- Company Name
- Cozen Technology Solutions Inc
- Job Title
- Cyber Security Engineer
- Job Description
-
**Job Title:** Cybersecurity Engineer
**Role Summary:**
Design, implement, and maintain secure software and infrastructure across on‑prem, cloud, and OT environments. Focus on secure SDLC, DevSecOps, threat modeling, vulnerability management, IAM, API/Web services, networking, embedded systems, and defense‑in‑depth strategies.
**Expectations:**
- 5+ years of experience in secure software development, CI/CD pipeline security, threat modeling, and vulnerability remediation.
- Proven expertise in IAM, API security, network security, cloud security (AWS, Azure, GCP), and embedded/OT security.
- Strong project and change‑management skills, with the ability to produce analytical reports and documentation.
**Key Responsibilities:**
1. Develop and enforce secure SDLC processes for software projects.
2. Integrate security controls into CI/CD pipelines and DevOps tooling.
3. Conduct threat modeling and risk analysis for applications and infrastructure.
4. Perform vulnerability assessments, recommend remediation, and track resolution.
5. Design and manage IAM solutions and secure API/web services.
6. Secure network architectures in on‑prem and cloud environments.
7. Harden embedded systems and OT devices.
8. Implement defense‑in‑depth strategies and incident response plans.
9. Collaborate with development, operations, and architecture teams.
10. Produce technical documentation, risk reports, and compliance artifacts.
**Required Skills:**
- Secure SDLC & DevSecOps (CI/CD security).
- Threat modeling, risk analysis, vulnerability management.
- IAM, API/Web services security, network security.
- Cloud security (AWS, Azure, GCP).
- Embedded/OT security fundamentals.
- Application architecture and DevOps tooling (Git, Jenkins, Docker, Kubernetes).
- Project and change‑management experience.
- Strong analytical and reporting abilities.
- Excellent communication skills.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Professional security certifications (CISSP, CCSP, CSSLP, or SANS – GPEN, GWEB, etc.).