Sr. Cybersecurity Engineer

Microsoft Azure App Service
Live Oak, Bexar County, TX

Overview:

The Senior Cybersecurity Engineer designs, implements, and maintains security controls to protect Alterman’s information assets. This role leads security engineering initiatives, supports advanced threat detection and response, mentors security staff, and serves as an escalation point for complex security issues. The Senior Cybersecurity Engineer partners with technology teams to embed security into systems and processes. Documentation is central to this role; the Senior Cybersecurity Engineer is expected to thoroughly document all security processes, procedures, configurations, decisions, and operational activities.

Essential Functions:

1. Security Engineering & Architecture: 25%


  • Designs, implements, and integrates security solutions, including SIEM, EDR, DLP, and network security technologies, for systems, applications, and infrastructure.

  • Develops, maintains, and enforces security architecture documentation, standards, and automation for security operations and incident response.

  • Evaluates and recommends security tools and technologies.

  • Conducts security assessments and penetration testing.

2. Threat Detection & Response: 20%


  • Leads advanced threat hunting, detection, and response activities, including the development and tuning of detection rules, alerts, and correlation logic.

  • Performs root cause analysis and leads incident response activities for complex security events.

  • Develops and maintains incident response playbooks and procedures.

  • Coordinates with external parties, including vendors and law enforcement, during incidents.

3. Access Controls & Identity Management: 15%


  • Designs, implements, and manages enterprise IAM solutions, including directory services, SSO, MFA, PAM, and hybrid identity environments.

  • Develops, enforces, and governs access controls, including conditional access policies, RBAC models, and access certifications.

  • Manages Active Directory, Entra ID, and hybrid identity configurations.

  • Administers single sign-on (SSO) and federation services.

  • Manages privileged access management (PAM) solutions and policies.

  • Partners with HR and business units on joiner, mover, and leaver processes.

  • Troubleshoots complex authentication and authorization issues.

4. Compliance & Documentation: 15%


  • Supports compliance with regulatory requirements and industry standards (CMMC, SOC 2, NIST) by maintaining documentation, evidence, and audit artifacts.

  • Coordinates audit activities, including evidence collection and interviews.

  • Supports risk management activities, including enterprise risk assessments, vendor risk reviews, and maintenance of the risk register.

  • Develops and maintains security policies, standards, and procedures.

  • Monitors policy compliance and manages exceptions.

  • Supports security awareness program activities and phishing simulations.

  • Tracks and reports on compliance and risk metrics.

5.Vulnerability Management: 10%


  • Leads vulnerability management activities, including scanning, assessment, prioritization, remediation tracking, and reporting of vulnerability metrics and trends.

  • Partners with IT teams to ensure timely patching and remediation.

6. Mentorship & Collaboration: 10%


  • Provides mentorship, technical guidance, and training to Cybersecurity Engineers and other IT staff.

  • Partners with Infrastructure, Applications, and Service Desk teams on security matters.

  • Serves as an escalation point for complex security issues.

7. Performs other duties as assigned. 5%

Education and Experience:


  • Minimum of 5-7 years of experience in cybersecurity, security engineering, identity management, or related IT roles required; OR minimum of 7 years of progressive IT experience with security focus.

  • Bachelor's degree in Computer Science, Information Security, Information Technology, or related field preferred; equivalent combination of education and experience will be considered.

  • Security-related certifications required (e.g., CompTIA Security+, CySA+, CEH, or GIAC certifications); senior-level certifications such as CISSP or CISM preferred.

  • Additional certifications preferred (e.g., Microsoft Identity SC-900/SC-300, CRISC, CISA, CGRC).

  • Familiarity with compliance frameworks required (NIST, ISO 27001, SOC 2, CMMC).

Skills/Abilities:


  • Expert communication skills with the ability to explain complex security concepts to technical and non-technical audiences and translate technical risk into business-impact language.

  • Strong analytical and problem-solving skills.

  • Demonstrated ability to mentor and coach technical staff.

  • Able to perform effectively under pressure during active security incidents and participate in on-call and after-hours response activities as required.

  • Strong ability to develop and maintain security automation and scripting (e.g., Python, PowerShell, Bash).

  • Deep understanding of attack techniques, threat actors, defensive strategies, and modern threat detection methods.

  • Deep understanding of authentication and identity protocols (e.g., SAML, OAuth, OIDC, Kerberos).

  • Strong technical writing skills for developing policies, standards, procedures, and compliance documentation.

  • Able to plan, coordinate, and execute security initiatives using effective organizational and project management skills.

  • Strong ability to work with enterprise security technologies (e.g., SIEM, EDR, network and cloud security controls, vulnerability management tools, penetration testing platforms, threat intelligence solutions, security orchestration and automation).

  • Strong ability to work with identity and access management technologies (e.g., Active Directory, Entra ID, SSO, MFA, PAM, identity governance platforms, zero trust architectures).

  • Familiarity with governance, risk, and compliance platforms and tools (e.g., GRC systems, security awareness platforms, documentation and workflow tools).

Work Environment:


  • Office environment.

  • May require occasional evening or weekend work for critical updates or incident response.

Physical Demands:


  • Prolonged periods of sitting at a desk and working on a computer.

  • Must be able to lift up to 15 pounds at times.

  • Manual dexterity associated with computer data entry required.

Posted 2026-03-25

Recommended Jobs

Planning Intern

Schlumberger
Sugar Land, TX

The Planning Intern will assist in supporting the implementation, monitoring, and reporting of production schedules to ensure materials and capacities are available to meet customer demands. This role…

View Details
Posted 2026-03-18

Accounts Receivable Associate

Linq
Austin, TX

Who We Are: We’re a high-growth software company with a big mission : empowering K-12 district teams to do more with less.  At LINQ, we get K12. That’s why we help districts transform K-12 s…

View Details
Posted 2026-03-22

Team Lead - Patient Relations - Healthcare (Hiring Immediately)

Guidehouse
San Antonio, TX

Job Family : Patient Account Representative Travel Required : Up to 10% Clearance Required : None This is an onsite position working Monday through Friday out of our San Antonio, …

View Details
Posted 2026-03-24

Medical Staff Services Specialist- Part Time

Houston Methodist
Houston, TX

At Houston Methodist, the Medical Staff Services Specialist position provides comprehensive support to the Medical Staff and Governing Body in matters of Medical Staff self-governance. Duties for this…

View Details
Posted 2026-01-16

Project Analyst - Maximo & Asset Reporting

Port Houston
Houston, TX

Thank you for considering a career at Port Houston. We appreciate your interest in joining our team. By applying, you are taking an important step toward advancing your career with an organization co…

View Details
Posted 2026-03-12

Director of Product Management

Lexipol LLC
Frisco, TX

This is a Remote position  Candidates must already live in the United States. No visa sponsorship. We are unable to sponsor or take over sponsorship of an employment Visa (H1-B, Student visa,…

View Details
Posted 2026-03-12

Vehicle Accessory Installation & Delivery Specialist

ChaseSource
Houston, TX

Full Time Employment Type:Full-Time Shift:Day and Night Shifts Available Pay Range:$15.50 – $17.00 per hour Job Summary: We are seeking a dedicated and detail-oriented Vehicle Accessory Install…

View Details
Posted 2026-01-29

Director of Payments Strategic Partnerships Allen, TX

Allen, TX

A bout Pushpay Pushpay is a market-leading digital payments and engagement platform serving 14,000+ churches and faith-based organizations. Our technology stack combines Church Management Softwar…

View Details
Posted 2026-02-24

Nurse - LPN

JBS
Nacogdoches, TX

Description Position at Pilgrim's Occupational Health Specialist - LPN   At Pilgrim’s, Safety Is A Condition, which means the safety of our team members comes first - always.   In this key rol…

View Details
Posted 2026-03-09

Solution Sales Expert - Supply Chain Management - Business Network (Southwest)

SAP
Allen, TX

We help the world run better At SAP, we keep it simple: you bring your best to us, and we'll bring out the best in you. We're builders touching over 20 industries and 80% of global commerce, and w…

View Details
Posted 2026-01-12