Security Engineer
American AgCredit · United States of America
- Зарплата
- 96 400 – 164 000 $
- Грейд
- Senior
- Формат
- Удалённо
- Занятость
- Полная
- Категория
- Безопасность
Откликнуться
Прямого контакта в посте нет
Откройте вакансию в Telegram-боте: там весь исходный пост и способ отклика.
Открыть в TelegramОписание
Security Engineer
Why should you join our team?
American AgCredit offers a unique opportunity to be a part of a national financial system supporting those who feed, clothe and fuel the world. We are a growing organization embracing collaboration and innovation while delivering transformative solutions. American AgCredit provides a cultivating environment where you truly make a difference for our customers and teams.
Benefits offered by American AgCredit:
- Commitment to agriculture and the communities we serve
- Family friendly work environment
- Investment in employee development
- Medical, Dental and Vision coverage
- Outstanding 401k – automatic 3% employer contribution, plus match up to 6%
- Generous Paid Time Off (Vacation accrued at 21 days annually, Sick Days accrued at 15 days annually, 12 paid holidays, plus 16 hours of volunteer time)
- Competitive Incentive Compensation Plan
- Disability & Life Insurance
- Employee mental, physical, and financial wellness programs
- The position is bonus eligible based on association and personal performance
Position will be posted until filled.
The Security Engineer is responsible for the operation, administration, optimization, and support of the Association's information security platforms and services. As a member of the Security Operations team, this role performs hands-on security engineering and operations activities designed to identify, investigate, respond to, and remediate cybersecurity threats, vulnerabilities, and exposures.
This position has a primary focus on Vulnerability Management and is responsible for vulnerability assessment, exposure discovery, technical validation, risk-based prioritization, remediation coordination, and issue tracking through resolution. The Security Engineer works closely with infrastructure, application, cloud, endpoint, and other technology teams to ensure vulnerabilities and exposures are identified, understood, and addressed in accordance with established remediation timelines.
In addition to vulnerability management, this role supports security monitoring, incident response, threat hunting, cloud and endpoint security, detection tuning, and security automation. The Security Engineer investigates security events, evaluates control gaps, improves technical controls, and maintains the platforms, integrations, automation, reporting, and processes necessary to protect Association systems and data.
Strong collaboration and communication skills are essential. This role works with technology teams, managed security service providers, vendors, and internal stakeholders to investigate security concerns, provide practical remediation guidance, reduce risk, and improve security operations.
ESSENTIAL DUTIES
- Administer, optimize, and support enterprise security platforms used for vulnerability management, threat detection, endpoint security, cloud security, identity protection, email security, and related security operations.
- Perform and coordinate vulnerability management activities across endpoint, server, application, cloud, network, and internet-facing environments. Identify, validate, prioritize, and drive remediation of vulnerabilities and exposures using risk-based methodologies that consider exploitability, business impact, asset criticality, threat intelligence, and remediation objectives.
- Assess system configurations, security controls, and technology implementations to identify security weaknesses, potential attack paths, and control gaps. Provide technical guidance and remediation recommendations to support secure deployment and operation of Association technologies.
- Monitor security telemetry, threat intelligence, vulnerability disclosures, and attack activity to identify emerging threats. Conduct threat hunting activities and improve detection capabilities to increase security visibility and reduce organizational risk.
- Investigate and respond to cybersecurity incidents, suspicious activity, and security events. Collaborate with technology teams, managed security service providers, and technology vendors to contain threats, resolve issues, and improve defensive capabilities.
- Develop, evaluate, and enhance security tools, automation, integrations, reporting, dashboards, controls, and operational workflows to improve efficiency, increase visibility, reduce manual effort, and support data-driven security operations.
- Develop and maintain operational documentation, procedures, technical runbooks, and knowledge articles that support consistent execution of security operations and vulnerability management activities.
- Evaluate and recommend improvements to security tools, processes, controls, and operational practices.
- Participate in after-hours security incident response activities when necessary.
- Perform other duties as assigned.
LEVELS OF SUPERVISION EXERCISED AND RECEIVED
Exercises no direct supervision. Works under the general direction of the Head of Cybersecurity. Regularly provides technical guidance to technology teams regarding security operations, vulnerability remediation, exposure reduction, and implementation of security controls. Exercises independent judgment in the investigation, analysis, prioritization, and resolution of information security issues.
TYPICAL EDUCATION AND EXPERIENCE
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field; or an equivalent combination of education, technical training, certifications, military service, and professional experience that demonstrates the knowledge and skills required to perform the responsibilities of the position.
- Minimum of 5 years of hands-on experience supporting, administering, troubleshooting, engineering, or securing enterprise technology environments. Experience may be gained through information technology, infrastructure administration, systems administration, cloud administration, endpoint administration, network administration, cybersecurity, security operations, security engineering, or related technical disciplines.
- Experience with vulnerability management, security operations, infrastructure operations, cloud administration, endpoint management, systems administration, network administration, or security engineering is preferred, along with familiarity with vulnerability management principles, secure configuration practices, security frameworks, and risk-based prioritization methodologies.
- Strong technical aptitude with experience supporting enterprise technology environments, investigating complex technical issues, working across technology teams, and driving solutions through resolution. Demonstrates analytical thinking, continuous learning, and an interest in cybersecurity and risk reduction.
- Experience with enterprise technology, security platforms, scripting, automation, reporting, or workflow improvement is preferred.
- Familiarity with industry security frameworks and standards, including NIST Cybersecurity Framework, CIS Controls and Benchhmarks
- Relevant technical or security certifications are preferred.
- Occasional travel required (<10%).
PREFERRED CANDIDATE PROFILE
The ideal candidate has a strong hands-on technology foundation, a passion for cybersecurity, and experience solving complex problems in enterprise environments. Candidates may come from infrastructure, systems administration, cloud, endpoint, network, security operations, security engineering, or other technical backgrounds.
The successful candidate is naturally curious, communicates effectively, and works well across technology teams to understand issues, identify root causes, and drive practical solutions through resolution. Direct experience with vulnerability management or security operations is valuable, but technical aptitude, sound judgment, continuous learning, and the ability to translate findings into actionable remediation guidance are equally important.
ESSENTIAL JOB REQUIREMENTS:
Must have the ability to perform basic office tasks and
Why should you join our team?
American AgCredit offers a unique opportunity to be a part of a national financial system supporting those who feed, clothe and fuel the world. We are a growing organization embracing collaboration and innovation while delivering transformative solutions. American AgCredit provides a cultivating environment where you truly make a difference for our customers and teams.
Benefits offered by American AgCredit:
- Commitment to agriculture and the communities we serve
- Family friendly work environment
- Investment in employee development
- Medical, Dental and Vision coverage
- Outstanding 401k – automatic 3% employer contribution, plus match up to 6%
- Generous Paid Time Off (Vacation accrued at 21 days annually, Sick Days accrued at 15 days annually, 12 paid holidays, plus 16 hours of volunteer time)
- Competitive Incentive Compensation Plan
- Disability & Life Insurance
- Employee mental, physical, and financial wellness programs
- The position is bonus eligible based on association and personal performance
Position will be posted until filled.
The Security Engineer is responsible for the operation, administration, optimization, and support of the Association's information security platforms and services. As a member of the Security Operations team, this role performs hands-on security engineering and operations activities designed to identify, investigate, respond to, and remediate cybersecurity threats, vulnerabilities, and exposures.
This position has a primary focus on Vulnerability Management and is responsible for vulnerability assessment, exposure discovery, technical validation, risk-based prioritization, remediation coordination, and issue tracking through resolution. The Security Engineer works closely with infrastructure, application, cloud, endpoint, and other technology teams to ensure vulnerabilities and exposures are identified, understood, and addressed in accordance with established remediation timelines.
In addition to vulnerability management, this role supports security monitoring, incident response, threat hunting, cloud and endpoint security, detection tuning, and security automation. The Security Engineer investigates security events, evaluates control gaps, improves technical controls, and maintains the platforms, integrations, automation, reporting, and processes necessary to protect Association systems and data.
Strong collaboration and communication skills are essential. This role works with technology teams, managed security service providers, vendors, and internal stakeholders to investigate security concerns, provide practical remediation guidance, reduce risk, and improve security operations.
ESSENTIAL DUTIES
- Administer, optimize, and support enterprise security platforms used for vulnerability management, threat detection, endpoint security, cloud security, identity protection, email security, and related security operations.
- Perform and coordinate vulnerability management activities across endpoint, server, application, cloud, network, and internet-facing environments. Identify, validate, prioritize, and drive remediation of vulnerabilities and exposures using risk-based methodologies that consider exploitability, business impact, asset criticality, threat intelligence, and remediation objectives.
- Assess system configurations, security controls, and technology implementations to identify security weaknesses, potential attack paths, and control gaps. Provide technical guidance and remediation recommendations to support secure deployment and operation of Association technologies.
- Monitor security telemetry, threat intelligence, vulnerability disclosures, and attack activity to identify emerging threats. Conduct threat hunting activities and improve detection capabilities to increase security visibility and reduce organizational risk.
- Investigate and respond to cybersecurity incidents, suspicious activity, and security events. Collaborate with technology teams, managed security service providers, and technology vendors to contain threats, resolve issues, and improve defensive capabilities.
- Develop, evaluate, and enhance security tools, automation, integrations, reporting, dashboards, controls, and operational workflows to improve efficiency, increase visibility, reduce manual effort, and support data-driven security operations.
- Develop and maintain operational documentation, procedures, technical runbooks, and knowledge articles that support consistent execution of security operations and vulnerability management activities.
- Evaluate and recommend improvements to security tools, processes, controls, and operational practices.
- Participate in after-hours security incident response activities when necessary.
- Perform other duties as assigned.
LEVELS OF SUPERVISION EXERCISED AND RECEIVED
Exercises no direct supervision. Works under the general direction of the Head of Cybersecurity. Regularly provides technical guidance to technology teams regarding security operations, vulnerability remediation, exposure reduction, and implementation of security controls. Exercises independent judgment in the investigation, analysis, prioritization, and resolution of information security issues.
TYPICAL EDUCATION AND EXPERIENCE
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field; or an equivalent combination of education, technical training, certifications, military service, and professional experience that demonstrates the knowledge and skills required to perform the responsibilities of the position.
- Minimum of 5 years of hands-on experience supporting, administering, troubleshooting, engineering, or securing enterprise technology environments. Experience may be gained through information technology, infrastructure administration, systems administration, cloud administration, endpoint administration, network administration, cybersecurity, security operations, security engineering, or related technical disciplines.
- Experience with vulnerability management, security operations, infrastructure operations, cloud administration, endpoint management, systems administration, network administration, or security engineering is preferred, along with familiarity with vulnerability management principles, secure configuration practices, security frameworks, and risk-based prioritization methodologies.
- Strong technical aptitude with experience supporting enterprise technology environments, investigating complex technical issues, working across technology teams, and driving solutions through resolution. Demonstrates analytical thinking, continuous learning, and an interest in cybersecurity and risk reduction.
- Experience with enterprise technology, security platforms, scripting, automation, reporting, or workflow improvement is preferred.
- Familiarity with industry security frameworks and standards, including NIST Cybersecurity Framework, CIS Controls and Benchhmarks
- Relevant technical or security certifications are preferred.
- Occasional travel required (<10%).
PREFERRED CANDIDATE PROFILE
The ideal candidate has a strong hands-on technology foundation, a passion for cybersecurity, and experience solving complex problems in enterprise environments. Candidates may come from infrastructure, systems administration, cloud, endpoint, network, security operations, security engineering, or other technical backgrounds.
The successful candidate is naturally curious, communicates effectively, and works well across technology teams to understand issues, identify root causes, and drive practical solutions through resolution. Direct experience with vulnerability management or security operations is valuable, but technical aptitude, sound judgment, continuous learning, and the ability to translate findings into actionable remediation guidance are equally important.
ESSENTIAL JOB REQUIREMENTS:
Must have the ability to perform basic office tasks and
- scripting
- automation
- vulnerability_management
- security_operations
- incident_response
- threat_hunting
- cloud_security
- endpoint_security
- identity_protection
- email_security
- nist
- cis_controls
- reporting
Оценка вакансии
84/100 · хорошо
- Описание полное
- Зарплатная вилка указана
- Компания и проект описаны
- Контакта нет
- Стек описан подробно
- Формат работы понятен
Похожие вакансии
Insider Risk Analyst
AI-балл 33/100CrowdStrike · United Kingdom
MiddleУдалённоinsider_riskrisk_managementcybersecurity
Incident Response Principal Consultant
AI-балл 56/100CrowdStrike · United States of America
115 000 – 160 000 $
SeniorУдалённоawsazuregcp
Associate Security Engineer
AI-балл 66/100crowdstrike · United States of America
70 000 – 95 000 $
MiddleУдалённоawsazuredns
AI Agent Security Architect
AI-балл 64/100Replit · Foster City, United States of America
SeniorУдалённоdockergolangjavascript
Manager, Incident Response
AI-балл 84/100Arctic Wolf · United Kingdom
76 000 – 114 000
MiddleУдалённоawsazuregcp