What are the responsibilities and job description for the Principal Cybersecurity Engineer\/ Junior Cybersecurity Architect position at Compunnel?
Job Summary :
We are seeking a highly experienced Cyber Security Expert to help ensure that our client’s software, systems, and infrastructure are designed and implemented to the highest security standards. This role involves performing technical security assessments, code reviews, vulnerability testing, and collaborating with engineering and operations teams to enhance our security posture. As a Principal Security Advisor, you will provide subject matter expertise in mobile device security, IoT device security, enterprise applications, cloud environments, and network technologies.
Key Responsibilities :
Security Leadership :
Lead information security reviews of new technologies, designs, and remediation planning efforts.
Collaborate with Engineering and Operations Teams to address security vulnerabilities found via PSIRTs, scans, or breaches.
Investigate and identify security needs, recommend solutions, and implement, test, and monitor security improvements.
Threat Modelling :
Perform threat modelling to identify and analyze potential threats using frameworks like STRIDE, PASTA, TRIKE, ATTACK TREE, DREAD, KILL CHAIN, CAPEC.
Create and implement mobile application threat models and data flow diagrams.
Security Expertise :
- Serve as a subject matter expert in multiple facets of network and information security, including firewall policy design, SSL certificate management, and vulnerability analysis and mitigation.
- Advanced understanding of IP / security solutions and technologies, especially applicable to Wireless Network Architecture.
- Provide expertise in tools such as load balancers (e.g., A10, F5), firewalls (e.g., CheckPoint), Venafi, MDM (e.g., MobileIron), Cloud (e.g., AWS, Azure), Malware Protection (e.g., FireEye), Advanced Persistent Threats (e.g., Damballa), Privileged Accounts (e.g., CyberArk), SIEM (e.g., ArcSight), Log & Event (e.g., Splunk), Intrusion IDS / IPS (e.g., Symantec).
Cloud & Application Security :
Compliance & Regulatory Knowledge :
Knowledge of federal and compliance regulations, including SOX, PCI, and CPNI.
Collaboration & Communication :
Required Qualifications :
Preferred Qualifications (if any) :
Certifications (if any) :
Relevant Cyber Security certifications (e.g., CISSP, Certified Ethical Hacker (CEH), Certified Information Security Manager (CISM)) are highly preferred.
Experience in cloud security certifications (e.g., AWS Certified Security, Azure Security Engineer).
Location & Onsite Requirements :
Location Options : Bellevue, WA | Overland Park, KS | Frisco, TX | Ravinia, GA | Herndon, VA.
Onsite Requirement : Yes, 3 days a week.
Education : Bachelors Degree
Certification : Certified Ethical Hacker , Certified Information Security Manager