American Tower Logo

American Tower

Cybersecurity Engineer

Posted Yesterday
Be an Early Applicant
Hybrid
Woburn, MA, USA
Mid level
Hybrid
Woburn, MA, USA
Mid level
Administer and improve enterprise network, cloud, firewall, and secure-access security controls. Configure Palo Alto firewalls, Azure and AWS security, Zscaler ZTNA, WAFs, CSPM/CNAPP integrations, and Wiz. Investigate security events, connectivity issues, and misconfigurations; validate segmentation and least-privilege access; support remediation, automation, documentation, policy hygiene, and security operations improvements while collaborating with infrastructure, cloud, network, application, and business teams.
The summary above was generated by AI

The Team

We are seeking a Cybersecurity Engineer to join American Tower’s Information Security organization. The Information Security team is responsible for protecting the confidentiality, integrity, and availability of American Tower’s data and systems across core platforms, global networks, cloud-connected environments, and distributed users. As a Cybersecurity Engineer, you will play a hands-on role in supporting and improving enterprise network security, cloud security, and secure access controls through administering enterprise-grade firewalls, cloud security tools, and Zero Trust Network Access (ZTNA) solutions. This role is intended for a security professional who can independently complete assigned technical work, support operational improvements, and collaborate with infrastructure and application engineers as well as cross-organizational technical resources on policy, segmentation, connectivity, and modernization initiatives. You will work closely with other cybersecurity engineers, infrastructure teams, cloud teams, network operations, and business stakeholders to help improve firewall and secure access policies, troubleshoot hybrid and cloud connectivity, implement secure configurations, and continuously strengthen American Tower’s security posture against evolving threats.

Responsibilities

What You Can Offer Us

  • Support enterprise network and cloud security controls across Palo Alto Next-Generation Firewall (NGFW), secure access, and cloud security platforms.    
  • Administer and enforce Palo Alto NGFW policies, security profiles, and rule-based hygiene.    
  • Configure and troubleshoot Azure and Amazon Web Services (AWS) network security, including routing, segmentation, Virtual Private Network (VPN), Web Application Firewall (WAF), private access, and hybrid connectivity.    
  • Implement and support secure access solutions, such as Zscaler, for secure internet, private application, and identity-aware access.    
  • Configure Cloud Security Posture Management (CSPM)/Cloud-Native Application Protection Platform (CNAPP) integrations, including troubleshooting, visibility validation, posture tuning, vulnerability findings, and remediation workflows.    
  • Collaborate with technical teams to validate connectivity, segmentation, least privilege access, and secure cloud configuration patterns.    
  • Investigate security events, access issues, routing anomalies, and performance concerns using logs and security telemetry.    
  • Review network designs, validate firewall and routing requirements, and recommend secure implementation approaches.    
  • Maintain runbooks, configuration baselines, implementation standards, and operational documentation.    
  • Identify and remediate misconfigurations, policy gaps, overly permissive access, routing issues, and cloud security risks.    
  • Improve security operations through policy hygiene, access reviews, reporting, automation support, metrics, and process improvements.    
  • Perform other duties as assigned.    
Qualifications

What You Need to Succeed

  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or equivalent experience required.
  • 3+ years of cybersecurity operations or engineering experience with a focus on network security in hybrid environments, including at least 1 year managing firewalls, security groups, Access Control Lists (ACLs), and network segmentation controls required.
  • Hands-on experience implementing, administering, and troubleshooting enterprise-grade firewalls, layer-7 load balancers, WAFs, and ZTNA solutions required.
  • Working knowledge of zero trust and privileged access architectures, including traffic forwarding, identity-aware access controls, policy enforcement, secure application connectivity, and least-privilege access models across cloud, hybrid, and remote user environments.
  • Experience using log analysis, security monitoring platforms, Security Information and Event Management (SIEM), and Microsoft Security Suite tools such as Microsoft Sentinel, Microsoft Defender, Microsoft Entra ID, or related platforms to detect, investigate, and respond to threats.
  • Understanding of identity and access management principles as they relate to Zscaler application access, user authentication, authorization, privileged access, and least privilege access models.
  • Experience with network security concepts across cloud and hybrid environments, particularly within Azure and AWS.
  • Familiarity with supporting Wiz platform across various cloud environments, including cloud account onboarding, security posture reviews, vulnerability and misconfiguration detection, attack path analysis, workload visibility, and remediation workflows that improve cloud security resilience.
  • Experience with automation, scripting, or query languages such as PowerShell, Python, Ansible, or Kusto Query Language (KQL) is a plus.
  • Good judgment, a sense of urgency, and a commitment to high standards of ethics, regulatory compliance, customer service, and business integrity.
  • Strong written and verbal communication skills, including the ability to document technical procedures, explain security risks, and collaborate effectively with technical and non-technical stakeholders.
  • Strong organizational skills, with the ability to manage multiple priorities and deliver results in a fast-paced environment.
  • Approximately 5% travel may be required to support the position’s responsibilities.
About Us
American Tower is a global digital infrastructure company serving customers through tower sites and other real estate solutions that support connectivity and opportunity, focused on achieving our vision of Building a More Connected World. Our success is rooted in the potential of our people and the power of local teams at our offices and sites across 25 countries.

We are one of the largest global Real Estate Investment Trusts (REITs) and a publicly traded (NYSE:AMT), Fortune 500 Company headquartered in Boston, Massachusetts. The next decade will be an exciting time as we evolve our infrastructure to meet tomorrow’s needs and position our people to elevate their impact, their potential, and our shared success. Come grow your career with us!

For more information about how American Tower is building a more connected world, visit americantower.com 

American Tower is proud to be an equal opportunity employer and will not discriminate against an applicant or employee based on age, sex, sexual orientation, gender identity, race, color, creed, religion, national origin or ancestry, citizenship, marital status, familial status, disability, military or veteran status, genetic information, pregnancy, reproductive decisions, or any other characteristic protected under applicable law.

American Tower is committed to fair and equitable compensation practices. Placement within the salary range is based on a variety of factors, including relevant experience, skills, certifications, job level, and location. For U.S.-based candidates only, please see the base salary range for this position listed below. This position is also eligible for annual bonus, and annual equity award and participation in the Employee Stock Purchase Plan (ESPP).  For candidates outside of the U.S., salary and benefits are based upon local market practice.

American Tower also offers a comprehensive benefits package, which includes healthcare coverage, a 401(k) savings plan, paid time off, company holidays, sick leave, parental leave, and access to an Employee Assistance Program focused on mental and financial wellness, please click here to learn more.

HQ

American Tower Boston, Massachusetts, USA Office

116 Huntington Avenue, Boston, MA, United States, 02116

American Tower Woburn, Massachusetts, USA Office

10 Presidential Way, Woburn, United States, 01801

Similar Jobs

4 Days Ago
Hybrid
159K-305K Annually
Senior level
159K-305K Annually
Senior level
Fintech • Financial Services
Leads application penetration testing research and methodology across diverse technology stacks and software development lifecycle phases. Develops offensive security tools, automation, adversary emulation, and AI-assisted testing practices. Mentors security teams, advises senior management, challenges security strategies, and evaluates AI/ML systems for vulnerabilities including prompt injection and model misuse. Ensures testing and AI usage meet security, compliance, privacy, and ethical standards.
Top Skills: Ai/MlAzureBurp SuiteGCPGenerative AiGithub CopilotLarge Language Models (Llms)
7 Days Ago
In-Office
Senior level
Senior level
Artificial Intelligence • Robotics • Software • Analytics
Develop AI/ML-driven cybersecurity and fraud-detection analytics using large, disparate datasets. Build solutions with Azure Databricks, Python, SQL, and R; investigate stakeholder concerns; identify data and process gaps; recommend remediation; and direct multidisciplinary teams across secure environments. The role also manages advanced analytics, data governance, MLOps, business intelligence, and AI solution delivery.
Top Skills: AWSAzure DatabricksComputer VisionLarge Language ModelsMlopsPythonRSQLTableau
Junior
Aerospace • Professional Services • Defense • Manufacturing
Conduct authorized cybersecurity vulnerability assessments across ICS/OT and FRCS environments using vulnerability scanners and manual reviews. Analyze logs, network traffic, alerts, and vulnerabilities; coordinate remediation; test patches and configuration changes; assess systems against DISA STIGs, SRGs, NIST, and DoD requirements; inspect physical and cyber security controls; develop remediation guidance, reports, tabletop exercises, advisories, and monitoring metrics. The role requires or supports a Secret clearance and DoD 8140 certification.
Top Skills: AcasCnssi 1253Disa SrgsDisa StigsDod 8140DragosFirewallsHmisIgnitionIndustrial SwitchesLinuxMetasysNessusNiagaraNistNutanixPlcsRockwell AutomationRtusScapSelTenable.ScWindows

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account