud security controls, tune Proofpoint endpoint and data protection rules, and conduct regular vulnerability assessments using SecureWorks or Qualys. Develop automation scripts to improve operational efficiency and ensure adherence to HIPAA requirements. Serve as the primary liaison with the Managed Security Service Provider to coordinate threat monitoring and response efforts.
Required Qualifications
- Infrastructure-focused security engineering background, able to both set strategy and execute hands-on.
- Deep understanding of network security fundamentals (TCP/IP, DNS, routing, firewalls).
- Hands-on experience with enterprise-grade firewalls and network security tools.
- Proficiency in Microsoft Active Directory and Azure Active Directory (Microsoft Entra ID).
- Strong knowledge of Azure cloud security best practices.
- Experience with endpoint protection and data loss prevention (DLP) technologies, preferably Proofpoint tools.
- Experience leading or running third-party risk / vendor security assessment processes.
- Excellent problem-solving, communication, and collaboration skills, with the ability to work both independently and across cross-functional teams.
- Bachelor's degree in Cybersecurity, Computer Science, or a related field.
- Approximately 10+ years of security engineering experience, with demonstrated depth in infrastructure and cloud security.
Desired Qualifications
- Fortinet (preferred).
- Microsoft Intune (MDM).
- Scripting with PowerShell, Python, or Bash.
- SIEM / XDR platforms such as Microsoft Sentinel or SecureWorks; experience with comparable platforms is transferable.
- Experience working with MSSPs and vulnerability detection and response platforms.
- Knowledge of healthcare compliance standards (HIPAA, HITECH).
- Experience managing security awareness training.
- Experience with Okta MFA configuration.
- CISSP.
- Microsoft Certified: Azure Security Engineer Associate (AZ-500).
- CompTIA Security+.
- CISM.
- CCSP.
- HCISPP.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.