Cybersecurity Engineer
IAM • Zero Trust • Detection & Response • Cloud Security • DevSecOps
Role: Cybersecurity Engineer
Work Location: Houston, TX (3 days onsite minimum)
Number of Positions: 1
Position Type: Full-Time / Exempt
Reports To: IT Director – Infrastructure & Cybersecurity
Department: Information Technology
US CITIZENS AND GREEN CARD HOLDERS ARE ENCOURAGED TO APPLY. WE ARE UNABLE TO PROVIDE SPONSORSHIP AT THIS TIME.
LOCAL CANDIDATES ONLY OR THOSE WILLING TO RELOCATE AT OWN EXPENSE. THERE WILL BE NO RELOCATION ASSISTANCE PROVIDED.
COMPANY DESCRIPTION
Our client is an organization operating in a regulated, industrial environment with field-operations and distributed workforce needs. The company relies on enterprise-grade Microsoft 365 and Azure security platforms to protect users, endpoints, cloud services, networks, applications, and data across its workforce.
JOB SUMMARY
We are seeking a hands-on Cybersecurity Engineer to design, implement, and continuously improve security controls that protect the organization's users, endpoints, cloud services, networks, applications, and data. This role is responsible for strengthening identity and access management, supporting Zero Trust security principles, improving detection and response capabilities, automating security operations, and helping ensure compliance with internal policies and industry standards. The ideal candidate has strong experience with IAM, security monitoring, vulnerability management, endpoint protection, cloud security, scripting, and incident response, with the ability to work closely with Infrastructure, HR, Legal, Compliance, and business teams to reduce risk across the enterprise.
REQUIREMENTS
· Bachelor’s degree in computer science, Cybersecurity, Information Security, Information Technology, or a related field, or equivalent combination of education and experience.
· Minimum of 5 years of experience in cybersecurity engineering, security operations, identity and access management, infrastructure security, cloud security, or a similar role.
· Hands-on experience with identity and access management technologies such as Active Directory, Microsoft Entra ID, Okta, IAM governance platforms, PAM, MFA, SSO, SAML, OAuth, and Conditional Access.
· Strong understanding of RBAC, least privilege, privileged access management, identity lifecycle management, access reviews, and user provisioning and deprovisioning processes.
· Experience with security platforms such as SIEM, SOAR, EDR/XDR, vulnerability scanners, endpoint protection, firewalls, IDS/IPS, email security, DLP, and cloud security tools.
· Experience with Microsoft security technologies such as Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Sentinel, Microsoft Entra ID Governance, Microsoft Entra Privileged Identity Management, Microsoft Purview, Microsoft Defender for Cloud, and Intune security or compliance policies.
· Working knowledge of Zero Trust architecture, SASE/ZTNA, secure remote access, device compliance, network segmentation, and identity-based security controls.
· Proficiency with cloud security concepts, governance, logging, monitoring, and secure configuration for Azure, AWS, or other cloud platforms.
· Experience with vulnerability management, patch prioritization, risk scoring, remediation tracking, and reporting against defined service levels.
· Experience developing or maintaining detection rules, threat-hunting queries, dashboards, reports, incident response playbooks, and automated remediation workflows.
· Proficiency in scripting and automation using PowerShell, Python, Bash, APIs, or similar technologies.
· Familiarity with DevSecOps practices, secure CI/CD pipelines, infrastructure as code scanning, secrets management, code scanning, dependency scanning, and container security.
· Understanding of AI security risks, AI-enabled threats, prompt injection concepts, data leakage risks, and enterprise controls for responsible use of AI tools.
· Strong knowledge of security frameworks and compliance standards such as NIST Cybersecurity Framework, CIS Controls, ISO 27001, SOC 2, SOX, PCI, or other applicable regulatory requirements.
· Excellent analytical, troubleshooting, documentation, communication, and cross-functional collaboration skills.
Preferred Qualifications
· Relevant certifications such as CISSP, CISM, CISA, Security+, CySA+, CEH, GIAC, SC-200, SC-300, SC-400, AZ-500, or equivalent experience.
· Experience supporting Microsoft-heavy security environments, including Defender XDR, Sentinel, Entra ID Governance, PIM, Purview DLP, Defender for Cloud, and Intune.
· Experience with threat detection engineering, KQL, Sigma, YARA, MITRE ATT&CK mapping, and threat-informed defense.
· Experience with ransomware preparedness, cyber resilience, backup and recovery validation, incident tabletop exercises, and business continuity coordination.
· Experience with OT, IoT, industrial control systems, or field operations security is a plus where applicable.
· Experience with third-party risk, vendor security reviews, security awareness, phishing defense, and policy development.
DUTIES & RESPONSIBILITIES
Identity & Access Management
· Design, develop, and maintain secure user provisioning and access management processes, including account creation, modification, termination, access certification, and privileged access reviews.
· Partner with HR and IT teams to automate joiner, mover, and leaver workflows and ensure timely removal or adjustment of access based on role changes and employment status.
· Implement and enforce role-based access control, least privilege, separation of duties, privileged identity management, and identity governance practices.
· Administer and support IAM technologies including Active Directory, Microsoft Entra ID, Okta or similar platforms, single sign-on, SAML, OAuth, MFA, Conditional Access, and privileged access management.
Zero Trust & Network Security
· Support Zero Trust security initiatives, including identity-based access controls, device posture validation, secure remote access, network segmentation, SASE/ZTNA technologies, and continuous verification of user and device risk.
· Design, implement, and maintain security solutions such as firewalls, endpoint protection, EDR/XDR, SIEM, SOAR, vulnerability management tools, email security, DLP, and cloud security controls.
Detection, Response & Threat Management
· Monitor security events and alerts, investigate incidents, perform threat hunting, and support containment, eradication, recovery, and post-incident review activities.
· Develop and maintain detection logic, dashboards, reports, playbooks, and automated response workflows using SIEM/SOAR platforms such as Microsoft Sentinel, Splunk, CrowdStrike, Logic Apps, or similar technologies.
· Evaluate emerging threats and technologies, including AI-enabled threats, AI security governance, ransomware resilience, identity threat detection, and modern attacker techniques, and recommend practical improvements to the security program.
Vulnerability Management & Cloud Security
· Conduct vulnerability assessments, coordinate remediation efforts, track remediation against defined SLAs, and work with infrastructure and application teams to reduce exposure across servers, endpoints, network devices, cloud resources, and applications.
· Support cloud security posture management, secure configuration, logging, monitoring, and governance for Azure or other cloud platforms.
· Assist with data security initiatives, including data classification, sensitivity labeling, encryption, DLP, insider risk monitoring, and protection of regulated or sensitive information.
DevSecOps & Automation
· Support DevSecOps practices by integrating security into development workflows, CI/CD pipelines, infrastructure as code, secrets management, code scanning, dependency scanning, and container or Kubernetes security where applicable.
· Develop and maintain scripts or automation using PowerShell, Python, Bash, APIs, or similar tools to improve security operations, reporting, access reviews, and incident response efficiency.
Compliance & Risk
· Assist with security audits, risk assessments, policy reviews, control testing, and compliance activities aligned to frameworks such as NIST Cybersecurity Framework, CIS Controls, ISO 27001, SOC 2, SOX, PCI, or other applicable requirements.
BENEFITS
· Medical, dental, vision, coverage in addition to life and disability insurance plans.
· Paid Vacation Days and Paid Holidays.
· Retirement and Savings (401K) Plan with Company match.
· Referral bonus with no cap on amount of referrals.
· Paid Training.