yandex
isccareers
Страна
США
Зарплата
150 000 $ – 180 000 $
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
SeniorУдалённоПолная занятость

Senior Cybersecurity Engineer

Оценка ИИ

Отличная вакансия в растущем Insurtech-секторе с прозрачной вилкой зарплаты и широким пакетом льгот. Роль предлагает высокую степень автономности и возможность работать с современным стеком технологий (AWS, Terraform, Python).


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Высокая сложность обусловлена требованием глубоких знаний AWS (multi-account), навыков автоматизации на Python и опыта работы с IaC (Terraform). Роль предполагает не только эксплуатацию, но и проектирование сложных систем безопасности с нуля.

Анализ зарплаты

Медиана165 000 $
Рынок145 000 $ – 195 000 $
Оценка ИИ

Предложенная зарплата в $150,000 – $180,000 полностью соответствует рыночным стандартам для Senior-позиций в области облачной безопасности в США. Верхняя граница диапазона конкурентоспособна даже для крупных технологических хабов.

Сопроводительное письмо

I am writing to express my strong interest in the Senior Cybersecurity Engineer position at Integrated Specialty Coverages. With over 7 years of experience in security engineering and a deep focus on AWS environments, I have a proven track record of designing and implementing robust security controls that align with business growth. My expertise in Infrastructure as Code using Terraform and automation with Python directly matches your requirement for building scalable, policy-driven security guardrails.

In my previous roles, I have successfully engineered data pathways for SIEM integration and developed automated remediation pipelines that reduced manual intervention for low-risk vulnerabilities. I am particularly drawn to ISC’s mission of combining insurance with cutting-edge technology and AI/ML. I am confident that my hands-on experience with AWS Organizations, IAM, and KMS, combined with my commitment to 'security by default,' will allow me to contribute significantly to your CISO’s strategic goals and the overall security posture of your cloud-first environment.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в isccareers уже сейчас

Присоединяйтесь к команде ISC и станьте ключевым архитектором безопасности в динамично развивающемся Insurtech-лидере!

Описание вакансии

About Integrated Specialty Coverages

Integrated Specialty Coverages, LLC (ISC) is a growth stage technology and data-driven commercial MGA and insurance wholesaler leading innovation in the market.

Backed by one of the leading private equity firms, Onex Partners, and led by a forward-thinking management team, ISC is combining the worlds of insurance and technology to create an Insurtech powerhouse. As a leading online distributor of insurance products for a range of industries and “Main Street USA”, we are looking for the right people to help us in our mission of achieving exponential growth. We strive to be the number one place to go for brokers and agents to source insurance. To accomplish this, we’re building a digitally focused team that deeply understands the intersection between user experience, data, and AI/ML to optimize the way we engage with our customers and partners.

Job Summary

We’re looking for a Senior Cybersecurity Engineer to design, build, and operate preventative and detective security controls and automation across our AWS‑first and enterprise environments. Reporting to the CISO, this role implements guardrails, platforms, and integrations and partners with infrastructure, platform, and application teams to embed security by default in our AWS cloud and enterprise environments. The role will perform hands-on engineering in multiple security domains including network security, endpoint security, email security, data security, vulnerability management, container security, and identity and access management.

Position Responsibilities

  • Control Engineering & Operation

+ Design, implement, and maintain controls in AWS (IAM, KMS, VPC, GuardDuty, Security Hub, Detective, CloudTrail/CloudWatch), network, endpoint, email, data security, vulnerability, and identity domains.

+ Define SLOs for control availability, latency, coverage, and drift; implement telemetry to continuously measure those SLOs.

  • Security Automation & “Policy as Code”

+ Partner with infrastructure, platform, and application teams to build IaC modules (Terraform/CloudFormation) and platform automations (e.g., Python/Lambda, Step Functions) to enforce guardrails (account vending, baseline hardening, logging enablement, key policies, SCPs) using Git.

+ Implement break‑glass patterns and least‑privilege workflows that are auditable and reversible.

  • Detection Enablement

+ Engineer data pathways (e.g., CloudTrail, VPC Flow, ECS audit, identity logs) into SIEM/MDR tooling; ensure completeness, timeliness, and schema quality.

+ Translate Detection and Response Lead feedback on false positives/gaps into logging or control adjustments.

  • Vulnerability & Exposure Engineering

+ Own scanners/integrations, asset coverage, tagging standards, and develop risk‑based remediation pipelines (ticketing, auto‑remediation for low‑risk classes).

+ Partner with owners to remove friction (pre‑approved windows, canaries, rollbacks).

  • Identity & Secrets Hardening

+ Engineer least‑privilege patterns, permission boundaries, conditional access, and automated key/secret lifecycle (rotation, discovery, usage attestations).

+ Provide ready‑to‑consume roles/policies to teams.

  • Documentation & Reuse

+ Maintain runbooks, design docs, and reusable modules; ensure changes are versioned, peer‑reviewed, and test‑

  • On‑Call (Engineering)

+ Participate in control‑health and platform on‑call (e.g., logging ingestion failures, drift, outages).

+ Escalate security events to the Detection & Response Lead/MDR.

Minimum Qualifications

  • 7+ years in security engineering with production AWS (multi‑account/Organizations) and automation‑first delivery.
  • Domain experience in at least three of the following:

+ Network security (segmentation, routing, firewall, proxy, WAF)

+ Endpoint security (EDR/EPP, hardening, health attestation)

+ Email security (phishing protection, authentication, inbound/outbound controls)

+ Data security (classification, DLP, encryption, key management)

+ Vulnerability management (scanning, prioritization, remediation pipelines)

+ Container security (image scanning, runtime policy, supply chain)

+ Identity and access management (policy design, federation, least privilege)

  • IaC proficiency (Terraform preferred) and Python for automation; CI/CD integration experience (e.g., GitHub Actions, GitLab, CodePipeline).
  • Experience with root‑cause analysis and remediation of control failures (not incident RCA).
  • Demonstrated ability to independently drive complex projects to completion, as well as collaborate effectively with a complex set of stakeholders.

Preferred Qualifications

  • Designed landing zones with SCPs, baseline detective controls, centralized logging, account vending, and guardrail automation.
  • Built event‑driven remediations (e.g., detect to auto‑tag/deny/quarantine) safely with approvals and rollbacks.
  • Advanced experience engineering security controls in AWS (for example, IAM, KMS, VPC, GuardDuty, Security Hub, Detective, CloudTrail, CloudWatch, Organizations, Control Tower), with automation first practices.
  • Industry certification such as AWS Certified Security – Specialty, Certified Information Systems Security Professional, GIAC Certifications, SANS.
  • Knowledge of security frameworks and standards such as NIST, ISO, and CIS.

This role also offers bonus pay. Your ISC Talent Acquisition representative will share more details about the bonus component should you advance in the interview process.

The starting annual pay scale for this position is listed below. Actual starting pay will be based on factors such as skills, qualifications, training, and experience. In addition, the company offers comprehensive benefits including medical, dental and vision insurance, 401(k) plan with match, paid time off, and other benefits.

ISC's salary ranges are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.

National Pay Range

$150,000—$180,000 USD

Benefits of Working at ISC

  • Employee Ownership Program - every eligible employee shares in the financial rewards that grow when the company grows
  • Professional development opportunities
  • Owner Referral Program
  • Work from home reimbursement for remote/hybrid roles
  • Canary emergency financial assistance program
  • Comprehensive medical, dental, vision
  • Life/AD&D Insurance
  • Confidential, Employee Assistance Program
  • Health Savings Account, includes company contribution
  • Short-term disability
  • Voluntary benefits - supplemental accident, critical illness, hospital insurance
  • Employee discounts
  • 401(k) Plan with company match contribution
  • Addition Wealth Financial Wellness Program
  • Various Time Off Programs
  • 11 company paid holidays

Applicants may contact the ISC HR department via e-mail or phone to request and arrange for an accommodation that will allow the applicant to successfully complete the application process. Applicants needing assistance may request accommodation at any time. Please contact ISC at HR@ISCMGA.com or 760-599-7242.

ISC believes in creating long-term relationships by being responsive and relevant and by consistently delivering value to our community of customers. Specifically, we focus on attracting, developing, and retaining the best talent for our business, challenging our people, demonstrating a “can-do” attitude, and fostering a collaborative and mutually supportive environment.

Diversity creates a healthier atmosphere: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, gender, gender identity, sexual orientation, marital status, medical condition, genetic information, mental or physical disability, military or veteran status, or any other characteristic protected by local, state, or Federal law.

\\Must be legally authorized to work in the United States.\\**

\\ISC participates in the Federal E-Verify program\\**

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • AWS
  • Terraform
  • Python
  • IAM
  • KMS
  • VPC
  • GuardDuty
  • SIEM
  • CloudFormation
  • GitHub Actions
  • GitLab
  • Network Security
  • Endpoint Security
  • Vulnerability Management
  • Container Security

Возможные вопросы на собеседовании

Проверка практического опыта работы с инфраструктурой как кодом и автоматизацией безопасности.

Опишите ваш опыт внедрения 'Policy as Code' с использованием Terraform и Sentinel или аналогичных инструментов для обеспечения безопасности в AWS.

Оценка способности кандидата минимизировать риски при управлении доступом в облаке.

Как бы вы спроектировали процесс предоставления временного привилегированного доступа (break-glass) в мульти-аккаунтной среде AWS?

Проверка навыков автоматизации реагирования на инциденты.

Расскажите о созданном вами сценарии автоматического реагирования (auto-remediation). Как вы обеспечивали отсутствие ложных срабатываний, влияющих на бизнес-процессы?

Оценка понимания архитектуры безопасности данных.

Какие стратегии ротации секретов и управления ключами в AWS KMS вы считаете наиболее эффективными для высоконагруженных приложений?

Проверка умения работать с метриками и SLO.

Как вы определяете и измеряете SLO для контролей безопасности, таких как задержка доставки логов или дрифт конфигурации?

Похожие вакансии

gongio
148 000 $ – 225 000 $

Sr. Manager, Identity & Access Management

SeniorУдалённоСША
Okta · IAM · SSO · MFA · RBAC · ABAC · SaaS · SOC 2 · ISO 27001 · SOX · Zero Trust · Google Workspace · Slack · Salesforce · Automation
+15 навыков
ionq
110 336 $ – 144 459 $

Senior Physical Security Manager

SeniorВ офисеСША
Physical Security · Program Management · Risk Assessment · CCTV · Access Control Systems · Crisis Management · Business Continuity Planning · Project Management Planning · SCIF · Security Audits
+10 навыков
ionq
110 336 $ – 144 459 $

Senior Security Engineer - GRC

SeniorУдалённоСША
NIST RMF · SOC 2 · ISO 27001 · GDPR · CCPA · AWS · Google Cloud Platform · Azure · Jira · Python · Risk Management · Data Governance
+12 навыков
align
Не указана

Senior IT Auditor – PCI QSA

SeniorУдалённоСША
PCI DSS · QSA · CISA · CISSP · Information Security · IT Audit · Cybersecurity · Compliance
+8 навыков
guidepointsecurity
Не указана

Senior Security Architect (Raleigh, NC) - Mid-Atlantic region

SeniorГибридСША
Network Security · NGFW · Cloud Security · Data Security · Vulnerability Management · Risk Management · EDR · IAM · SIEM · AI Security · Windows · Linux · macOS · Zero Trust Architecture · SASE · SSE · Palo Alto Networks · Cisco Security · Check Point · CrowdStrike · Splunk · AWS · Azure · GCP
+24 навыков
guidepointsecurity
Не указана

Senior Security Architect (Philadelphia Metro) - Mid-Atlantic region

SeniorГибридСША
Network Security · Cloud Security · Data Security · Vulnerability Management · EDR · IAM · SIEM · Zero Trust Architecture · Palo Alto Networks · CrowdStrike · Splunk · AWS · Azure · Google Cloud Platform · SASE
+15 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

isccareers
Страна
США
Зарплата
150 000 $ – 180 000 $