Senior Information Security Engineer
AD Mortgage · Troy, MI · 1 wk ago
On-siteInformation TechnologyFull-time
About the role
We are looking for a hands-on, highly technical Senior Information Security Engineer to design, implement, and maintain our core cybersecurity infrastructure. Serving as a primary technical expert, you will translate high-level security policies into robust system configurations, lead proactive threat detection, and engineer advanced defenses across our cloud, network, and endpoint environments.
Responsibilities
- SIEM & SOAR Engineering: Configure log ingestion pipelines, write advanced detection queries, analyze system telemetry, and build automated incident response workflows.
- Policy Technical Enforcement: Directly translate enterprise Information Security Policies into concrete technical controls, including conditional access matrices, complex firewall rule sets, and secure system baselines.
- Data Loss Prevention (DLP) Deployment: Implement, tune, and monitor technical DLP rules to detect, alert on, and block the unauthorized exfiltration of sensitive organizational data.
- Endpoint Detection & Response (EDR) Administration: Deploy and manage global endpoint agents, optimize behavioral alerting thresholds, and execute rapid containment protocols during active threats.
- Vulnerability Management & Internal Pentesting: Execute credentialed infrastructure and application scans, filter false positives, and coordinate patch validations. Conduct targeted internal penetration testing and exploit validation using standard offensive security suites.
- Network Security Mastery: Analyze, configure, and troubleshoot network traffic across Layers 2 through 7 to enforce uncompromised perimeter defense and internal micro-segmentation.
- Secure Access & Tunneling: Build, harden, and support secure remote access architectures, managing enterprise IPsec / SSL VPN gateways, certificate lifecycles, and Multi-Factor Authentication (MFA) integrations.
- Technical Mentorship: Act as the primary technical escalation point for IT operations and mentor junior administrators on secure engineering principles and alert triage.
Requirements
- 5+ years of dedicated, hands-on experience in cybersecurity engineering, network defense, or security systems administration.
- Deep hands-on expertise configuring market-leading SIEM/SOAR platforms, EDR consoles, Data Governance/DLP modules, and enterprise vulnerability scanners.
- Thorough technical understanding of the OSI model, secure tunneling protocols, and practical experience utilizing industry-standard penetration testing tools to audit internal defenses.
Qualifications
Technical certifications such as CISSP, CASP+, advanced vendor-specific engineering credentials, or relevant offensive security certifications are strongly preferred.
Schedule
This is a full-time, office-based position with standard working hours Monday to Friday, 9:00 AM to 6:00 PM.
Benefits
- Comprehensive benefits package including PTO, sick days, and paid volunteer hours.
- Medical, dental, and vision insurance.
- 401(k) retirement plan.
- Defined paid training and clear pathways for career development.
Location
Modern, cozy office environment in Troy, MI.