- Company Name
- AmTrust Financial Services, Inc.
- Job Title
- Senior Security Engineer
- Job Description
-
**Job Title**
Senior Security Engineer
**Role Summary**
Design, implement, and maintain enterprise‑scale security solutions across network, endpoint, cloud, identity, and application layers. Serve as technical advisor to IT and business stakeholders, ensuring security is embedded throughout the technology lifecycle and aligned with regulatory requirements.
**Expectations**
Deliver robust security architecture and policies for cloud and on‑premises environments. Lead the evaluation and adoption of security technologies, drive secure deployment practices, and provide incident response and risk mitigation expertise. Mentor junior staff and foster a culture of security awareness.
**Key Responsibilities**
- Partner with IT leadership and business units to define and evolve enterprise security strategy.
- Architect end‑to‑end security solutions (SIEM, EDR, IAM, PAM, DLP, firewalls, cloud security).
- Translate security requirements into technical designs, architecture diagrams, and implementation plans.
- Collaborate with infrastructure and application teams to secure system and application deployments.
- Assist in implementation and integration of security tools, ensuring scalability, resilience, and best‑practice alignment.
- Evaluate, recommend, and pilot new security platforms and services to strengthen posture.
- Develop and maintain security standards, policies, and reference architectures.
- Provide incident response, threat modeling, and risk mitigation support.
- Mentor junior security personnel and promote security awareness across the organization.
**Required Skills**
- 7+ years in information security engineering or related technical roles.
- Expertise in enterprise security solution design and architecture.
- Proficiency with SIEM, EDR, IAM, PAM, cloud security platforms (Azure, AWS, GCP), DLP, and firewalls.
- Strong knowledge of cloud platforms and hybrid identity (Azure AD, on‑prem AD).
- Familiarity with security frameworks and regulations (NIST CSF, ISO 27001, HIPAA, PCI, SOX, NYDFS, etc.).
- Experience with DevSecOps practices and secure SDLC.
- Excellent communication skills for technical and non‑technical audiences.
- Proven ability to work in regulated industries (finance, insurance, healthcare).
**Required Education & Certifications**
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience).
- Industry certifications such as CISSP, CISM, OSCP, GIAC, or equivalent.