Lead Engineer, Security Assurance Configuration Monitoring
Bethlehem, United States
Full Time Senior-level / Expert USD 96K - 159K
Guardian
We provide life insurance, disability insurance, dental insurance, and other benefits that help protect people and inspire their well-being.Overview
This role is a technical Subject Matter Expert role reporting to the Head of Cyber Security Assurance Services. The selected individual will lead all technical aspects of the Configuration Monitoring programs and is responsible for all related tools and procedures.
You Will
Act as the Senior SME and Technical Lead for Configuration Compliance Monitoring
- Serve as the Lead Technical Authority for the Configuration Monitoring functions. Ensure documentation is in place and kept up to date, including governing processes and procedures. Ensure process and procedural obligations are met; perform periodic quality checks. Be responsible for remediation health and serve as the first point of escalation for challenges with Configuration Monitoring. Take responsibility for all metrics pertaining to Configuration Monitoring. Provide oversight of the Security Assurance Configuration Monitoring processes as part of the Guardian SDLC.
Lead Configuration Monitoring Expansion
- Lead efforts to expand configuration monitoring to cover additional technologies. Coordinate with technology owners and aide staff with delivering on monitoring expansion.
Ensure Technical Cohesion across supporting Global teams
- Meet Regularly with the Manager, Guardian India Security Assurance to discuss successes, challenges, and technical training opportunities for India Configuration Monitoring resources. Work with resources to ensure adherence to and execution of Configuration Monitoring processes. Recommend and guide technical development within Configuration Monitoring in US and IN.
Innovation & Research
- Develop additional skills, obtain certifications and attend conferences, and independently seek out information to further expand and optimize Security Assurance Configuration Monitoring. Dedicate time to thinking forward to add additional controls to existing and new standards to shift standards from a compliance focus to a blend of compliance and attacker mindset. Contribute to roadmaps for Configuration Monitoring and service as a champion of change to pitch new ideas to improve quality, coverage, automation, and efficiency; Serve as Technical lead for projects related to Configuration Monitoring and Other Areas as assigned.
Automation
- Contribute to teamwide efforts to automate and improve existing services including but not limited to Configuration Monitoring.
You Are
- Currently serving in or have served as a Senior level security professional with 6 or more years in a role which includes leading Configuration Monitoring as an SME
- A certified security professional including CISSP and other industry recognized certifications illustrating strength in relevant knowledge areas
- Understanding of cloud-based technologies and security measures
- Motivated to learn new things consistently
- Passionate about generating new ideas, approaches, and advances to consistently grow and maintain a best-in-class Application Security and vulnerability management programs
- Creative and can think out of the box to develop and deliver solutions
- Familiar with adjusting vulnerability risk ratings using context and mitigating controls
- Highly skilled in industry leading Application Security tools
- Familiar with MITRE Attack & Defend and can contribute to end products that effectively illustrate the impact and likelihood related to a particular gap or vulnerability
- Committed to continuously developing your Cyber Security abilities through hands-on experience and additional certifications and training
- Capable of assessing the skill level required to complete tasks, and delegating tasks, and training lower-skilled junior staff
- Skilled in communicating at various levels of technical expertise spanning from developers to IT admins to mid-level leaders to Senior Leadership
- Able to take direction from peers and leaders to adjust priorities or approach
- Experienced in running projects to implement new security technologies
- Able to Work independently, with guidance in only the most complex situations
- Able to apply a variety of complex methods/skills with significant autonomy to develop novel, customized solutions
- Able to execute and/or lead complex or specialized projects
- Able to act as a trainer, mentor, and advisor to all levels in the organization
Location and Travel
- Three days a week in our Bethlehem, PA office and two days remote.
- Occasional travel is required to attend events in Holmdel, NJ and Hudson Yards NY as needed
Work Status
- You must be eligible to work in the U.S. without company sponsorship, now or in the future, for employment-based work authorization. F-1 visa holders with Optional Practical Training (OPT) who will require H-1B status, TNs, or current H-1B visa holders will not be considered. H1-B and green card sponsorship is not available for this position.
Salary Range:
$96,960.00 - $159,300.00The salary range reflected above is a good faith estimate of base pay for the primary location of the position. The salary for this position ultimately will be determined based on the education, experience, knowledge, and abilities of the successful candidate. In addition to salary, this role may also be eligible for annual, sales, or other incentive compensation.
Our Promise
At Guardian, you’ll have the support and flexibility to achieve your professional and personal goals. Through skill-building, leadership development and philanthropic opportunities, we provide opportunities to build communities and grow your career, surrounded by diverse colleagues with high ethical standards.
Inspire Well-Being
As part of Guardian’s Purpose – to inspire well-being – we are committed to offering contemporary, supportive, flexible, and inclusive benefits and resources to our colleagues. Explore our company benefits at www.guardianlife.com/careers/corporate/benefits. Benefits apply to full-time eligible employees. Interns are not eligible for most Company benefits.
Equal Employment Opportunity
Guardian is an equal opportunity employer. All qualified applicants will be considered for employment without regard to age, race, color, creed, religion, sex, affectional or sexual orientation, national origin, ancestry, marital status, disability, military or veteran status, or any other classification protected by applicable law.
Accommodations
Guardian is committed to providing access, equal opportunity and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. Guardian also provides reasonable accommodations to qualified job applicants (and employees) to accommodate the individual's known limitations related to pregnancy, childbirth, or related medical conditions, unless doing so would create an undue hardship. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact applicant_accommodation@glic.com.
Current Guardian Colleagues: Please apply through the internal Jobs Hub in Workday.
Tags: Application security Automation CISSP Cloud Compliance Monitoring SDLC Vulnerability management
Perks/benefits: Career development Conferences Health care Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.