Principal Security Engineer

Posted Yesterday
Be an Early Applicant
New York, NY, USA
In-Office
Senior level
Aerospace
The Role
Leads the cybersecurity strategy and roadmap for a regulated, multi-site organization. Implements and tunes network, endpoint, identity, and cloud security controls; maintains policies aligned with NIST, ISO 27001, CIS, and regulatory requirements; manages SIEM, EDR, vulnerability remediation, incident response, audits, vendor risk, identity hardening, and security awareness programs.
Summary Generated by Built In

ABOUT FTAI AVIATION LTD. (NASDAQ: FTAI)

FTAI owns and maintains commercial jet engines with a focus on the Maintenance, Repair and Exchange (MRE) of CFM56 and V2500 engines. FTAI’s propriety portfolio of products, including The Module Factory and a joint venture to distribute engine PMA helps make CFM56 and V2500 engine maintenance simpler, more cost-effective,

significantly faster, and more environmentally friendly. Additionally, FTAI owns and leases jet aircraft which often facilitates the acquisition of engines at attractive prices. FTAI invests in aviation assets and aerospace products that generate strong and stable cash flows with the potential for earnings growth and asset appreciation.


FTAI operates globally and has offices in New York, Miami, Montreal, California, Singapore, Dubai, United Kingdom and Ireland.

JOB OVERVIEW

We are seeking a Principal Security Engineer to lead the security program for a public, multi-site organization in a regulated environment. This is a hands-on individual-contributor role that both implements technical controls and drives the policies behind them. Partnering with the MSP, vCISO, IT, and Legal, you will set technical direction and execute it—tuning controls, maturing policy, and aligning the program to recognized frameworks and regulatory requirements

Responsibilities:

  • Drive the technical cybersecurity strategy and roadmap; report security posture and material risk to senior leadership
  • Design, configure, and maintain hands-on controls across network, endpoint, identity, and cloud (firewall rules, segmentation, VPNs, IDS/IPS, EDR, MFA)
  • Develop and maintain security policies aligned to NIST CSF, ISO 27001, and CIS and to regulatory requirements, ensuring controls actually enforce them
  • Manage and tune the security stack (SIEM, EDR, email security); build detection rules, alerts, and dashboards
  • Lead incident response end to end and drive risk-based vulnerability and patch management to closure across infrastructure, endpoints, and cloud
  • Own the controls framework and third-party/vendor risk program, coordinating with internal audit/GRC and the legal team
  • Collaborate with MSP and vCISO (managing scope, SLAs, escalation) while keeping core decisions in-house
  • Harden identity infrastructure (AD/Entra ID) and run the security awareness program across sites

 

Qualifications:

  • 7+ years across IT and cybersecurity, including a hands-on technical foundation and 3+ years driving a security program as a senior individual contributor
  • Proven ability to both implement technical controls and author the policies and governance behind them
  • Experience securing a public and/or regulated, multi-site environment (e.g., SOX, FINRA, FAA), including audit and control ownership
  • Command of NIST CSF, ISO 27001, CIS, and SOX/ITGC, with experience owning control evidence through external audits
  • Strong cloud (Azure and/or AWS) and enterprise network security—firewalls, VPNs, segmentation, and IDS/IPS
  • Hands-on with SIEM (e.g., Microsoft Sentinel) and endpoint protection (e.g., SentinelOne), plus scripting (PowerShell and/or Python) and identity hardening (AD/Entra ID)

Skills Required

  • 7+ years of experience across IT and cybersecurity, including 3+ years driving a security program as a senior individual contributor
  • Hands-on technical foundation combined with the ability to implement technical controls and author related security policies and governance
  • Experience securing a public or regulated, multi-site environment, including audit and control ownership
  • Command of NIST CSF, ISO 27001, CIS, and SOX/ITGC, with experience owning control evidence through external audits
  • Strong Azure and/or AWS cloud security and enterprise network security experience, including firewalls, VPNs, segmentation, and IDS/IPS
  • Hands-on experience with SIEM, endpoint protection, PowerShell and/or Python scripting, and AD/Entra ID identity hardening
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, New York
605 Employees
Year Founded: 2011

What We Do

FTAI combines advanced turbine technology and asset ownership to power the world’s most essential markets. Additional information is available at https://www.ftaiaviation.com.

Similar Jobs

Citizens Logo Citizens

Security Engineer

Digital Media • Fintech • Information Technology • Machine Learning • Financial Services • Cybersecurity • Automation
In-Office or Remote
2 Locations
17000 Employees
150K-190K Annually

Zscaler Logo Zscaler

Sales Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
6 Locations
8697 Employees
176K-251K Annually

Zscaler Logo Zscaler

Sales Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
USA
8697 Employees
176K-251K Annually

CVS Health Logo CVS Health

Application Security Engineer

Fitness • Healthtech • Retail • Pharmaceutical
In-Office
New York, NY, USA
119959 Employees
144K-288K Annually

Similar Companies Hiring

Red 6 Thumbnail
Aerospace • Hardware • Software • Virtual Reality • Defense
Orlando, Florida
186 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account