Security Engineer
Job Description
New Belgium Brewing Company is hiring a Security Engineer for a Colorado (remote) role focused on securing enterprise IT, cloud, identity, and OT environments.
Responsibilities
- Design and implement security architectures across cloud platforms, networks, applications, and OT environments aligned to organizational risk posture and business goals.
- Lead risk assessments and threat modeling to identify vulnerabilities, evaluate impact, and recommend mitigation strategies.
- Administer identity and access control systems, directory services, and privileged access management to enforce least privilege.
- Conduct security assessments in both IT and OT environments, including vulnerability scanning, system hardening reviews, and segmentation analysis.
- Monitor security events, analyze anomalies, and support incident investigations, including containment coordination and remediation.
- Maintain security documentation such as architecture diagrams, policies, standards, runbooks, and response procedures.
- Automate security workflows when feasible, including IAM workflows, vulnerability scans, and audit reporting using tools or scripting.
- Partner with IT, engineering, operations, and other teams to embed security controls into system designs, infrastructure deployments, and software development lifecycles.
- Stay current on emerging threats, technologies, and industry best practices; evaluate new tools and recommend adoption.
- Participate in internal and external audits to support regulatory compliance efforts.
- Contribute to enterprise-wide security initiatives, providing expert guidance and technical leadership.
- Mentor peers and share knowledge to promote secure-by-design practices and security awareness.
- Perform other duties as assigned.
Requirements
- Bachelor’s degree in computer science, cybersecurity, engineering, information systems, or equivalent.
- 7+ years in an information security role with hands-on experience in at least two domains: enterprise architecture, OT security, or identity and access management.
- Expert working knowledge of security frameworks, standards, and cybersecurity best practices.
- Expert knowledge of enterprise security tooling, including network defense solutions, cloud-native security capabilities, and IAM platforms.
- Solid working knowledge of OT communication protocols and cybersecurity practices in industrial control environments.
- Solid working knowledge of scripting languages for automation and orchestration tasks.
- Strong analytical and investigative skills with demonstrated problem-solving ability.
- Excellent communication and collaboration skills with technical and non-technical stakeholders.
- Ability to work independently, manage multiple priorities, and adapt in a fast-paced environment.
- Relevant certifications preferred (industry-recognized security, cloud, or OT/IAM credentials).
Benefits
- Medical & Dental Insurance
- Basic Term Life and AD&D Insurance
- Short Term Disability Insurance
- Flexible Spending Account
- Employee Assistance Program
- PTO
- 401k Match
- Paid Caregiver Leave
- Profit Sharing
Travel and Working Conditions
- Travel: 0%-10%
- Working conditions: Office/Remote
Compensation
- Starting salary range: USD 102,500 - 105,000 per yearly