Senior Security Engineer
Green Key Resources · New York City Metropolitan Area
Apply & track with Apply EdgeOverviewA leading financial services organization is seeking a Senior Security Engineer to play a key role in strengthening and evolving its enterprise cybersecurity program. This position will be responsible for the design, implementation, administration, and continuous improvement of security controls across cloud, network, endpoint, identity, data protection, and monitoring environments.The ideal candidate is a hands-on cybersecurity professional with strong technical depth, experience operating in regulated environments, and the ability to collaborate across infrastructure, cloud, networking, application development, and business teams. This individual will help drive security strategy, support compliance initiatives, and implement solutions that enhance overall organizational resilience.Key ResponsibilitiesSecurity Engineering & ArchitectureDesign, implement, and maintain enterprise security controls across cloud, endpoint, network, identity, and data protection domains.Lead security engineering projects from design through implementation and operational support.Conduct architecture reviews and provide security recommendations for new and existing technologies.Develop scalable and sustainable security solutions aligned with business objectives and industry best practices.Identity & Access SecurityManage and enhance identity security controls, including access governance, role-based access controls, privileged access management, and multi-factor authentication.Support identity lifecycle management and access review processes.Strengthen authentication, authorization, and identity governance capabilities across the environment.Security Operations & Threat ManagementAdminister and optimize cybersecurity technologies including SIEM, endpoint protection, vulnerability management, email security, and cloud security solutions.Support threat detection, threat hunting, incident response, and forensic investigations.Assist with development of security monitoring use cases, detection logic, and response procedures.Perform root cause analysis and implement security improvements following incidents.Vulnerability & Risk ManagementLead vulnerability assessment and remediation programs.Partner with IT teams to prioritize risks and drive remediation activities.Conduct technical security reviews and risk assessments across infrastructure, applications, cloud environments, vendors, and business processes.Develop reporting and metrics that provide visibility into organizational risk posture.Governance, Compliance & Security StandardsSupport compliance initiatives aligned with recognized industry security frameworks and regulatory requirements.Develop and maintain security standards, procedures, baselines, and implementation guidance.Assist with audit readiness activities, control testing, documentation, and evidence collection.Evaluate security policies and recommend enhancements to improve maturity and effectiveness.Collaboration & Strategic InitiativesPartner with infrastructure, cloud, engineering, and business teams to integrate security into enterprise projects and operational processes.Review security impacts of technology changes and infrastructure enhancements.Research emerging threats, technologies, and industry trends to identify opportunities for improvement.Contribute to long-term cybersecurity strategy and roadmap initiatives.Required QualificationsBachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related discipline, or equivalent practical experience.7+ years of experience in cybersecurity, security engineering, security architecture, or advanced security operations roles.Experience leading complex security projects from planning and design through implementation and ongoing support.Strong experience designing and administering enterprise security technologies across cloud, network, endpoint, and identity environments.Deep understanding of security monitoring, vulnerability management, endpoint protection, and threat detection technologies.Experience securing cloud platforms and modern hybrid environments.Strong knowledge of networking concepts including TCP/IP, DNS, DHCP, firewalls, VPNs, segmentation, and intrusion detection technologies.Experience with Active Directory, identity management, access controls, system hardening, and security administration.Knowledge of cybersecurity frameworks, threat intelligence, attack methodologies, and security best practices.Experience working within regulated industries such as financial services, banking, healthcare, insurance, legal services, or similar environments.Excellent analytical, troubleshooting, communication, and stakeholder management abilities.Preferred QualificationsExperience with Microsoft security technologies, cloud-native security services, data protection, and identity governance platforms.Experience with vulnerability management platforms, endpoint detection and response tools, and enterprise security monitoring solutions.Exposure to cloud security posture management and cloud security governance initiatives.Knowledge of industry security frameworks and compliance programs.Professional certifications such as CISSP, CCSP, CISM, or equivalent cybersecurity credentials.Experience supporting audit, governance, and regulatory review activities.What You'll BringStrong technical leadership and security engineering expertise.A proactive and risk-focused mindset.Ability to communicate effectively with both technical and business stakeholders.Experience balancing security requirements with operational and business objectives.A collaborative approach to problem solving and continuous improvement.A passion for advancing security maturity and protecting critical business assets.This opportunity offers the chance to join a highly collaborative technology and security team where you'll help shape enterprise security strategy, implement impactful security initiatives, and contribute to the ongoing evolution of a mature cybersecurity program within a complex and regulated environment.