Information Security Engineer

17 hours ago


Boston, Massachusetts, United States firstPRO, Inc Full time $120,000 - $200,000 per year

The Senior Information Security Engineer will serve as a trusted security leader and subject matter expert, partnering closely with the Information Security Manager to advance the firm's cybersecurity strategy, architecture, and operations. This role will take ownership of critical security initiatives, lead the design and enhancement of security programs, and guide cross-functional teams in implementing secure, resilient, and compliant solutions. The Senior Information Security Engineer will be responsible for architecting and managing enterprise security tools, leading incident response efforts, ensuring robust cloud security, and proactively addressing emerging threats. This position requires a deep understanding of both the firm's business objectives and the evolving cybersecurity landscape, ensuring that security solutions are business-enabling, scalable, and aligned with industry best practices.

Essential Job Functions and Responsibilities:

  • Architect and oversee enterprise identity governance initiatives and the Privileged Access Management (PAM) platform, ensuring access control frameworks meet regulatory and business requirements.
  • Serve as a principal advisor to IT and business leaders on balancing business needs with security best practices in technology adoption and process design.
  • Lead advanced incident response activities, including root cause analysis, threat hunting, containment, and post-incident improvement plans.
  • Lead the design, implementation, and optimization of Data Loss Prevention (DLP) solutions and related controls to safeguard sensitive data and prevent breaches.
  • Define and enforce robust cloud security strategies, including Netskope and other zero trust/SASE solutions.
  • Drive the maturity of the identity and access management program across cloud services, high-performance computing environments, and hybrid infrastructures.
  • Provide senior-level oversight of information security tools and operations, including SIEM platforms, EDR solutions, and advanced malware defense.
  • Represent Information Security in enterprise architecture and technical project reviews, guiding secure design and implementation decisions.
  • Lead investigations into phishing campaigns, targeted threats, and complex security incidents, providing actionable intelligence to stakeholders.
  • Conduct continuous threat landscape assessments, recommending both tactical mitigations and strategic security investments.
  • Participate in the vulnerability management lifecycle, from pre-deployment risk assessment to remediation validation and compliance reporting.
  • Guide the ongoing development of the Information Security Management System (ISMS) and related governance processes.
  • Mentor and coach junior security engineers, fostering skill growth and a proactive security culture across the organization.
  • Partner with business stakeholders to elevate security training, awareness programs, and process improvements.
  • Establish and refine advanced technical security controls to ensure visibility, rapid incident response, and adherence to compliance frameworks.
  • Participate in rotational on-call responsibilities to support the firm and respond to critical security events and incidents.

Qualifications:

  • Bachelor's degree preferred; degree in Information Systems Security, Computer Science, or related field preferred.
  • Industry-recognized certifications strongly preferred (e.g., CISSP, CISM, GIAC, CCSP).
  • Minimum of 5 years of substantive relevant experience required.
  • An ideal candidate will have 7-10 years of progressive cybersecurity experience, with at least 3 years in a senior or lead engineering role.
  • Proven track record designing, implementing, and managing enterprise security architectures in cloud and hybrid environments (AWS, Azure strongly preferred).
  • Advanced expertise in identity governance, privileged access management, cloud security controls, and incident response.
  • Experience with data security engineering and data loss prevention solutions.
  • Deep understanding of enterprise IT systems, networking, and application architecture.
  • Exceptional communication, documentation, and stakeholder engagement skills, with the ability to influence at all organizational levels.
  • Strong project leadership skills, with the ability to drive multiple high-impact initiatives concurrently under tight deadlines.
  • Demonstrated experience mentoring and developing technical talent.
  • Strategic thinker with a results-driven mindset and a passion for continuous learning in cybersecurity.
  • An inclusive and growth-oriented mindset, strong interpersonal skills, and an ability to work across differences
  • To the extent permitted by applicable law, eligible candidates must be authorized to work in the United States without sponsorship or restriction, now and in the future


  • Boston, Massachusetts, United States WHOOP Full time

    At WHOOP, we're on a mission to unlock human performance. WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives.WHOOP is seeking a Senior Information Security Engineer to serve as a technical leader in our Security team reporting to our Information Security Manager. In this role, you will drive the...


  • Boston, Massachusetts, United States General Dynamics Information Technology Full time $95,285 - $128,915 per year

    *Job Description:Type of Requisition:*Regular*Clearance Level Must Currently Possess:*Top Secret/SCI*Clearance Level Must Be Able To Obtain:*Top Secret SCI + Polygraph*Public Trust/Other Required:*None*Job Family:*Cyber and IT Risk Management*Skills:Job Qualifications:*Information Security, Information Security Management, Information System...


  • Boston, Massachusetts, United States Fiduciary Trust Company Full time $80,000 - $120,000 per year

    Job SummaryWe are seeking a highly skilled and motivated Information Security Analyst to join our team. This individual will be responsible for managing and optimizing our security infrastructure, including SIEM, endpoint protection, email security, and data loss prevention technologies. The ideal candidate will play a key role in supporting IT and...


  • Boston, Massachusetts, United States Re-krut Services Full time $100,000 - $150,000 per year

    Company Description Work remotely for a national HealthCare entrepreneurial non-profit  organization. Job Description Extensive knowledge of HIPAA and HITECH.Knowledge of and experience with Information Security frameworks such as HiTRUST, NIST, or ISO 27001.Bachelor's degree in information security, information assurance, information technology,...


  • Boston, Massachusetts, United States GuidePoint Security Full time $120,000 - $180,000 per year

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Boston, Massachusetts, United States UNITY Systems Full time $66,400 - $134,400 per year

    Project Duration: 18-24 MonthsEngagement Length: Through June 30, 2026 (with renewal possible)Hours Per Week: 37.5Work Schedule: Hybrid role requiring at least 4 days on-site per month (two assigned by management and two chosen by the employee), with ability to report on short notice if needed.Information Security Analyst – ERP ImplementationSeeking an...


  • Boston, Massachusetts, United States RSA Security Full time $120,000 - $200,000 per year

    *Location:*Boston, MA (U.S. Citizen Required)*Domain:*Identity and Access Management (IAM), SecurityRSA provides trusted identity and access management for 12,000 organizations around the world, managing 25 million enterprise identities and providing secure, convenient access to millions of users. RSA specializes in empowering security-first organizations in...


  • Boston, Massachusetts, United States RSA Security Full time $144,000 - $200,000 per year

    *Location:*Boston, MA (U.S. Citizen Required)*Domain:*Identity and Access Management (IAM), SecurityRSA provides trusted identity and access management for 12,000 organizations around the world, managing 25 million enterprise identities and providing secure, convenient access to millions of users. RSA specializes in empowering security-first organizations in...


  • Boston, Massachusetts, United States RSA Security Full time $140,000 - $250,000 per year

    Location: Boston, MA (U.S. Citizen Required)Domain: Identity and Access Management (IAM), SecurityRSA is seeking a skilled and motivated Principal Software Engineer to help design, develop, and maintain our hybrid cloud and mobile secure identity platform, RSA ID Plus. You will work on building cloud-native, scalable SaaS solutions that solve real-world...


  • Boston, Massachusetts, United States Klaviyo Full time $152,000 - $228,000

    At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair shot at success and appreciate the experiences each person brings beyond the traditional job requirements. If you're a close but not exact match with the...