Senior Cybersecurity Engineer

Posted 3 Hours Ago
Be an Early Applicant
Hiring Remotely in United States
Remote
120K-160K Annually
Senior level
Information Technology • Consulting • Cybersecurity
The Role
Owns configuration, tuning, health, and operational effectiveness of enterprise security platforms across multiple client environments. Responsibilities include detection engineering, SIEM onboarding, vulnerability remediation, incident leadership, cloud and Microsoft security administration, AI system controls, automation, vendor management, root cause analysis, documentation, client reporting, and mentoring junior engineers.
Summary Generated by Built In

About Redesign Group

The Redesign Group is a global technology and cybersecurity Solution Provider leveraging design thinking, interdependent subject matter expertise, and emerging technology solutions to help organizations achieve meaningful transformation. Our globally diverse team members, partnerships with strategic technology manufacturers, and cybersecurity services position us to be a business partner that’s ready for what’s next.


We live by our core values of operating in the service of others, being problem solvers, and focusing on long term partnerships. You’ll excel at Redesign if you thrive in a rewarding environment that moves quickly, challenges you to grow and fosters collaboration. We seek candidates with a hands-on customer-first approach, robust interpersonal and communication skills, strong work ethic and excellent time management. While teamwork is expected, the ability to work independently in a fast-paced environment is crucial.

Job Description

The Senior Cybersecurity Engineer is a hands-on engineering role in our Managed Security Services team. You will own the configuration, tuning, and operational health of the security platforms protecting our clients: tuning detections, onboarding log sources, driving vulnerability remediation to closure, and acting as technical lead when an incident is live. You will work alongside a team of security staff, supported by a global network operations center that handles first-line monitoring and triage.

Our core platforms are CrowdStrike Falcon, Rapid7 InsightIDR and InsightVM, and the Microsoft security stack, and experience with Palo Alto Networks is a plus. You will also help shape how we secure AI and agentic systems: agents with genuine access to production environments, and the authorization, monitoring, and adversarial testing that has to sit around them. We do not expect you to have used every tool across our client base, but we do expect real depth in endpoint detection and response and in SIEM and vulnerability management.

Key Responsibilities

  • Administer, configure, and tune core security platforms across multiple client tenants, owning configuration baselines, policy alignment, and platform health.
  • Build and refine detection logic, reduce false positives, and create the operational playbooks that turn a detection into a repeatable response.
  • Onboard and troubleshoot SIEM log sources, and diagnose and repair broken ingestion and API integrations between security, monitoring, and ticketing platforms.
  • Triage alerts and events, serve as a technical lead during live incidents alongside clients, internal teams, and third-party incident response firms.
  • Run vulnerability scanning and reporting, prioritize by real exploitability rather than raw severity score, and drive remediation to closure with engineering teams.
  • Define and enforce the controls around AI systems that hold real access to internal and client environments, including tool authorization, activity monitoring, and adversarial testing.
  • Automate recurring security operations work using scripting and platform APIs.
  • Own the technical relationship with our security and managed detection vendors, and judge whether what we are getting matches what we bought.
  • Write formal root cause analyses, execute changes through structured change management, and maintain documentation of baselines, incidents, and tuning decisions that client audits rely on.
  • Tailor configurations to each client environment and give stakeholders clear status reporting, executive-level summaries, and practical best-practice guidance.
  • Mentor junior engineers and work with infrastructure, network, and service delivery teams so security fits the wider environment rather than sitting beside it.

Required Skills & Experience

  • Hands-on ownership of enterprise endpoint detection and response and of a SIEM and vulnerability management platform. CrowdStrike Falcon and Rapid7 InsightIDR and InsightVM are what we run most; comparable platforms such as Microsoft Sentinel, Splunk, Cortex, SentinelOne, or Tenable are equally relevant.
  • Hands-on experience securing and administering Microsoft identity and endpoint services: Entra ID, Conditional Access, Intune, and Microsoft Defender.
  • Cloud security experience in at least one major provider (Azure, AWS, or GCP) covering identity, workload, and posture management.
  • Automation ability using AI tooling, scripting (Python, PowerShell, or an equivalent), and direct work against vendor APIs.
  • Experience writing formal root cause analyses and working inside a structured change management process.
  • Strong analytical and troubleshooting instincts, clear client-facing communication, and the ability to work independently across many client environments at once without losing track of any of them.

Preferred Qualifications

  • Security or vendor certifications such as Security+, GCIH, or CISSP, or certifications from Palo Alto Networks, CrowdStrike, Rapid7, or Microsoft.
  • Working knowledge of a major control framework (NIST CSF or 800-53, CIS Controls, ISO 27001, SOC 2, PCI DSS, HIPAA, or CMMC).
  • Experience with data loss prevention, privileged access management, or zero trust network access.

Background

  • 5+ years in security engineering or security operations, in roles where you owned the platforms rather than working from their dashboards.
  • Prior MSP/MSSP or other multi-client security experience strongly preferred, with demonstrated ability to manage competing priorities across multiple client environments.
  • Bachelor’s degree in information technology, cybersecurity, or a related field, or equivalent hands-on experience.


Benefits

We offer a comprehensive benefits package which may include:

  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • 401(k) retirement plan with company match (annual dollar cap applied)
  • Flexible time off plan
  • 15 paid holidays
  • Sick leave (amount varies by state requirements and is at least the minimum required by any state)
  • Short-term and long-term disability
  • Life insurance
  • Paid parental leave


We’re an Equal Opportunity and Affirmative Action Employer and welcome applicants from all backgrounds. We consider qualified candidates without regard to any legally protected status. This role is subject to applicable employment laws based on work location. In compliance with pay transparency laws, the compensation range for this role is included, with final pay based on experience, skills, and location. We participate in E-Verify to confirm employment eligibility and are happy to provide reasonable accommodations throughout the hiring process—just let us know how we can help.

Skills Required

  • Hands-on ownership of enterprise endpoint detection and response, SIEM, and vulnerability management platforms
  • Experience with CrowdStrike Falcon, Rapid7 InsightIDR and InsightVM, or comparable platforms such as Microsoft Sentinel, Splunk, Cortex, SentinelOne, or Tenable
  • Hands-on administration of Microsoft Entra ID, Conditional Access, Intune, and Microsoft Defender
  • Cloud security experience with Azure, AWS, or GCP, including identity, workload, and posture management
  • Automation experience using AI tooling, Python, PowerShell, equivalent scripting, and vendor APIs
  • Experience writing formal root cause analyses and working within structured change management processes
  • Strong analytical, troubleshooting, communication, and independent multi-client management skills
  • Five or more years of experience in security engineering or security operations
  • Bachelor's degree in information technology, cybersecurity, or a related field, or equivalent hands-on experience
  • Security or vendor certifications such as Security+, GCIH, CISSP, Palo Alto Networks, CrowdStrike, Rapid7, or Microsoft certifications
  • Working knowledge of NIST CSF, NIST 800-53, CIS Controls, ISO 27001, SOC 2, PCI DSS, HIPAA, or CMMC
  • Experience with data loss prevention, privileged access management, or zero trust network access
  • Prior MSP, MSSP, or other multi-client security experience
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
249 Employees
Year Founded: 2016

What We Do

The Redesign Group is a global technology and cybersecurity consulting firm. It uses design thinking, interdisciplinary expertise, and emerging technologies to help organizations achieve meaningful transformation. Its offerings include business transformation, modern data-center and cloud solutions, cybersecurity, professional services, managed IT operations, and security services. The company also develops technology products such as the Redesign Trust Portal for cybersecurity oversight and compliance automation.

Similar Jobs

9th Way Insignia Logo 9th Way Insignia

Cybersecurity Engineer

Artificial Intelligence • Cloud • Machine Learning • Software • Business Intelligence • Cybersecurity • Big Data Analytics
Remote
United States
91 Employees
98K-125K Annually
In-Office or Remote
Coraopolis, PA, USA
28222 Employees
83K-138K Annually

ReviveRX Logo ReviveRX

Cybersecurity Engineer

Healthtech • Pharmaceutical • Telehealth • Manufacturing
Remote
Texas, USA
114 Employees
150K-170K Annually
Remote
Georgia, USA
129974 Employees
120K-160K Annually

Similar Companies Hiring

Axle Health Thumbnail
Artificial Intelligence • Healthtech • Information Technology • Logistics
Santa Monica, CA
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account