The Redesign Group Logo

The Redesign Group

Senior Cybersecurity Engineer

Posted 2 Days Ago
Remote
Hiring Remotely in United States
120K-160K Annually
Senior level
Remote
Hiring Remotely in United States
120K-160K Annually
Senior level
Owns configuration, tuning, health, and operational effectiveness of enterprise security platforms across multiple client environments. Responsibilities include detection engineering, SIEM onboarding, vulnerability remediation, incident leadership, cloud and Microsoft security administration, AI system controls, automation, vendor management, root cause analysis, documentation, client reporting, and mentoring junior engineers.
The summary above was generated by AI

About Redesign Group

The Redesign Group is a global technology and cybersecurity Solution Provider leveraging design thinking, interdependent subject matter expertise, and emerging technology solutions to help organizations achieve meaningful transformation. Our globally diverse team members, partnerships with strategic technology manufacturers, and cybersecurity services position us to be a business partner that’s ready for what’s next.


We live by our core values of operating in the service of others, being problem solvers, and focusing on long term partnerships. You’ll excel at Redesign if you thrive in a rewarding environment that moves quickly, challenges you to grow and fosters collaboration. We seek candidates with a hands-on customer-first approach, robust interpersonal and communication skills, strong work ethic and excellent time management. While teamwork is expected, the ability to work independently in a fast-paced environment is crucial.

Job Description

The Senior Cybersecurity Engineer is a hands-on engineering role in our Managed Security Services team. You will own the configuration, tuning, and operational health of the security platforms protecting our clients: tuning detections, onboarding log sources, driving vulnerability remediation to closure, and acting as technical lead when an incident is live. You will work alongside a team of security staff, supported by a global network operations center that handles first-line monitoring and triage.

Our core platforms are CrowdStrike Falcon, Rapid7 InsightIDR and InsightVM, and the Microsoft security stack, and experience with Palo Alto Networks is a plus. You will also help shape how we secure AI and agentic systems: agents with genuine access to production environments, and the authorization, monitoring, and adversarial testing that has to sit around them. We do not expect you to have used every tool across our client base, but we do expect real depth in endpoint detection and response and in SIEM and vulnerability management.

Key Responsibilities

  • Administer, configure, and tune core security platforms across multiple client tenants, owning configuration baselines, policy alignment, and platform health.
  • Build and refine detection logic, reduce false positives, and create the operational playbooks that turn a detection into a repeatable response.
  • Onboard and troubleshoot SIEM log sources, and diagnose and repair broken ingestion and API integrations between security, monitoring, and ticketing platforms.
  • Triage alerts and events, serve as a technical lead during live incidents alongside clients, internal teams, and third-party incident response firms.
  • Run vulnerability scanning and reporting, prioritize by real exploitability rather than raw severity score, and drive remediation to closure with engineering teams.
  • Define and enforce the controls around AI systems that hold real access to internal and client environments, including tool authorization, activity monitoring, and adversarial testing.
  • Automate recurring security operations work using scripting and platform APIs.
  • Own the technical relationship with our security and managed detection vendors, and judge whether what we are getting matches what we bought.
  • Write formal root cause analyses, execute changes through structured change management, and maintain documentation of baselines, incidents, and tuning decisions that client audits rely on.
  • Tailor configurations to each client environment and give stakeholders clear status reporting, executive-level summaries, and practical best-practice guidance.
  • Mentor junior engineers and work with infrastructure, network, and service delivery teams so security fits the wider environment rather than sitting beside it.

Required Skills & Experience

  • Hands-on ownership of enterprise endpoint detection and response and of a SIEM and vulnerability management platform. CrowdStrike Falcon and Rapid7 InsightIDR and InsightVM are what we run most; comparable platforms such as Microsoft Sentinel, Splunk, Cortex, SentinelOne, or Tenable are equally relevant.
  • Hands-on experience securing and administering Microsoft identity and endpoint services: Entra ID, Conditional Access, Intune, and Microsoft Defender.
  • Cloud security experience in at least one major provider (Azure, AWS, or GCP) covering identity, workload, and posture management.
  • Automation ability using AI tooling, scripting (Python, PowerShell, or an equivalent), and direct work against vendor APIs.
  • Experience writing formal root cause analyses and working inside a structured change management process.
  • Strong analytical and troubleshooting instincts, clear client-facing communication, and the ability to work independently across many client environments at once without losing track of any of them.

Preferred Qualifications

  • Security or vendor certifications such as Security+, GCIH, or CISSP, or certifications from Palo Alto Networks, CrowdStrike, Rapid7, or Microsoft.
  • Working knowledge of a major control framework (NIST CSF or 800-53, CIS Controls, ISO 27001, SOC 2, PCI DSS, HIPAA, or CMMC).
  • Experience with data loss prevention, privileged access management, or zero trust network access.

Background

  • 5+ years in security engineering or security operations, in roles where you owned the platforms rather than working from their dashboards.
  • Prior MSP/MSSP or other multi-client security experience strongly preferred, with demonstrated ability to manage competing priorities across multiple client environments.
  • Bachelor’s degree in information technology, cybersecurity, or a related field, or equivalent hands-on experience.


Benefits

We offer a comprehensive benefits package which may include:

  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • 401(k) retirement plan with company match (annual dollar cap applied)
  • Flexible time off plan
  • 15 paid holidays
  • Sick leave (amount varies by state requirements and is at least the minimum required by any state)
  • Short-term and long-term disability
  • Life insurance
  • Paid parental leave


We’re an Equal Opportunity and Affirmative Action Employer and welcome applicants from all backgrounds. We consider qualified candidates without regard to any legally protected status. This role is subject to applicable employment laws based on work location. In compliance with pay transparency laws, the compensation range for this role is included, with final pay based on experience, skills, and location. We participate in E-Verify to confirm employment eligibility and are happy to provide reasonable accommodations throughout the hiring process—just let us know how we can help.

Similar Jobs

An Hour Ago
Remote
Georgia, USA
120K-160K Annually
Senior level
120K-160K Annually
Senior level
Retail
Designs and operates enterprise-scale discovery, governance, and lifecycle automation for non-human identities, including service accounts, API tokens, cloud roles, CI/CD identities, certificates, and AI agents. Partners with IAM, cloud, DevOps, and application teams to modernize authentication, automate credential management, support access reviews, detect misuse, and align controls with Zero Trust principles. Develops threat-hunting and data-analysis capabilities, produces technical documentation, and supports incident response, audits, and compliance.
Top Skills: Ci/CdCloud IamIamInfrastructure As CodeItsmMtlsOauthPamPkiPowershellPythonSecrets ManagementTlsZero Trust
5 Hours Ago
Remote
Texas, USA
Senior level
Senior level
Transportation
Designs, implements, operates, and improves enterprise cybersecurity across SIEM, threat detection, identity, cloud, endpoint, network, incident response, vulnerability management, automation, and Zero Trust. The role configures Microsoft security technologies, investigates and hunts threats, develops detections and automations, remediates vulnerabilities, and strengthens technical controls using NIST principles.
Top Skills: AzureCloud SecurityEndpoint SecurityKqlMicrosoft Defender XdrMicrosoft Entra IdMicrosoft SentinelNetwork SecurityNist Cybersecurity FrameworkScriptingSecurity AutomationSecurity OrchestrationSIEMVulnerability ManagementZero Trust
2 Days Ago
Remote
United States
98K-125K Annually
Senior level
98K-125K Annually
Senior level
Artificial Intelligence • Cloud • Machine Learning • Software • Business Intelligence • Cybersecurity • Big Data Analytics
Engineer and assess cybersecurity capabilities across identity, devices, networks, applications, data, and cloud platforms. Translate NIST, FISMA, RMF, and FedRAMP requirements into technical controls; support authorization activities; review security documentation and evidence; analyze vulnerabilities and control gaps; develop remediation recommendations; and advise stakeholders on security design and risk treatment.
Top Skills: Cloud PlatformsFedrampFismaNistRmfZero Trust

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account