Security Engineer
Posted: 08/19/2026
Job Id: 25288
Job Details
Shelton, CT 06484
Technology/IT
Hybrid
Direct Hire
$115,000-$120,000
No Relocation
Openings: 1
Job Description
A leading company in rail infrastructure inspection and diagnostics is seeking a Security Engineer to join its IT team. This newly created role gives the position a dedicated owner across endpoint detection and response, vulnerability management, and identity and access management. Reporting to the Manager, IT Infrastructure and Support, the Security Engineer is responsible for owning the company's day-to-day security operations and maturing the practice around them, including runbooks, asset inventory, incident handling, and program metrics.
Salary + Additional Benefits:
- $115,000-$120,000
- Medical, Dental, Vision Insurance
- 401K - company match
Location: Shelton, CT
Type of Position: Direct Hire
Responsibilities:
- Security engineering and operations
- Own the deployment, configuration, and daily monitoring of our vulnerability management platform, and drive patching and remediation to closure across a predominantly Windows environment.
- Monitor, tune, and report on endpoint detection and response coverage, and lead the response when something is found.
- Perform root cause analysis on security incidents and see corrective actions through.
- Scope and coordinate penetration testing and remediation with external partners.
- Maintain security runbooks, asset inventories, and incident logs.
- Identity and access
- Administer and harden Microsoft 365 and Entra ID, with a focus on secure configuration, conditional access, and mail security.
- Build the access model for third-party SaaS used across enterprise systems and engineering, so that permissions match roles rather than accumulate.
- Support device management and compliance across the fleet.
- Governance, compliance, and measurement
- Align IT processes, documentation, and controls with ISO 27001 and other relevant frameworks.
- Support customer security assessments and questionnaires, and own the technical answers in them.
- Establish and maintain security posture KPIs that show whether the program is improving, and report them to IT and digital leadership.
- Contribute to security policy, including acceptable use of AI tools and SaaS.
- Infrastructure and IT operations
- Own the configuration and maintenance of security appliances including firewalls and routers.
- Use our central IT management platform for software deployment, patching, scripting, and remote troubleshooting.
- Support provisioning, imaging, and deployment of Windows laptops and workstations.
- Assist with troubleshooting and user access provisioning for core business systems.
- Automate routine work rather than repeating it.
Requirements:
- Five or more years in systems administration or IT infrastructure with a substantial security focus, or a cybersecurity degree with equivalent hands-on experience
- Solid foundational knowledge of Windows Server and desktop environments
- Hands-on experience with cloud infrastructure in Azure or AWS, and comfort working across both
- Experience managing and supporting users in Microsoft 365, including identity and access configuration
- Experience with enterprise-grade security appliances such as firewalls and routers
- Practical vulnerability management experience: scanning, prioritization, and driving remediation with teams who do not report to you
- Scripting for automation of routine tasks (PowerShell, Python, or similar)
- Sound judgment about risk, and the ability to explain a security decision to a non-technical audience
- A collaborative, team-first mindset
- Preferred
- Direct experience with Rapid7, SentinelOne, or comparable vulnerability management and XDR platforms
- Experience with central IT management platforms such as ConnectWise Automate
- Working experience with ISO 27001; exposure to NIST, SOC 2, or ITIL is an asset
- Security certifications (CISSP, CISM, Security+, AZ-500, AWS Security Specialty, or similar)
- Device management tooling (Intune or equivalent)
- Experience as the dedicated security specialist on a small IT team
- Experience in an operational or industrial environment where availability and safety carry weight
- Experience in rail testing, NDT, or sensor-based inspection industries (ultrasound, eddy current, electromagnetic, etc.)
Due to the high volume of applications we typically receive, we regret that we are not able to personally respond to all applications. However, if you are invited to take the next step in the process, you will typically be contacted within one week of submitting your application.
#LI-DNI
Apply For This Position
Apply Via
"*" indicates required fields
I want more jobs like this in my inbox.
Share This Job
Related Jobs
Meet Your Recruiter