Senior Cybersecurity Engineer
Senior
Application Security
Automation
Cloud
Cloud Infrastructure
Cloud Platform
Cloud Platforms
Cloud Security Architecture
Cloud Technology
Cybersecurity Tools
DevOps
DevSecOps
Engineer
Enterprise Risk
Identity and Access Management
Information Security
InfoSec
Infrastructure As Code
Management
Privileged Access Management
Risk Management
Security
Security Assurance
Security Automation
Security Compliance
Security Operations
Security Standards
Solution Architecture
Strategic Advisory
Job Description
The Senior Cybersecurity Engineer will design, implement, and monitor the security controls across HomeServe, combining hands-on engineering with advisory leadership, threat management, and mentoring across technology and business functions. This onsite role is based in Norwalk, CT, and offers a compensation range of USD 125,932 to 167,910 per year.
Responsibilities
- Collaborate with business units and risk functions to identify security requirements and perform advanced risk and business impact assessments.
- Develop enterprise level strategies, roadmaps, and technical standards to address identified risks and align with business objectives.
- Lead and conduct complex control and vulnerability assessments; evaluate the effectiveness of security controls and drive remediation efforts across teams.
- Provide senior level reporting and insights to the Director of Information Security and management on residual risk, vulnerabilities, compliance gaps, and emerging threats.
- Advise on major application development, acquisition, and infrastructure projects to ensure security requirements and controls are embedded.
- Guide security architecture decisions, policies, and standards to ensure consistency and scalability across the enterprise.
- Define and continuously improve baseline security configurations for operating systems, applications, networks, and telecommunications systems.
- Oversee the resolution of audit findings from internal and external auditors and act as a lead contact for audit scoping, analysis, and remediation activities.
- Lead or provide escalation support for significant security incidents, investigations, and compliance reviews, ensuring lessons learned inform future improvements.
- Mentor and coach junior engineers and analysts to foster a culture of continuous learning and knowledge sharing.
- Proactively research, evaluate, and pilot emerging technologies, threats, and industry trends to strengthen the organization’s security posture.
- Represent Information Security in cross-functional initiatives, audits, and external reviews as a subject matter expert on security issues.
- Promote collaboration across IT and business teams to ensure security is integrated into processes, projects, and decision making.
Requirements
- Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field; Master’s degree preferred.
- Seven to ten years of experience in Information Security with progression into senior level responsibilities such as leading technology implementations, assessments, mentoring, or acting as an escalation point.
- Professional certifications including CISSP, CISM, CCSP, GIAC, AWS Certified Security - Specialty, or equivalent.
- Strong knowledge of security frameworks such as NIST, ISO 27001, and CIS Controls.
- Experience with security technologies including SOC, SIEM, EDR, firewalls, IAM, PAM, and cloud security solutions.
- Experience applying practical controls to secure generative and agentic AI technologies.
- Knowledge of securing CI/CD pipelines and familiarity with Infrastructure as Code (IaC).
- Working knowledge of a modern programming language, a centralized configuration management platform (eg, Ansible, Puppet, Chef), or SOAR playbook development.
- Strong background in risk assessments, vulnerability management, penetration testing, and forensic investigations.
- In-depth knowledge of network infrastructure (routers, switches, firewalls, WiFi) and related protocols with the ability to advise on secure design.
- Proven ability to design, validate, and improve enterprise baseline configurations for operating systems, applications, and cloud environments.
- Experience developing, documenting, and maintaining enterprise level security policies, standards, and procedures.
- Ability to act as a subject matter expert and escalation point for complex incidents and projects.
- Demonstrated leadership in mentoring and guiding junior team members.
- Strong communication skills for effective engagement with both technical and non-technical stakeholders, including management.
- Advanced analytical and problem solving abilities with a proactive approach to threat mitigation and control improvement.
- Capacity to balance hands-on technical work with advisory and oversight responsibilities.
Technologies
- SOC,
- SIEM,
- EDR,
- firewalls,
- IAM,
- PAM,
- cloud security solutions,
- CI/CD pipelines,
- Infrastructure as Code (IaC),
- Ansible,
- Puppet,
- Chef,
- SOAR
Benefits
- Annual Bonus Potential: 10%
Essential Job Function
- Security Strategy & Governance — 15%
- Risk Management & Compliance — 20%
- Security Operations & Incident Response — 25%
- Security Architecture & Technology Implementation — 30%
- Cybersecurity Innovation, Research, and Mentorship — 10%
- Total — 100%