Cybersecurity Engineer
New York, NY · On-site
We are seeking a Cybersecurity Engineer with 3-5 years of hands-on experience to join our growing cybersecurity team. In this role, you will be responsible for the day-to-day engineering ...
New York, NY · On-site
We are seeking a Cybersecurity Engineer with 3-5 years of hands-on experience to join our growing cybersecurity team. In this role, you will be responsible for the day-to-day engineering ...
New York, NY · On-site
We are seeking a Cybersecurity Engineer with 3-5 years of hands-on experience to join our growing cybersecurity team. In this role, you will be responsible for the day-to-day engineering ...
Forbes is seeking a Lead Cybersecurity Engineer responsible for protecting Forbes' corporate technology environment and consumer-facing digital platforms through the design, implementation, and ...
New
Forbes is seeking a Lead Cybersecurity Engineer responsible for protecting Forbes' corporate technology environment and consumer-facing digital platforms through the design, implementation, and ...
New
As Iterative Health's first dedicated cybersecurity hire, you won't be stepping into an existing security program--you'll be building it. This is a rare opportunity to establish and lead the company ...
Quick apply
As Iterative Health's first dedicated cybersecurity hire, you won't be stepping into an existing security program--you'll be building it. This is a rare opportunity to establish and lead the company ...
$115K - $156K/yr
About the Role The Cybersecurity Operations Center Manager is responsible for overseeing the day-to-day operations of the Cybersecurity Operations Center, (CSOC), managing vendor performance, and ...
$115K - $156K/yr
About the Role The Cybersecurity Operations Center Manager is responsible for overseeing the day-to-day operations of the Cybersecurity Operations Center, (CSOC), managing vendor performance, and ...
Jersey City, NJ · On-site
Forbes is seeking a Lead Cybersecurity Engineer responsible for protecting Forbes' corporate technology environment and consumer-facing digital platforms through the design, implementation, and ...
New
Jersey City, NJ · On-site
Forbes is seeking a Lead Cybersecurity Engineer responsible for protecting Forbes' corporate technology environment and consumer-facing digital platforms through the design, implementation, and ...
New
Manhattan, NY · On-site
They are seeking a Cybersecurity Engineer to design, implement, and maintain enterprise cryptographic infrastructure while ensuring security, availability, and compliance through effective management ...
Manhattan, NY · On-site
They are seeking a Cybersecurity Engineer to design, implement, and maintain enterprise cryptographic infrastructure while ensuring security, availability, and compliance through effective management ...
Jersey City, NJ · On-site
$115K - $156K/yr
Oversee third-party Cybersecurity Operations Center (CSOC) vendor performance to ensure SLAs and KPIs are met * Develop and execute the continuous monitoring program, aligning with the NIST ...
Jersey City, NJ · On-site
$115K - $156K/yr
Oversee third-party Cybersecurity Operations Center (CSOC) vendor performance to ensure SLAs and KPIs are met * Develop and execute the continuous monitoring program, aligning with the NIST ...
Manhattan, NY · On-site
$190K - $242K/yr
As a Cyber Security Engineer, you will be a critical member of the Persistent Program Team. The position will be based in one of our office locations (New York City headquarters, Ft Collins CO ...
Manhattan, NY · On-site
$190K - $242K/yr
As a Cyber Security Engineer, you will be a critical member of the Persistent Program Team. The position will be based in one of our office locations (New York City headquarters, Ft Collins CO ...
New York, NY · On-site +1
$121K - $164K/yr
The Critical Infrastructure Cybersecurity Leader isa key role in our Federal Operating Group and will lead client delivery, business development, and serve as the company's cybersecurity expert ...
New York, NY · On-site +1
$121K - $164K/yr
The Critical Infrastructure Cybersecurity Leader isa key role in our Federal Operating Group and will lead client delivery, business development, and serve as the company's cybersecurity expert ...
Manhattan, NY · On-site
$190K - $242K/yr
As a Cyber Security Engineer, you will be a critical member of the Persistent Program Team. The position will be based in one of our office locations (New York City headquarters, Ft Collins CO ...
Manhattan, NY · On-site
$190K - $242K/yr
As a Cyber Security Engineer, you will be a critical member of the Persistent Program Team. The position will be based in one of our office locations (New York City headquarters, Ft Collins CO ...
$190K - $242K/yr
As a Cyber Security Engineer, you will be a critical member of the Persistent Program Team. The position will be based in one of our office locations (New York City headquarters, Ft Collins CO ...
$190K - $242K/yr
As a Cyber Security Engineer, you will be a critical member of the Persistent Program Team. The position will be based in one of our office locations (New York City headquarters, Ft Collins CO ...
As a Senior Manager in League Office Cyber Security department, he/she shall manage and operate enterprise security programs encompassing the following domains: Vulnerability Management, Cyber Threat ...
As a Senior Manager in League Office Cyber Security department, he/she shall manage and operate enterprise security programs encompassing the following domains: Vulnerability Management, Cyber Threat ...
Cybersecurity - Cyber Transformation Remediation, Cyber Defense & Recovery, Digital Identity, Audit & Incident Response, Product & Industrial Cybersecurity. * Sourcing & Service Optimization - Global ...
Cybersecurity - Cyber Transformation Remediation, Cyber Defense & Recovery, Digital Identity, Audit & Incident Response, Product & Industrial Cybersecurity. * Sourcing & Service Optimization - Global ...
Manhattan, NY · On-site
They are seeking a Senior Cybersecurity Engineer to design, implement, and manage security solutions, assess risks, and collaborate with teams to enhance cybersecurity posture across the organization.
Manhattan, NY · On-site
They are seeking a Senior Cybersecurity Engineer to design, implement, and manage security solutions, assess risks, and collaborate with teams to enhance cybersecurity posture across the organization.
Secaucus, NJ · On-site +1
As a Senior Manager in League Office Cyber Security department, he/she shall manage and operate enterprise security programs encompassing the following domains: Vulnerability Management, Cyber Threat ...
Secaucus, NJ · On-site +1
As a Senior Manager in League Office Cyber Security department, he/she shall manage and operate enterprise security programs encompassing the following domains: Vulnerability Management, Cyber Threat ...
Bridgewater, NJ · On-site
$113K - $153K/yr
Research and evaluate new cybersecurity threats, IT trends, and security controls. Ensure response plans are kept up to date and communicated to leadership in addition to leading preparation sessions ...
Bridgewater, NJ · On-site
$113K - $153K/yr
Research and evaluate new cybersecurity threats, IT trends, and security controls. Ensure response plans are kept up to date and communicated to leadership in addition to leading preparation sessions ...
Secaucus, NJ · On-site
$60 - $62/hr
Bachelor's degree in Cyber Security, Information Technology, Computer Science, or a related field, or equivalent experience. Responsibilities: * Design, implement, maintain, and optimize endpoint ...
Quick apply
Secaucus, NJ · On-site
$60 - $62/hr
Bachelor's degree in Cyber Security, Information Technology, Computer Science, or a related field, or equivalent experience. Responsibilities: * Design, implement, maintain, and optimize endpoint ...
The ideal candidate will be knowledgeable in multiple domains of cybersecurity and should be able to design and implement high impacting solutions across the organization. The role will also have an ...
The ideal candidate will be knowledgeable in multiple domains of cybersecurity and should be able to design and implement high impacting solutions across the organization. The role will also have an ...
Califon, NJ · On-site
$60 - $65/hr
Cyber Security Engineer Job Summary: We are seeking a Cyber Security Engineer responsible for designing, implementing, and maintaining secure network and system architectures. The ideal candidate ...
Quick apply
Califon, NJ · On-site
$60 - $65/hr
Cyber Security Engineer Job Summary: We are seeking a Cyber Security Engineer responsible for designing, implementing, and maintaining secure network and system architectures. The ideal candidate ...
Morristown, NJ · On-site
The Senior Data Protection Engineer provides thought leadership and strengthens the cybersecurity team in protecting the organization's sensitive data across endpoints, networks, cloud, and email.
Morristown, NJ · On-site
The Senior Data Protection Engineer provides thought leadership and strengthens the cybersecurity team in protecting the organization's sensitive data across endpoints, networks, cloud, and email.
$9.41 - $10.79
2% of jobs
$10.79 - $12.16
2% of jobs
$12.16 - $13.54
3% of jobs
$13.54 - $14.91
17% of jobs
$14.99 is the 25th percentile. Wages below this are outliers.
$14.91 - $16.28
18% of jobs
The median wage is $17.02 / hr.
$16.28 - $17.66
16% of jobs
$17.66 - $19.03
11% of jobs
$19.46 is the 75th percentile. Wages above this are outliers.
$19.03 - $20.40
20% of jobs
$20.40 - $21.78
6% of jobs
$21.78 - $23.15
3% of jobs
$23.15 - $24.52
2% of jobs
$9
$17
$24
Qualifications for a cybersecurity internship include enrollment in a post-secondary program in information systems or a related field. You can also find intern opportunities as a recent graduate. The US Department of Homeland Security offers an internship if you are a college student with a 3.0 GPA. You learn about duties related to penetration testing, system monitoring, security software use, and other ways to secure a website or network. Your responsibilities include staying current with the latest technologies and security breaches to understand how these attacks happen and how to prevent future ones. While you typically do not need professional experience with these issues, you do need keen analytical skills to spot threats and risks on the internet and protect the organization.
| Aspect | Cybersecurity Internship | Cybersecurity Analyst |
|---|---|---|
| Required Credentials | Often pursuing or recent graduates, some certifications (e.g., CompTIA Security+) | Typically requires certifications like CISSP, CEH, or Security+; relevant degree |
| Work Environment | Entry-level, training-focused, often part-time or temporary | Full-time, operational, responsible for security monitoring and incident response |
| Employer & Industry Usage | Internships offered by tech companies, government agencies, and cybersecurity firms | Full-time roles in various industries including finance, healthcare, and tech |
While a cybersecurity internship provides hands-on experience and training for beginners, a cybersecurity analyst is a full-time professional responsible for protecting an organization’s information systems. Internships serve as a stepping stone toward a career as an analyst, who handles ongoing security operations.
Full-time
Medical, Dental, Vision, Retirement, PTO
Re-posted 9 days ago
We are seeking a Cybersecurity Engineer with 3-5 years of hands-on experience to join our growing cybersecurity team. In this role, you will be responsible for the day-to-day engineering, administration, and optimization of our security tools and infrastructure. You will work closely with the Cybersecurity Manager and the broader IT team to implement, monitor, and improve the security controls that protect our Microsoft Azure / M365 cloud environment, endpoints, and data.
This is a hands-on technical role with meaningful exposure to compliance frameworks, incident response, and vendor management - making it an excellent opportunity for someone who wants to grow their career across the full breadth of cybersecurity in a regulated financial services environment.
Primary Responsibilities:
Security Engineering & Operations
Deploy, configure, tune, and maintain enterprise security tools including EDR, SIEM, email security, DNS filtering, and endpoint management platforms.
Monitor security alerts and events across the environment, performing triage, investigation, and escalation of potential incidents.
Manage and optimize detection rules, alerting thresholds, and automated response workflows within SIEM and EDR platforms.
Support the administration and enforcement of Conditional Access Policies, application control policies (AppLocker), and identity and access management configurations within Microsoft Entra ID (Azure AD).
Assist with the deployment and management of mobile device management (MDM/MAM) policies through Microsoft Intune.
Conduct vulnerability assessments and coordinate remediation efforts with IT infrastructure and application teams.
Develop and maintain PowerShell or Python scripts to automate routine security tasks, reporting, and data collection.
Vulnerability Management
Manage the end-to-end vulnerability management lifecycle - scanning, prioritization, remediation tracking, and validation across servers, endpoints, and cloud resources.
Coordinate and execute OS and third-party application patching across the environment, ensuring timely remediation of critical and high-severity vulnerabilities in alignment with established SLAs and maintenance windows.
Triage vulnerability scan results and prioritize remediation based on exploitability, asset criticality, and environmental context - not just raw CVSS scores - while developing compensating controls and risk acceptance documentation for vulnerabilities that cannot be immediately patched.
Monitor threat intelligence feeds and vendor advisories (Microsoft Patch Tuesday, CISA KEV catalog, vendor-specific bulletins) and track patching compliance metrics to support both proactive risk reduction and SOC 2 audit evidence requirements.
Incident Response
Participate in incident detection, investigation, containment, and remediation activities.
Perform log analysis and forensic investigation across endpoint, network, identity, and cloud environments.
Document incidents thoroughly, including root cause analysis, timeline reconstruction, and lessons learned.
Coordinate with the managed SOC provider on alert escalation, tuning requests, and incident handoff procedures.
Contribute to the development and testing of incident response playbooks and procedures.
Compliance & Governance
Support the ongoing maintenance of SOC 2 Type 2 compliance, including evidence collection, control testing, and audit coordination through our compliance automation platform (Drata)
Assist with the development, review, and enforcement of cybersecurity policies, standards, and procedures.
Contribute to vendor security assessments and due diligence reviews as part of our vendor risk management program.
Support Business Continuity Plan (BCP) documentation, tabletop exercises, and testing activities.
Help prepare materials and reporting for the Cyber Risk Steering Committee (CRSC) and other governance bodies.
Security Awareness & Collaboration
Support the development and delivery of security awareness training and phishing simulation campaigns.
Serve as a knowledgeable security resource for IT colleagues and the broader organization, translating technical concepts into clear, actionable guidance
Collaborate with cross-functional teams including IT infrastructure, compliance, and risk management to integrate security into business processes.
Required Credentials:
5 - 7 years of hands-on experience in cybersecurity engineering, security operations, or a closely related technical security role.
Strong working knowledge of Microsoft Azure and M365 security capabilities, including Entra ID (Azure AD), Conditional Access, Defender suite, and Purview.
Experience deploying, managing, and tuning EDR platforms (e.g., SentinelOne, CrowdStrike, Microsoft Defender for Endpoint).
Experience with SIEM platforms - log ingestion, correlation rule development, alert tuning, and dashboard creation (e.g., FortiSIEM, Sentinel, Splunk, or comparable).
Demonstrated experience managing enterprise patching programs across Windows endpoints and servers, with familiarity in patch management tooling (e.g., WSUS, Intune, SCCM/MECM, or third-party solutions).
Hands-on experience with vulnerability scanning platforms (e.g., Tenable, Qualys, Rapid7) including scan configuration, result analysis, and remediation workflow management.
Ability to assess and prioritize vulnerabilities using contextual risk factors beyond raw CVSS scores, including asset exposure, exploit availability, and business impact.
Solid understanding of identity and access management concepts including MFA, SSO, RBAC, and privileged access management.
Familiarity with endpoint management tools such as Microsoft Intune and application control technologies like AppLocker.
Experience with vulnerability management tools and processes (e.g., Tenable, Qualys, Rapid7).
Working knowledge of common security frameworks and standards (NIST CSF, CIS Controls, MITRE ATT&CK).
Competency in scripting for automation and reporting (PowerShell preferred; Python a plus).
Strong analytical and problem-solving skills with the ability to investigate complex security events across multiple data sources.
Excellent written and verbal communication skills - able to clearly explain technical security topics to both technical and non-technical audiences.
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field - or equivalent practical experience.
Preferred Qualifications:
Experience working in financial services, wealth management, or another regulated industry.
Hands-on experience supporting SOC 2 audits, including evidence collection and control validation.
Experience with compliance automation platforms (e.g., Drata, Vanta).
Familiarity with vendor risk management processes and third-party security assessments.
Experience coordinating with managed security service providers (MSSPs) or managed SOC teams.
Exposure to DNS filtering solutions (e.g., DNSFilter, Cisco Umbrella).
Familiarity with business continuity and disaster recovery planning.
Understanding of SEC, FINRA, or other financial services regulatory requirements as they relate to cybersecurity.
One or more industry certifications such as:
CompTIA Security+, CySA+, or CASP+
Microsoft Certified: Security, Compliance, and Identity Fundamentals (SC-900) or Security Operations Analyst (SC-200)
Microsoft Certified: Azure Security Engineer Associate (AZ-500)
Microsoft Certified: Information Protection and Compliance Administrator Associate (SC-400)
Microsoft Certified: Identity and Access Administrator Associate (SC-300)
GIAC certifications (GSEC, GCIH, GCIA)
Certified Information Systems Security Professional (CISSP) - Associate level acceptable
Certified in Risk and Information Systems Control (CRISC)
Compensation:
$115,000 - $130,000
Why Cerity Partners:
Our people drive our success by working together to deliver exceptional service to our clients. Below is a glimpse of the key elements of our total rewards package:
Health, dental, and vision insurance - day 1!
401(k) savings and investment plan options with 4% match
Flexible PTO policy
Parental Leave
Financial assistance for advanced education and professional designations
Opportunity to give back time to local communities
Commuter benefits
Cerity Partners is committed to providing an environment where all individuals can be their authentic selves. We are an Equal Opportunity Employer who respects each individual and supports the diverse cultures, perspectives, and experiences of our colleagues. We are dedicated to building an inclusive and diverse workforce and will not discriminate based on race, religion, national origin, sex, sexual orientation, age, veteran status, disability status, or any other applicable characteristics protected by law.
Cerity Partners is committed to working with and providing accommodations to applicants with disabilities or special needs. For those needing accommodations, please reach out to careers@ceritypartners.com. Applicants must be authorized to work for any employer in the U.S.