Auriga · 8 hours ago
Senior Cybersecurity Engineer
Auriga Corporation is a company established in 1990 that provides high-quality design, engineering, and project management services for Electric Power, Telecommunication, and Information Technology systems. They are seeking a Senior Cybersecurity Engineer to assist with security strategy updates, manage information security-related activities, and collaborate with stakeholders to maintain security compliance and risk management.
Big DataIndustrial AutomationInformation ServicesInformation TechnologyMachine LearningMedical DeviceSemiconductorSoftware
Responsibilities
Assist with security strategy updates addressing the evolving risk landscape
Assist with security governance, aligned to NIST CSF, as required to sustain an effective cybersecurity program
Assist with 3rd parties/projects/initiatives security risk assessments and provide solutions recommendations as needed
Assist with security operations management update/improvement as required
Manage information security-related activities of the agency including the analysis, identification, estimation of InfoSec efforts and the development, planning, testing, and documenting of remediation measures
Develops, conducts, and documents executive-level reporting and strategy formulation
Creates and maintains a centralized information security register to manage all InfoSec information and document changes relevant requirements
Collaborates with internal and external stakeholders to maintain an understanding of current risks, new systems, and changes to the environment
Supports development, implementation, and maintenance of strong security risk & compliance processes for new and existing deployments
Participates in vendor due-diligence processes and third-party security risk management efforts; in addition to performing contract reviews as it relates to Information Security
Supports internal and external audit and assessment processes for relevant compliance (PCI DSS, Privacy, etc.)
Creates security guidelines, checklists, and other documentation to support projects and initiatives
Develops and presents metrics, reports, and dashboards
Develops documentation for information security controls, acquisitions, and process or system changes
Stays up to date on developing regulatory concerns, evolving IT, and information security trends
Qualification
Required
Bachelor's degree in a related field
15+ Years experience with large organizations
Experience working with a transit Universal Fare System (UFS) and the Cubic Payment Application (CPA) as it relates to transportation agency data compliance
Knowledge of cybersecurity technology and compliance in transit systems
Demonstratable strong background in the processes, policies, procedures, systems, practices, and professional standards of cybersecurity
Demonstratable knowledge of industry best practices and relevant legal requirements as they pertain to cybersecurity, compliance, and privacy laws and regulations including TSA/DHS transport directives, DMV rules and regulation and other transportation agency cyber security rules and regulations
Consultant must have delivered similar services (as stated above) during the past 10 years
Experience with modern Security Operations Center (SOC) monitoring, detecting, analyzing, and responding to cyber threats
Experience with conducting Cyber forensics
Experience with major Cyber Incident handling
Experience with preparing and guiding organizations to achieve and sustain compliance with Payment Card Industry Data Security Standard (PCI DSS)
Experience with vulnerability scanning, penetration testing, etc. using commercial products
Experience with risk-based prioritization of security vulnerabilities and providing actionable remediation guidance
Experience with cloud based and on-premise Security Information and Event Management (SIEM) tools including administering the tools, reviewing alerts, and providing actionable steps
Experience with Security Orchestration, Automation, and Response (SOAR) platform
Two of the certifications below: Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), GIAC Security Professional (GSEC), Certified Data Privacy Solutions Engineer (CDPSE), Cyber Security Nexus (CSX)
Benefits
401(k)
401(k) matching
Competitive salary
Dental insurance
Flexible schedule
Health insurance
Paid time off
Profit sharing
Training & development
Vision insurance
Company
Auriga
Auriga is a software R&D and IT outsourcing services provider incorporated in the U.S. and operating development centers in Eastern Europe since 1990.
H1B Sponsorship
Auriga has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (2)
2023 (2)
2022 (3)
2021 (3)
2020 (3)
Funding
Current Stage
Late StageCompany data provided by crunchbase