Senior Information Security Engineer

4 weeks ago


New York County New York, United States Simpson Thacher & Bartlett LLP Full time
Description/Job Summary

The Senior Information Security Engineer is responsible for monitoring the IT security infrastructure within the Firm's on prem and Azure cloud environments, articulating technical security requirements, monitoring the effectiveness of the existing IT security controls framework, making recommendations for enhancements, and raising the level of security awareness. The incumbent will be a part of the security team of engineers that safeguards the infrastructure and information across the Firm worldwide. This role involves implementation, maintenance and configuration of key Firm security initiatives.

Responsibilities/Duties

Engineer and design cloud security solutions within Microsoft Azure, make recommendations as needed

Implement and / or improve logging and monitoring solutions in Azure and M365 to detect and respond to security threats in real time.

Assess and select appropriate security controls and technologies for cloud environments.

Assist with the management of the Firm's deployed suite of security tools, including, but not limited to, SIEM, IDS/IPS, APT's, End Point Protection Deception technology, PAM, MFA, DNS Security, CSPM, SSPM etc.

Ensure the Firms Cloud systems adhere to Azure security best practices and baselines to ensure a secure configuration of Azure resources.

Leverage the Firm's already deployed suite of tools to verify security controls within our cloud platforms, making recommendations as needed

Advise and assist in Identity and Access Management (IAM) of Cloud resources, working closely with the IAM team to secure authentication to the Firm's cloud resources.

Advise and assist the Email and Applications team on secure policy creation within the M365 environment. (Sharepoint/onedrive, Teams, Exchange Online)

Provide security guidance and support to Infrastructure Azure developers and engineers.

Participate in the computer security incident response team efforts and other security investigation activities as assigned

Work with other IT teams and participate in project design meetings from a security perspective.

Drive continuous improvement through trend analysis reporting and metrics management

Provide technical assistance to IT staff in the detection and resolution of security problems

Coordinate multiple projects concurrently and influence the decision making process

Work with information security leadership to develop strategies and plans to enforce security requirements and address identified risks

Communicate and report issues, status, and results to senior management

Perform other duties as assigned

Required Skills

8+ years of experience in information security related responsibilities

In-depth knowledge of Azure cloud services and architecture.

Required Experience

Experience with Microsoft Defender for Cloud, Microsoft Defender for 365 and Microsoft Sentinel.

Knowledge of Microsoft Entra ID , conditional access policies, and Azure Policy.

Experience with Azure CLI and powershell.

Experience in Azure Devops and scanning in CI/CD pipelines.

Experience with logging in Azure using Azure Monitor, Event Hubs, and log analytic workspaces.

Experience with Azure IAM technologies including Entra Identity Protection and JIT.

Experience with Defender for M365 (Anti-phishing protection, anti-spoofing, anti-spam protection, Safe-Attachments, Safe Links, anti-malware solution)

Knowledge with Terraform and securing terraform code.

Knowledgeable in DLP, SIEM, AV, APT, Deception Technology, CSPM, SSPM

Ability to effectively prioritize and execute tasks

Ability to effectively present information verbally and in writing

Must be able to work collaboratively in a team environment and independently

Ability to handle sensitive and/or confidential material and information with suitable discretion

Excellent interpersonal skills and a professional demeanor; ability to work effectively with all levels of Firm personnel and vendors

Required Education

Bachelor's degree required

Professional certifications, such as CISSP, CCSP, CCSK, or AZ-500.

Details

Salary Information

NY only: The estimated base salary range for this position is $160k to $180k at the time of posting.

The actual salary offered will depend on a variety of factors, including without limitation, the qualifications of the individual applicant for the position, years of relevant experience, level of education attained, certifications or other professional licenses held, and if applicable, the location in which the applicant lives and/or from which they will be performing the job. This role is exempt meaning it is not overtime pay eligible.

Privacy Notice

For information about how Simpson Thacher & Bartlett LLP collects and processes your personal information, please refer to our Privacy Notice available at .



  • New York, United States Summit Staffing Partners Full time

    Our client is a phenomenal SEC registered Investment Advisor and Consulting Firm seeking a Senior Information Security Engineering Consultant for their Midtown Manhattan Office. Title: Information Security Engineer Role Overview: The ideal candidate will possess a broad knowledge of various systems and applications, including familiarity with operating...


  • New York, United States Summit Staffing Partners Full time

    Our client is a phenomenal SEC registered Investment Advisor and Consulting Firm seeking a Senior Information Security Engineering Consultant for their Midtown Manhattan Office.Title: Information Security EngineerRole Overview:The ideal candidate will possess a broad knowledge of various systems and applications, including familiarity with operating systems,...


  • New York, United States Summit Staffing Partners Full time

    Our client is a phenomenal SEC registered Investment Advisor and Consulting Firm seeking a Senior Information Security Engineering Consultant for their Midtown Manhattan Office.Title: Information Security EngineerRole Overview:The ideal candidate will possess a broad knowledge of various systems and applications, including familiarity with operating systems,...


  • New York, United States Glocomms Full time

    Glocomms is partnered with an industry-leading media platform seeking to bring on a talented and experienced Senior Security Engineer to join its growing Payments technology team. The ideal candidate will have a Bachelor's or Master's degree in Computer Science, Information Security, or a related field, along with 5-7 years of proven experience in a security...


  • New York County, New York, United States Simpson Thacher & Bartlett LLP Full time

    Description/Job Summary The Senior Cloud Security Engineer is responsible for monitoring the IT security infrastructure within the Firm's on prem and Azure cloud environments, articulating technical security requirements, monitoring the effectiveness of the existing IT security controls framework, making recommendations for enhancements, and raising the...

  • NYC Hybrid

    15 hours ago


    New York, United States Motion Recruitment Partners, LLC Full time

    A leading global investment company is looking for a Senior InfoSec Engineer to join their security team in Manhattan. This is a position that comes with a lot of growth opportunity; we're looking for someone who's comfortable being in a senior engineering position doing both security implementations and helping shepherd junior engineers on the team. In...


  • New York, United States Motion Recruitment Full time

    Outstanding long-term contract opportunity! A well-known Financial Services Company is looking for a Information Security Engineer in New York, NY (Hybrid). Work with the brightest minds at one of the largest financial institutions in the world. This is long-term contract opportunity that includes a competitive benefit package! Our client has been around...


  • New York, New York, United States Motion Recruitment Full time

    Outstanding long-term contract opportunity A well-known Financial Services Company is looking for a Information Security Engineer in New York, NY (Hybrid).Work with the brightest minds at one of the largest financial institutions in the world. This is long-term contract opportunity that includes a competitive benefit package Our client has been around for...


  • New York, United States Motion Recruitment Partners, LLC Full time

    Outstanding long-term contract opportunity! A well-known Financial Services Company is looking for a Information Security Engineer in New York, NY (Hybrid). Work with the brightest minds at one of the largest financial institutions in the world. This is long-term contract opportunity that includes a competitive benefit package! Our client has been around...


  • New York, United States Vaco Full time

    Information Security Engineer Contract Remote Description: The Information Security Engineer designs, implements, and manages IT infrastructure and cybersecurity systems. This includes Active Directory, MFA, SSO, IPS/IDS, log aggregation, patching, and vulnerability management. Key Responsibilities: Design, support, and monitor Active Directory and...


  • New York, United States The Denzel Group Full time

    The Senior Network Engineer - Security is responsible for the collaboration and implementation of network security solutions developed by the Information Security and Networking Architects that have been approved by the Chief information Security Officer and Senior Director of Infrastructure. Works on security related projects, initiatives or remediation...


  • New York, United States Gotham Technology Group Full time

    Title: Information Security EngineerDuration: 12+ month (possibility to extend)Location: 2 days a week onsite in NYC Job Responsibilities:Will be part of the team responsible for engineering and implementing various security projects and administration and monitoring of various security systems.Collaborate with business units and corporate partners to ensure...


  • New York, United States Gotham Technology Group Full time

    Title: Information Security EngineerDuration: 12+ month (possibility to extend)Location: 2 days a week onsite in NYC Job Responsibilities:Will be part of the team responsible for engineering and implementing various security projects and administration and monitoring of various security systems.Collaborate with business units and corporate partners to ensure...


  • New York, United States Planet Technology USA Full time

    Hours : Full time 9-5. 1 hour lunch break. Interview Process: 2 steps Location: Basking Ridge office 3 days per week. 2 days a week Remote Benefits: Generous benefits and PTO Package. PTO package is 3 weeks paid vacation, 1 week of sick time, 2 personal days, and 13 holidays. Bonus: Discretionary. Typically 3-4% POSTION DETAILS: 80% security and 20%...


  • New York, United States Vaco Full time

    Information Security Engineer Contract Remote Description: The Information Security Engineer designs, implements, and manages IT infrastructure and cybersecurity systems. This includes Active Directory, MFA, SSO, IPS/IDS, log aggregation, patching, and vulnerability management. Key Responsibilities:Design, support, and monitor Active Directory and...


  • New York, United States Vaco Full time

    Information Security Engineer Contract Remote Description: The Information Security Engineer designs, implements, and manages IT infrastructure and cybersecurity systems. This includes Active Directory, MFA, SSO, IPS/IDS, log aggregation, patching, and vulnerability management. Key Responsibilities:Design, support, and monitor Active Directory and...


  • New York, United States Vaco Full time

    Information Security Engineer Contract Remote Description: The Information Security Engineer designs, implements, and manages IT infrastructure and cybersecurity systems. This includes Active Directory, MFA, SSO, IPS/IDS, log aggregation, patching, and vulnerability management. Key Responsibilities:Design, support, and monitor Active Directory and...


  • New York, United States Vaco Technology Full time

    Information Security Engineer Contract Remote Description: The Information Security Engineer designs, implements, and manages IT infrastructure and cybersecurity systems. This includes Active Directory, MFA, SSO, IPS/IDS, log aggregation, patching, and vulnerability management. Key Responsibilities:Design, support, and monitor Active Directory and...


  • New York, United States Cogent Infotech Corp Full time

    Cogent Infotech is seeking a senior security engineer on behalf of our client, an innovative technology company in NYC. This is a 1-year contract that can be extended for multiple years or be converted into a permanent position. This position requires the successful candidate to work on-site in Brooklyn 5-days per week. Qualified candidates are encouraged to...


  • New York, United States The Phoenix Group Full time

    As the Senior Security Engineer/Manager, you will lead efforts to safeguard client infrastructure and application development, collaborating closely with the CISO. Your role involves guiding a team of information security engineers to identify and address risks, respond to incidents, and enhance overall security measures for both physical and virtual assets....