About the job
Role: Senior IT Security Engineer
Location: Cincinnati, OH
Duration: 12 months
We are seeking a highly experienced IT Security Engineer with over 10 years of professional experience in IT security, encompassing risk assessments, audits, and information risk management. The ideal candidate will have a proven track record of working on-site within the United States.
Key Responsibilities:
- Conduct comprehensive IT security risk assessments and audits.
- Develop and implement information risk management strategies.
- Demonstrate expertise in threat modeling, secure coding practices, identity management, authentication, software development, cryptography, system administration, and network security.
- Possess intermediate knowledge of security engineering, system and network security, authentication protocols, cryptography, and application security.
- Engage in web development and technologies, including HTTP, HTML, CSS, and JSP.
- Work on microservice development, preferably with Node.js or Java Spring.
- Implement continuous integration and deployment automation practices.
- Ensure secure software development and deployment processes.
- Contribute to the design and implementation of systems infrastructure.
- Thrive in an agile environment, applying strong communication, analytical, and problem-solving skills.
- Conduct application security reviews and penetration testing.
- Provide security training and outreach to internal development teams.
- Document security guidance and develop security tools.
- Deliver and improve security metrics.
- Perform deep code reviews to identify design flaws and optimize operational costs.
- Stay updated on the latest cloud security techniques and methodologies.
- Understand Common Vulnerabilities and Exposures (CVE) and OWASP Top 10.
- Conduct requirements analysis, definition, and refinement.
- Engage in secure systems engineering practices.
- Develop applications for mobile computing platforms.
- Apply Information Security Principles effectively.
- Assess security risk, work with big data and analytics, reverse engineering, and malware analysis.
- Drive software innovation and technology integration.
- Utilize database technologies such as Oracle, MySQL, and NoSQL.

