Senior Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Frazier & Deeter · 5 hours ago

Senior Security Engineer

Frazier & Deeter is a rapidly growing Top 50 accounting & advisory firm known for its commitment to training and developing staff. The Senior Security Engineer will be responsible for the design, implementation, and management of security solutions to protect the organization’s information assets, while ensuring compliance with security policies and standards.

Accounting
check
Growth Opportunities
check
H1B Sponsor Likelynote

Responsibilities

Design, implement, maintain, and improve various security solutions, including but not limited to SIEM, SOAR, IDS/IPS, UEBA, email/communications, endpoint protection, and data security/auditing platforms
Analyze environments for compliance with policies, standards, regulations, and security best practices; and recommend and implement refinements
Develop and improve monitoring and visibility capabilities of information systems, and act as a technical leader for security incident detection, response, handling, and forensics
Conduct threat, vulnerability, and risk assessments to understand and eliminate potential system and network vulnerabilities
Implement solutions observing compliance – Health Information Portability and Accountability Act (HIPAA), Gramm-Leach-Bliley Act (GLBA), Payment Card Industry (PCI), Sarbanes-Oxley Act (SOX), etc. – and privacy laws
Lead the development and management of Incident Management programs and objectives including conducting security incident response drills and tabletop exercises
Perform as a functional cybersecurity subject matter expert across a wide array of operational service domains including change management, supply chain management, and security awareness
Respond to and handle service and escalation tickets and handle other duties as assigned
Remain up-to date on skills/knowledge and current on information security topics, trends, events, and developments

Qualification

SIEMSOARIDS/IPSAWSCISSPPythonNetwork SecurityTechnical DocumentationCommunicationTeam Collaboration

Required

At least 5 years' experience performing applicable cybersecurity duties that demonstrate a strong system and network security engineering background
Extensive experience developing and managing traditional security controls and technologies, such as SIEM, SOAR, IDS/IPS, IDAM, EDR/malware/antivirus and native firewall security, in addition to newer offerings such as data integrity controls, data loss prevention, threat intelligence platforms, deception technologies and application controls
Experience applying protections for Amazon Web Services (AWS), Microsoft Entra/AD and VMware as well as cloud computing technologies, including software-, infrastructure and platform-as-a-service, as well as public, private, and hybrid environments
Network and encryption experience, including virtual private networks (VPNs), IPsec, SSL/TLS, LDAP and public key infrastructure (PKI)
Experience and understanding of various regulatory requirements and laws, including but not limited to: Payment Card Industry (PCI), Sarbanes-Oxley Act (SOX), Health Insurance Portability and Accountability Act (HIPAA), General Data Protection Regulation (GDPR) and Gramm-LeachBliley Act (GLBA). Additionally, experience with one or more of ISO 27001/2 or NIST
Adept to executing vulnerability and penetration testing requirements
Skilled and experienced with developing technical documentation and diagrams
Excellence in identifying and communicating business risk related to cybersecurity
Track record of acting with an unyielding commitment to integrity, taking pride in performance, being curious and adaptable, communicating effectively and championing team success
CISSP required
Minimum of 5-7+ years of related experience required

Preferred

Bachelor's degree in computer science, information assurance, MIS or related field is desired
CISM, CCSP, CEH, CompTIA Security, SANS GSEC or similar certifications are a plus
Proficient with scripting in Python, JavaScript, PowerShell, PHP or Ruby is desired
Knowledge of and experience applying compliant solutions for one or more of the following: ISO 27001, NIST, PCI DSS, HIPAA, HITECH, SOX, GDPR, or SOC (1/2/3)
Working knowledge of and hands-on experience with Windows, Linux and Unix
Familiarity with state privacy laws
DevOps background with experience in compliance obligations is a plus

Company

Frazier & Deeter

twittertwittertwitter
company-logo
Frazier & Deeter is an CPA advisory firm.

H1B Sponsorship

Frazier & Deeter has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2024 (1)

Funding

Current Stage
Late Stage
Total Funding
unknown
Key Investors
General Atlantic
2025-04-03Private Equity

Leadership Team

leader-logo
Jeremy Jones
Managing Partner and CEO
linkedin
leader-logo
David Deeter
Partner Emeritus & Co-founder (retired)
linkedin
Company data provided by crunchbase