CybersecurityJobs.io
← Back to all jobs

Job Description

Civilization Research Institute (CRI) is hiring a Cybersecurity Engineer to lead protection of its networks, systems, and data against evolving cyber threats. In this onsite role based in Asheville, NC, you will coordinate security monitoring and controls, support incident readiness, and help keep CRI’s online presence and public-facing interfaces secure. You will report to the Chief Technology Officer and work across security operations, technical configuration, and training support.

Role focus

  • Oversee security matters to protect CRI’s networks, systems, and data from cyber threats.
  • Work closely with the CTO on hardware/software security review and configuration so devices maintain appropriate security settings.
  • Support both proactive and reactive defenses, including detection and mitigation of attacks before they cause harm.

Responsibilities

  • Manage security tooling and access pathways, including password managers, VPNs, secure communications, and secure document sharing systems.
  • Monitor network traffic, system logs, and security alerts to identify suspicious activity and anomalies.
  • Conduct vulnerability assessments, penetration testing, and incident response activities to reduce threats and minimize downtime.
  • Establish and maintain disaster recovery plans to support rapid recovery from disruptions or disasters.
  • Review and implement current security protocols across information, operations, cyber, network, and personnel.
  • Define and implement IT security policies, including access controls, security classifications, data protection protocols, and incident response plans.
  • Set procedures for information storage, access privileges, document sharing protocols, and the security of off-prem devices.
  • Run compliance audits and prepare documentation for review.
  • Handle online and communications op sec for websites and public interfaces tied to the organization, bank, and other accounts.
  • Develop security classification designations for documents, projects, and departments.
  • Train team members on processes for organized upkeep.
  • Partner with the Training Unit to create training materials that help individuals understand the risk landscape, mitigation strategies, and practical security measures; assist with security configurations.
  • Manage and protect CRI’s online presence and reputation, including IP address security, uploading memos and videos, and troubleshooting.
  • Proactively respond to and protect against hacking or phishing attempts.
  • Configure existing technologies or build in-house analytics tools for related tracking purposes when needed.
  • Assist with technical aspects of online reputation management, while others handle outreach, content, and legal responses.
  • Recommend providers for VPNs, firewalls, secure WiFi configurations, transcription services, alternative communications systems (Signal, iMessage, Slack, Zoom, Gmail, and CRI’s proprietary in-house end-to-end encryption platform), VoIP, and similar services.
  • Set the appropriate security and functionality configurations for software and hardware used in these areas.
  • Select and manage online security services (for example, MalwareBytes, Norton, DeleteMe) and maintain vendor relationships.
  • Stay current with the latest cyber threats, vulnerabilities, and security trends.
  • Acquire and set up physical infrastructure such as home security systems, routers, modems, extenders, Starlinks, battery backup systems, hard drives, monitors, printers, and USBs.
  • Set protocols covering WiFi network and printer connections, turning cameras and microphones on and off, sharing addresses, and similar operational controls.
  • Oversee quarterly housekeeping items such as bug sweeps and penetration tests.
  • Perform due diligence for potential vendors and contractors, decide which contractors to use, communicate with them, and collaborate to ensure successful outcomes.

Requirements

  • A degree in computer science, IT, systems engineering, or a related qualification.
  • 4 years of work experience with incident detection, incident response, and forensics.
  • Experience with Firewalls (functionality and maintenance), Office 365 Security, VSX, and Endpoint Security.
  • Proficiency in Python, C++, Java, Ruby, Node, Go, and/or Power Shell.
  • Ability to work under pressure in a fast-paced environment.
  • Strong attention to detail with an analytical mind and outstanding problem-solving skills.
  • Strong awareness of cybersecurity trends and hacking techniques.

Technologies

  • Python, C++, Java, Ruby, Node, Go, Power Shell
  • Firewalls, Office 365 Security, VSX, Endpoint Security
  • Signal, iMessage, Slack, Zoom, Gmail, proprietary in-house end-to-end encryption platform, VoIP
  • MalwareBytes, Norton, DeleteMe
  • VPNs, Starlinks

Location and reporting

  • Full-time, on-site role based in Asheville, NC.
  • CRl may consider strong candidates who would work remotely with the ability to travel to HQ as needed.
  • Reports to the Chief Technology Officer.

Compensation

  • USD 140,000 per year (from $140,000.00 per year).

Benefits

  • Mission-Driven Culture
  • Health & Wellness Support
  • Professional Growth & Development
  • Competitive Compensation
  • Flexible Benefits
  • Relocation assistance
  • Community events like team dinners and hikes
  • Coffee/tea station with tinctures and powders, plus a fully stocked pantry of healthy snacks
  • Organic, plant-based lunches and dinners prepared by an in-house chef multiple times per week
  • Specialized healing equipment open to all employees (e.g., sauna, red light therapy, AI deep tissue massage machine)
  • Bring your dog to work

Similar Jobs