Senior Cybersecurity Engineer
Confirmed live in the last 24 hours
Integrated Specialty Coverages
Compensation
$150,000 - $180,000/year
Job Description
About Integrated Specialty Coverages
Integrated Specialty Coverages, LLC (ISC) is a growth stage technology and data-driven commercial MGA and insurance wholesaler leading innovation in the market.
Backed by one of the leading private equity firms, Onex Partners, and led by a forward-thinking management team, ISC is combining the worlds of insurance and technology to create an Insurtech powerhouse. As a leading online distributor of insurance products for a range of industries and “Main Street USA”, we are looking for the right people to help us in our mission of achieving exponential growth. We strive to be the number one place to go for brokers and agents to source insurance. To accomplish this, we’re building a digitally focused team that deeply understands the intersection between user experience, data, and AI/ML to optimize the way we engage with our customers and partners.
Job Summary
We’re looking for a Senior Cybersecurity Engineer to design, build, and operate preventative and detective security controls and automation across our AWS‑first and enterprise environments. Reporting to the CISO, this role implements guardrails, platforms, and integrations and partners with infrastructure, platform, and application teams to embed security by default in our AWS cloud and enterprise environments. The role will perform hands-on engineering in multiple security domains including network security, endpoint security, email security, data security, vulnerability management, container security, and identity and access management.
Position Responsibilities
- Control Engineering & Operation
- Design, implement, and maintain controls in AWS (IAM, KMS, VPC, GuardDuty, Security Hub, Detective, CloudTrail/CloudWatch), network, endpoint, email, data security, vulnerability, and identity domains.
- Define SLOs for control availability, latency, coverage, and drift; implement telemetry to continuously measure those SLOs.
- Security Automation & “Policy as Code”
- Partner with infrastructure, platform, and application teams to build IaC modules (Terraform/CloudFormation) and platform automations (e.g., Python/Lambda, Step Functions) to enforce guardrails (account vending, baseline hardening, logging enablement, key policies, SCPs) using Git.
- Implement break‑glass patterns and least‑privilege workflows that are auditable and reversible.
- Detection Enablement
- Engineer data pathways (e.g., CloudTrail, VPC Flow, ECS audit, identity logs) into SIEM/MDR tooling; ensure completeness, timeliness, and schema quality.
- Translate Detection and Response Lead feedback on false positives/gaps into logging or control adjustments.
- Vulnerability & Exposure Engineering
- Own scanners/integrations, asset coverage, tagging standards, and develop risk‑based remediation pipelines (ticketing, auto‑remediation for low‑risk classes).
- Partner with owners to remove friction (pre‑approved windows, canaries, rollbacks).
- Identity & Secrets Hardening
- Engineer least‑privilege patterns, permission boundaries, conditional access, and automated key/secret lifecycle (rotation, discovery, usage attestations).
- Provide ready‑to‑consume roles/policies to teams.
- Documentation & Reuse
- Maintain runbooks, design docs, and reusable modules; ensure changes are versioned, peer‑reviewed, and test‑
- On‑Call (Engineering)
- Participate in control‑health and platform on‑call (e.g., logging ingestion failures, drift, outages).
- Escalate security events to the Detection & Response Lead/MDR.
Minimum Qualifications
- 7+ years in security engineering with production AWS (multi‑account/Organizations) and automation‑first delivery.
- Domain experience in at least three of the following:
- Network security (segmentation, routing, firewall, proxy, WAF)
- Endpoint security (EDR/EPP, hardening, health attestation)
- Email security (phishing protection, authentication, inbound/outbound controls)
- Data secur
Similar Jobs
GOAT Group
Senior IT Systems Engineer
Anduril Industries
IT Systems Engineer, M&A
Brex
Senior Security Operations Engineer
Brex
Senior Security Operations Engineer
Brex
Senior Security Operations Engineer
Brex