Bitsight

Security Engineer - Corporate Security

Remote USAFull time$100,000 - $140,000 / yearPosted 17 days ago
Apply on Bitsight →

Sign into see who you know at Bitsight.

Bitsight is a cyber risk management leader transforming how companies manage exposure, performance, and risk for themselves and their third parties. Companies rely on Bitsight to prioritize their cybersecurity investments, build greater trust within their ecosystem, and reduce their chances of financial loss.Built on over a decade of technological innovation, its integrated solutions deliver value across enterprise security performance, digital supply chains, cyber insurance, and data analysis.We invented the cyber ratings industry in 2011Over 3000 customers trust BitsightOver 750 teammates are dispersed throughout Boston, Raleigh, New York, Lisbon, Singapore, and remoteWe are looking for a skilled and passionate Cybersecurity Engineer to strengthen and scale our security capabilities in response to an evolving threat landscape. In this role, you will have the opportunity to shape our security strategy, drive the implementation of cutting-edge security technologies, and establish proactive defense mechanisms to safeguard our company and employees' data. As a subject matter expert, you will work with industry-leading security platforms, define preventative measures, and contribute to a culture of security excellence.BitSight is transforming how companies manage information security risk with objective, verifiable, and actionable Security Ratings. BitSight’s platform continuously analyzes vast amounts of external data on security issues and behaviors to help organizations manage third-party risk, underwrite cyber insurance policies, benchmark performance, conduct M&A due diligence, and assess aggregate risk. Fifty percent of the world’s cyber insurance premiums are underwritten by BitSight customers, all four of the Big 4 accounting firms use BitSight, and four of the top five investment banks rely on our solution to manage cyber risks.Key Responsibilities:Develop and enhance security strategies to protect against emerging threats.Deploy and manage SIEM, EDR, and cloud security technologies to monitor and respond to incidents effectively.Lead or participate in security incident handling and response, including SOC operations and DFIR.Enforce least privilege access principles and secure network architectures.Support AI governance initiatives, including evaluating AI security risks, contributing to AI usage policies, and implementing controls for AI tools and integrations used across the organization.Work autonomously while also thriving in a collaborative team environment.Utilize defense-in-depth methodology to enhance and sustain a secure environment.Required Qualifications:4+ years of experience in dedicated information security roles.Hands-on experience with SIEM and EDR solutions.Expertise in security incident response and SOC operations.Strong knowledge of least access principles and defense-in-depth methodologies.Solid understanding of TCP/IP networking and security protocols.Understanding of AWS cloud environments and working with rela...