arrivia · 3 hours ago
Lead Security Engineer IV
arrivia is on a mission to help people travel better and experience more. They are seeking a Lead Security Engineer (Level 4) to enhance their corporate and product security posture, focusing on system hardening, advanced security tooling, and mentoring staff.
LeisureTourismTravel
Responsibilities
Provide hands-on technical services to teams of specialists working on the integration of shared, centralized, and networked systems
Manage the secure deployment and maintenance of critical security systems, including EDR, DLP, CASB, SIEM, and network anomaly detection
Ensure responsible AI use by integrating security into the AI lifecycle and managing AI-related risks
Utilize AI/ML to automate the detection of malware, phishing, and unusual network behavior in real-time
Study new AI threats, such as prompt injection, and create innovative defensive techniques
Lead vulnerability identification efforts using tools like Qualys and Microsoft Purview to highlight configuration errors and patch requirements
Serve as an active member of the incident response team, providing in-depth knowledge of security systems, exploits, and countermeasures for forensic analysis
Offer technical security services to network, systems, and database administrators, translating complex technology issues into understandable language for all stakeholders
Qualification
Required
7+ years of dedicated experience in Security Engineering
Professional certification required: CISSP or CCNP-Security
Expert-level proficiency with Microsoft Defender, Microsoft Sentinel, Intune, CSPM, and Azure security services
Significant experience with security and compliance tools, specifically Qualys and Microsoft Purview
Bachelor's degree in MIS, Computer Science, Cybersecurity, or Engineering (or a minimum of 7 years in a dedicated IT Security position)
Deep technical knowledge of API Security Architecture and technologies (OAuth2, Spring Security, HMAC, WS-Security)
Comprehensive knowledge of security standards and guidelines, such as OWASP and CIS
Significant experience in at least two application security domains, such as Secure Coding, Cryptography, or Penetration Testing
Hands-on experience with AI projects, either in a professional or personal capacity
Expertise in SIEM systems and network/web protocols (TCP, UDP, ICMP, IPSEC, HTTP, HTTPS)
Proven experience in incident management and threat remediation (isolation, identification, and eradication)
Preferred
CISM or CISA certification is preferred but not required
Strong understanding of ISO 27001/27701, HIPAA, PII, and PCI security principles
Experience with Privileged Identity Management (PIM) tools such as Microsoft PIM, CyberArk, or Thycotic
Company
arrivia
Arrivia specializes in making brands better through the power of travel.
H1B Sponsorship
arrivia has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (2)
2024 (4)
2022 (1)
Funding
Current Stage
Late StageRecent News
Company data provided by crunchbase