Information Security Engineer

Posted 4 Days Ago
Be an Early Applicant
4 Locations
Hybrid
Mid level
Other • Security
The Role
Designs and implements enterprise security architectures, standards, and controls. Conducts security posture assessments, evaluates third-party risks, ensures regulatory and internal compliance, and validates secure technology deployments. Partners with IT and business stakeholders as a security advisor, produces technical documentation and presentations, and recommends improvements across network, identity, cloud, endpoint, and infrastructure security. Monitors emerging threats and vulnerabilities while supporting continuous security improvement.
Summary Generated by Built In

What you will do

At Johnson Controls, we’re seeking a skilled Information Security Engineer to join our Global Information Security team. In this role, you’ll collaborate with cybersecurity, IT, and business teams to design and implement robust security architectures, standards, and controls that protect our systems and data. You’ll play a key role in ensuring compliance, assessing security posture, and guiding secure technology deployments across the enterprise.

How you will do it

Design & Architecture

  • Develop and implement enterprise-wide security reference architectures.

  • Ensure alignment with global security standards and policies.

  • Approve final designs and validate builds for compliance.

  • Follow the Security Posture Assessment process, which involves research, validation, and evaluation of all new initiatives, with phase gates reviews presented to all stakeholders during the process

Security Assessment & Compliance

  • Conduct security posture assessments for new initiatives.

  • Identify and mitigate risks in third-party solutions.

  • Ensure adherence to regulatory and internal security requirements.

Collaboration & Consulting

  • Partner with service management and stakeholders to gather requirements.

  • Act as a trusted advisor to business units and IT teams.

  • Provide expert input on security standards, roadmaps, and infrastructure.

Documentation & Communication

  • Create high-quality technical documentation, white papers, and presentations.

  • Communicate complex security concepts clearly to technical and non-technical audiences.

Continuous Improvement

  • Stay current on emerging threats, vulnerabilities, and technologies.

  • Recommend improvements in network, identity, and infrastructure security.

What we look for

Required

  • 3+ years of experience in information security, including deploying security solutions, security of application in corporate environment.

  • Strong understanding of attacker techniques, threat landscapes, vulnerability management, and security monitoring.

  • Broad technical expertise in:

    • Endpoint and platform security (Windows, Linux, mobile)

    • Identity and access management (IAM), PKI, encryption/tokenization, data protection

    • Cloud security (AWS, Azure, GCP)

    • Network security (web proxies, reverse proxies, load balancing, IDS/IPS, firewall, wireless, and remote connectivity, TCP/IP protocol, and remote access security techniques/products)
       

  • Excellent communication skills—both written and verbal.

  • Ability to work independently and collaboratively in a global team.

  • High integrity and discretion in handling confidential matters.

Preferred 

  • Bachelor’s degree in Computer Science, Engineering, or a related field (or equivalent experience).

  • Familiarity with compliance frameworks (PCI-DSS, HIPAA, FISMA, SOX).

  • Overview of NIST standards and security architecture frameworks (e.g., SABSA, TOGAF).

  • Experience in security operations or incident analysis.

  • Certifications

    • Certified Information Systems Security Professional (CISSP) 

    • Certified Information Systems Security Professional - Information Systems Security Architecture Professional (CISSP-ISSAP)

    • Certified Cloud Security Professional (CCSP)

    • Certified Information Security Manager (CISM)

    • Certified Information Systems Auditor (CISA)

    • Certified Ethical Hacker (CEH)

    • Cisco Certified Network Associate Security (CCNA Security)

    • Cisco Certified Network Associate (CCNA)

    • Cisco Certified Network Professional Security (CCNP Security)

    • Cisco Certified Network Professional (CCNP)

    • Server Platform Certifications (Microsoft, Linux)

About Us

Johnson Controls, a global leader in thermal management, mission-critical building systems, energy efficiency, and decarbonization, helps customers use energy more productively, reduce carbon emissions, and operate with the precision and resilience required in rapidly expanding industries such as data centers, healthcare, pharmaceuticals, advanced manufacturing, and higher education.

For more than 140 years, Johnson Controls has delivered performance where it really matters. Backed by advanced technology, lifecycle services and an industry-leading field organization, we elevate customer performance, turn goals into real-world results and help move society forward.

#LI-BB1

#LI-Hybrid

Skills Required

  • 3+ years of experience in information security, including deploying security solutions and securing applications in a corporate environment
  • Understanding of attacker techniques, threat landscapes, vulnerability management, and security monitoring
  • Technical expertise in endpoint and platform security across Windows, Linux, and mobile platforms
  • Technical expertise in IAM, PKI, encryption or tokenization, and data protection
  • Technical expertise in cloud security across AWS, Azure, and GCP
  • Technical expertise in network security, including proxies, load balancing, IDS/IPS, firewalls, wireless, TCP/IP, and remote access security
  • Excellent written and verbal communication skills
  • Ability to work independently and collaboratively in a global team
  • High integrity and discretion when handling confidential matters
  • Bachelor's degree in Computer Science, Engineering, or a related field, or equivalent experience
  • Familiarity with PCI-DSS, HIPAA, FISMA, and SOX compliance frameworks
  • Overview of NIST, SABSA, and TOGAF standards or security architecture frameworks
  • Experience in security operations or incident analysis
  • Relevant security, networking, cloud, server, Microsoft, or Linux certifications

Johnson Controls Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Johnson Controls and has not been reviewed or approved by Johnson Controls.

  • Retirement Support Retirement support is positioned as a meaningful part of the package through employer 401(k) matching, repeatedly framed as a strong pillar of the overall rewards mix. The matching contribution is described with specific match levels in multiple places, reinforcing perceived value for long-term saving.
  • Leave & Time Off Breadth Time off is presented as comparatively robust, with multiple paid holiday categories, vacation time, and sick time described as generous or “amazing” in places. Paid time off breadth appears to be a consistent contributor to total rewards attractiveness beyond base pay.
  • Flexible Benefits Benefits are described as broad and customizable, spanning standard medical/dental/vision plus optional add-ons like pet insurance, identity protection, and legal support. Tuition reimbursement is repeatedly highlighted as a high-value option supporting professional development.

Johnson Controls Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chennai
100,000 Employees
Year Founded: 1885

What We Do

At Johnson Controls, we transform the environments where people live, work, learn and play. From optimizing building performance to improving safety and enhancing comfort, we drive the outcomes that matter most. Dedicated to protecting the environment, we deliver our promise in industries such as healthcare, education, data centers and manufacturing. With a global team of 100,000 experts in more than 150 countries and over 130 years of innovation, we are the power behind our customers’ mission. Our leading portfolio of building technology and solutions includes some of the most trusted names in the industry, such as Tyco®, York®, Metasys®, Ruskin®, Titus®, Frick®, Penn®, Sabroe®, Simplex®, Ansul® and Grinnell®.

Similar Jobs

Pfizer Logo Pfizer

Director R&D EHS Program Lead

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
36 Locations
121990 Employees
177K-294K Annually

Pfizer Logo Pfizer

Quality Assurance Manager

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
28 Locations
121990 Employees

Pfizer Logo Pfizer

Manager Archiving and Compliance

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
28 Locations
121990 Employees

HiBob Logo HiBob

Customer Experience Process Specialist - AI & Automation

HR Tech • Information Technology • Professional Services • Sales • Software
Remote or Hybrid
Portugal
1350 Employees

Similar Companies Hiring

Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees
Rosendin Thumbnail
Other • Manufacturing
San Jose, CA
6219 Employees
OmniCable Thumbnail
Other
Houston, Texas
815 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account