Position Details
About this role
Hybrid IT Security Engineer role focused on protecting client and internal data by performing security reviews, vulnerability scans, and risk assessments. The role leads incident response, coordinates with external audits, and ensures regulatory privacy standards compliance.
Key Responsibilities
- Perform ongoing security reviews; vulnerability scans; and risk evaluations across systems and infrastructure
- Act as the main point of contact for external security audits and ISO-related initiatives
- Build, maintain, and regularly test incident response processes
- Lead investigations and ensure timely resolution of security events
- Maintain alignment with GDPR, HIPAA, and CCPA/privacy standards and refine internal policies
Technical Overview
Security engineering in a Mac-centric hybrid environment, performing vulnerability management, incident response, and remediation with ISO 27001 and GDPR/HIPAA/CCPA compliance. Works with external providers and patching/endpoint protection to improve security posture.
Ideal Candidate
The ideal candidate is a mid-level cybersecurity professional with hands-on experience leading vulnerability management, incident response, and regulatory compliance programs (GDPR/HIPAA/CCPA). They should be comfortable coordinating audits and working in a Mac-centric hybrid environment.
Must-Have Skills
Nice-to-Have Skills
Required Skills
Hard Skills
Soft Skills
Industry & Role
Keywords for Your Resume
Deal Breakers
No experience in security engineering, No experience with vulnerability management or incident response, Unwilling to work hybrid in DC, Lack of familiarity with GDPR/HIPAA/CCPA
Get matched to jobs like this
Luna finds roles that fit your skills and career goals — no endless scrolling required.
Create a Free Profile