Search jobs > Springfield, IL > Security engineer

Security Engineer

SICPA
Springfield, IL, USA
Full-time

ROLE

We are seeking a Software Security Engineer experienced with compliance audits and frameworks such as SOC 2 Type II, FedRAMP and ISO.

This role is responsible for leading security and compliance initiatives with internal and external teams and stakeholders, will drive certifications processes and ensure all policies, processes and procedures are met and documentation is maintained.

The ideal candidate will have a deep understanding of information security principles, infrastructure management and secure software development practices and tools.

PROFILE

  • Collaborate with cross-functional teams to integrate state of the art security controls at every step from design, development, quality assurance to maintenance of systems
  • Discover, assess and report vulnerabilities and escalate issues if needed
  • Review, identify weaknesses and propose improvements in architectures and systems designs
  • Develop and promote best security practices, design and architecture patterns to engineering teams
  • Analyze findings from different tools, pen tests and support DevSecOps pipelines development
  • Develop and maintain tools / scripts to help teams to achieve secure coding practices
  • Collaborate with Product Owners and business stakeholders to prioritize and assess security related tasks
  • Monitor latest industry security developments, analyze impact, and work with teams to mitigate risks
  • Manage the SOC 2 Type II audit process for infrastructure systems, collaborating with both internal teams and external auditors.
  • Maintain expert knowledge of our systems infrastructure, ensuring it meets SOC 2 Type II compliance requirements and other regulatory standards.
  • Develop, implement, and maintain procedures and policies to ensure system compliance with SOC 2 Type II and other applicable regulations.
  • Communicate effectively with stakeholders, auditors, and team members regarding compliance matters and audit processes.
  • Manage remediation efforts to address any identified system vulnerabilities or issues.
  • Provide training and guidance on compliance matters to other team members.
  • Conduct regular security assessments of applications, identifying vulnerabilities and taking appropriate mitigation measures.
  • Participate in incident response and cyber security investigations.
  • Proven experience with SOC 2 Type II audits in a system-focused role.
  • In-depth knowledge of IT systems infrastructure, including both on-premises and cloud-based systems, and related security principles.
  • Understanding of regulatory requirements, risk management methodologies, and security frameworks.
  • Excellent problem-solving, communication, and project management skills.
  • Active security industry certifications such as OSCP as a strong advantage.
  • 2+ years of experience in cybersecurity, software development or IT Operations
  • Experience in SAST and DAST
  • Experience with Pentest is a plus
  • Experience in software programming, preferably Java or .NET
  • Experience in Infrastructure as code tooling, preferably Terraform and Ansible
  • Basic knowledge of relational databases, e.g., Oracle, SQL Server and PostgreSQL
  • Strong interpersonal, communication and teaching skills
  • Strong analytical skills
  • Passion for excellence and willing to become a key team player
  • Ability to multi-task, self-direct, manage deadlines and team-oriented
  • Fluent in English, French is an asset
  • Bachelor's degree in Information Technology, Computer Science, or a related field.
  • Relevant professional certifications (CISSP, CISM, CISA, etc.) are strongly preferred.

JOIN US :

Our success comes from our highly skilled and talented employees

Respectful entrepreneurship and a long-term vision are key for success

Our people contribute to a more secure world

Diversity at all levels of an organization is a strength

18 days ago
Related jobs
Promoted
Integrated Intel Solutions
Springfield, Illinois

Security Engineer (IT) Springfield, VA. NGAs Special Program Office (AY) is looking for a qualified Security Engineer to join an exciting program in Springfield, Virginia. Manage documentation of security plans and procedures for all assigned systems in adherence to USG information technology securi...

Promoted
Cardinal Health
Springfield, Illinois

Cardinal Health’s Information Security team is on a tremendous growth journey adding a number of new team members in our Cyber Threat Operations Center, IT Risk and Compliance, and Security Architecture teams. We currently have a career opening for a Cybersecurity Engineer. We aim to be a world-clas...

Promoted
Highmark Health
Springfield, Illinois

The Identity & Access Management Senior Security Engineer is responsible for acting as resource, leader, and peer coach with other engineers in the development, testing, implementation, and integration of Identity and Access Management systems and solutions. Experience working within an information ...

SICPA
Springfield, Illinois

We are seeking a Software Security Engineer experienced with compliance audits and frameworks such as SOC 2 Type II, FedRAMP and ISO. Develop and promote best security practices, design and architecture patterns to engineering teams. This role is responsible for leading security and compliance initi...

TEKsystems
Abbott Park,IL,60064,USA

CarbonBlack, sentinelone, Systems engineering. ...

Highmark Health
IL, Working at Home, Illinois

The Identity & Access Management Senior Security Engineer is responsible for acting as resource, leader, and peer coach with other engineers in the development, testing, implementation, and integration of Identity and Access Management systems and solutions. Experience working within an information ...

CDW
Remote, IL, US
Remote

Basic Requirements and Qualifications:** One of the following degrees and/or relevant experiences:* Bachelor’s degree in Cyber Security, Information Security, Computer Science, or Information Technology related field, plus at least one year of relevant industry experience* Associate’s degree with at...

Arrow Electronics, Inc.
Illinois,IL,IS
Remote

This position is responsible for combination of security design and implementation work, as well as design, implementation, and enhancements of Arrow corporate security infrastructure. Liaise between engineering and other departments on security related items. This position is responsible for the su...

Buildertrend
Springfield, Illinois
Remote

Security Engineer or Cloud Engineer, with a focus on public cloud security and network security required. Work closely with Cloud Engineers and Site Reliability Engineers to implement and manage advanced security technologies and tools on public cloud platforms, such as identity and access managemen...

Ryder System, Inc.
Springfield, Illinois
Remote

The Application Security Engineer must understand development, coding, security engineering, and secure systems configurations. We seek a highly motivated and experienced Application Security Engineer to join our growing security team. Conduct security assessments that require expertise of our organ...