Senior Security Engineer
Church Mutual Insurance, S.I.
Job at a glance
BASIC PURPOSE: The Senior Security Engineer drives major security engineering initiatives and provide technical leadership across multiple domains, and works across teams to align security capabilities with business objectives. This role defines control enhancements. Leads advanced investigation, shapes engineering standards, and mentors Engineers and Administrators Must demonstrate advanced cross-domain capability (identity, endpoint, network, cloud) and lead complex detection and incident response activities.
Individuals unable to lead hands-on technical work will not meet expectations. PRIMARY JOB RESPONSIBILITIES: Exercise expert-level judgment to independently investigate and report complex cyber incidents, setting standards for incident response and mentoring junior staff on advanced cases. Oversee system cybersecurity operations, making high-stakes decisions in ambiguous scenarios and shaping escalation protocols for critical issues.
Lead and define initial cyber incident triage strategies, determining scope and urgency with authority, and guiding the team through complex incidents. Set organizational standards for vulnerability identification and documentation, utilizing advanced tools and methodologies, and influencing escalation practices for non-standard or high-risk findings. Direct advanced data analysis using CND tools (IDS alerts, firewall logs, host system logs), recognizing sophisticated threat patterns and mentoring others in expert analysis.
Ensure the highest standards of incident documentation, reviewing and resolving discrepancies with expert judgment, and influencing documentation practices across the team. Lead root cause analysis for major incidents, applying advanced analytical skills and shaping investigative methodologies for the organization. Stay at the forefront of cybersecurity threats and best practices, driving process improvements and influencing team knowledge sharing.
Architect and optimize the Security technology stack, resolving advanced issues and leading strategic process improvements that impact enterprise security. Lead response efforts to active attacks in cloud and on-premises environments, exercising advanced judgment and authority in high-stakes scenarios. Provide expert input on threat protection, leading initiatives that drive team efficiency and influence organizational security practices.
Independently report and lead reviews of suspected policy violations, shaping investigative standards for cases requiring further scrutiny. Lead risk mitigation efforts, making high-stakes decisions to manage exposure and influencing improvements to organizational risk management processes. Drive the development of enterprise-wide security architectures and standards, leading strategic meetings and initiatives that influence organizational direction.
Oversee baseline and risk assessments, setting standards for data collection and analysis, and guiding the team through complex findings. Provide advanced cybersecurity consultation, leading enterprise-wide health checks and resolving complex questions that shape organizational security posture. Lead research into emerging cybersecurity threats, applying deep functional knowledge and influencing investigative approaches for complex incidents.
Maintain and review the enterprise cybersecurity risk register, setting standards for risk documentation and resolving unusual entries with expert judgment. Lead forensic investigations and advanced cybersecurity activities, setting standards for data collection and documentation, and mentoring junior analysts. Manage intrusion prevention systems and define endpoint protection policies, leading strategic improvements and influencing routine security practices.
Triage advanced threat detection (ATD) alerts, exercising expert judgment and shaping team approaches to complex alerts. Provide advanced advice and assistance on cybersecurity matters, mentoring junior analysts and influencing the resolution of compl