Skip to main content
RemoteUnited States only
Published
Role
Security
Experience
Senior
Company size
Mid-size
Salary not disclosed
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Security engineer with 5+ years in cybersecurity/information security. Must know network security, Azure security, zero-trust, SIEM, vulnerability management, EDR, firewalls, IDS/IPS, IAM protocols, and scripting with PowerShell/Python. Remote role tied to Pennsylvania.

Core skills

Azure securitySIEMEDR

Required skills

Vulnerability management toolsFirewallsIDS/IPSNIST CSFCIS ControlsISO 27001SOC 2SAMLOAuthLDAPDirectory servicesPowerShellPython

Optional skills

CISSPCISMCEHGIACCompTIA Security+

What you'll do

  • Design, implement, and maintain enterprise security infrastructure, including firewalls, intrusion detection and prevention systems (IDS/IPS), endpoint protection platforms, SIEM solutions, and application control technologies.
  • Lead the execution of the firm's cybersecurity strategy and roadmap, aligning security initiatives with business objectives and risk management priorities.
  • Monitor security systems, investigate alerts, and coordinate responses to security incidents, including high-severity events and forensic investigations.
  • Conduct vulnerability assessments and penetration testing activities while partnering with system owners to remediate identified risks.
  • Develop, maintain, and enforce security policies, standards, and procedures aligned with industry frameworks such as NIST CSF, CIS Controls, and ISO 27001.
  • Manage identity and access management solutions, including multi-factor authentication, single sign-on, privileged access management, and periodic access reviews.
  • Support security and privacy compliance initiatives, audits, risk assessments, and third-party vendor security reviews.
  • Administer and optimize security tools, including email security gateways, web filtering solutions, and cloud security technologies.
  • Lead incident response, business continuity, disaster recovery, and major security-focused projects such as platform migrations and zero-trust initiatives.
  • Collaborate with infrastructure, cloud, and business teams to integrate security requirements into new and existing technologies and processes.
  • Advise firm leadership on cybersecurity risks, security architecture, and strategic technology investments.
  • Track emerging threats and security trends, and prepare metrics, dashboards, and reports demonstrating the firm's security posture and program maturity.
  • Mentor colleagues, share technical expertise, and help foster a culture of security awareness across the organization.

What they require

  • Bachelor's degree in Information Security, Information Technology, Information Systems, or a related field, or an equivalent combination of education and experience.
  • Five or more years of progressive experience in cybersecurity or information security, including responsibility for complex security programs and initiatives.
  • Strong knowledge of network security, operating system hardening, Azure security, and modern security architectures, including zero-trust principles.
  • Hands-on experience with SIEM platforms, vulnerability management tools, endpoint detection and response (EDR), firewalls, and IDS/IPS technologies.
  • Working knowledge of security frameworks and standards such as NIST CSF, CIS Controls, ISO 27001, and SOC 2.
  • Understanding of identity and access management technologies and protocols, including SAML, OAuth, LDAP, and directory services.
  • Experience with scripting and automation tools such as PowerShell and Python.
  • Exceptional analytical, troubleshooting, and problem-solving abilities.
  • Strong written and verbal communication skills with the ability to present technical concepts to both technical and non-technical audiences.
  • Ability to manage multiple priorities, work independently, and maintain confidentiality in a professional services environment.
  • Preferred: Industry certifications such as CISSP, CISM, CEH, GIAC, or CompTIA Security+ are strongly preferred.
  • Preferred: Master's degree in Cybersecurity, Information Security, or a related discipline is preferred.

Benefits

  • Mentorship, leadership development, and continuous learning opportunities.
  • Family-focused culture.
  • Reasonable revenue hour expectations.
  • Technology that drives efficiency.
  • Engaging work environment.
  • Robust opportunities for professional development.
  • Challenging and rewarding career paths.
  • Competitive compensation.

Since 1935, McNees has been a trusted, client-focused law firm delivering practical, results-driven legal solutions with integrity and a client-first philosophy. McNees is a full-service firm headquartered in Harrisburg, Pa., with offices across Pennsylvania, Maryland, Ohio, and Washington, D.C.

🇺🇸 United StatesLegalMid-sizemcneeslaw.com/

Details

Apply routeGreenhouse
Salary not disclosed