TEKsystems

Sr. Cybersecurity Engineer

TEKsystems · Winston-Salem, North Carolina, United States · $104K–$125K/yr

IT Services and IT Consulting · 10,001+ employees

20 h ago
Senior (5-10 yrs) Contractor United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The Senior Security Engineer will lead the design, implementation, and lifecycle management of core cybersecurity technologies including PAM, EDR, and firewalls. They will also partner with infrastructure teams to integrate security telemetry, automate deployment patterns, and ensure compliance with financial regulatory standards.

What they look for

Cybersecurity Fortinet Crowdstrike Privileged Access Management Endpoint Detection and Response Firewalls IDS/IPS CASB Network Security Automation SIEM SOAR MDR Infrastructure as Code Risk Management Compliance

Requirements

Candidates must have a bachelor's degree and at least 7 years of experience in information security or network engineering. Proficiency in enterprise security platforms and strong networking fundamentals are required, with professional certifications like CISSP or CCSP highly preferred.

Benefits

Medical Dental Vision Critical Illness Insurance Accident Insurance Hospital Insurance 401(k) Retirement Plan Life Insurance Short-term Disability Long-term Disability Health Spending Account Transportation Benefits Employee Assistance Program Paid Time Off

Full description

DescriptionDescriptionOur roots run deep — anchored in a longstanding commitment to doing right by our members and the communities we serve. Every role within our organization plays a vital part in nurturing the relationships that make that promise real. As a member of our team, you'll be empowered to live out our brand every day, building meaningful connections that support the financial wellbeing of those who count on us most.Role AccountabilityOur culture is built on teamwork, integrity, and a shared commitment to delivering a trusted member experience. The Senior Security Engineer provides technical leadership and hands-on engineering to architect, configure, implement, and manage the Credit Union’s core cybersecurity technologies—such as privileged access management (PAM), endpoint detection and response (EDR), firewalls, IDS/IPS, CASB, and related security platforms. This role partners closely with Network, Infrastructure, and Application teams to design resilient security controls, integrate telemetry into monitoring workflows, and continuously improve security posture through standardization, automation, and lifecycle management.Specific AccountabilitiesLead design and implementation of security technology solutions, including requirements gathering, architecture, configuration standards, testing, and production rollout.Own administration and lifecycle management for assigned security platforms (e.g., PAM, EDR, firewall, IDS/IPS, CASB), including upgrades, patching, backups, high availability, and technical documentation.Partner with Network Engineering to design and maintain secure network controls (segmentation, ingress/egress filtering, VPN/remote access, secure routing) and troubleshoot complex connectivity and security policy issues.Define and maintain security baselines and configuration standards; ensure changes follow change control and are validated through testing and peer review.Integrate security tooling with logging/monitoring workflows (e.g., SIEM, SOAR, MDR) by enabling high-quality telemetry, building effective alerting, and improving signal-to-noise.Develop automation and repeatable deployment patterns (scripts, templates, infrastructure-as-code where applicable) to improve consistency, speed, and auditability.Perform advanced troubleshooting and root-cause analysis across security and network stacks; lead resolution of high-impact incidents related to security technologies.Support risk and compliance objectives by providing evidence, participating in audits, and ensuring controls align to financial services expectations (e.g., GLBA, NCUA, FFIEC guidance, PCI DSS as applicable).Evaluate security vendors and products, contribute to roadmap planning, and manage technical relationships with vendors and service providers.Mentor and provide technical guidance to other security team members; contribute to runbooks, knowledge transfer, and continuous improvement.RequirementsKnowledge, Skills and AbilitiesExpertise implementing and operating enterprise security platforms (PAM, EDR, firewall, IDS/IPS, CASB, email/web security, vulnerability tooling or similar), including hardening, policy design, and troubleshooting.Strong networking fundamentals and hands-on experience supporting secure network designs (TCP/IP, routing/switching concepts, DNS/DHCP, VPN, segmentation). Familiarity with BGP/OSPF and load balancing is a plus.Ability to translate risk and security requirements into implementable technical controls, standards, and reference configurations.Experience integrating security tools with monitoring and response workflows (SIEM/SOAR/MDR), including log/telemetry onboarding and detection tuning.Strong documentation skills; ability to create runbooks, standards, and diagrams that enable repeatable operations and audit readiness.Strong verbal and written communication skills; able to lead technical discussions and coordinate effectively across IT and the business.Familiarity with regulatory expectations for financial services/credit unions such as GLBA, NCUA, FFIEC guidance, and PCI DSS (as applicable).SkillsCyber security, fortinet, crowdstrikeTop Skills DetailsCyber security,fortinet,crowdstrikeAdditional Skills & QualificationsEducation and ExperienceBachelor’s degree in Information Systems, Information Technology, Computer Science, Computer Engineering, or related field (or equivalent experience).7+ years of experience in information security and/or network engineering, including hands-on ownership of security technologies in an enterprise environment.Experience designing and implementing at least two of the following at enterprise scale: PAM, EDR, firewall/segmentation, IDS/IPS, CASB/SASE, secure remote access/VPN.Professional certifications preferred: CISSP, CCSP, GIAC (e.g., GCIA/GSEC/GCIH), and/or relevant vendor certifications (e.g., Palo Alto, Fortinet, Microsoft, CrowdStrike, CyberArk/BeyondTrust, Zscaler).Networking certifications (e.g., CCNA/CCNP) or equivalent practical networking experience strongly preferred.Experience LevelExpert Level

Job Type & LocationThis is a Contract to Hire position based out of Winston-Salem, NC.

Pay and BenefitsThe pay range for this position is $50.00 - $60.00/hr.Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following:

  • Medical, dental & vision
  • Critical Illness, Accident, and Hospital
  • 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
  • Life Insurance (Voluntary Life & AD&D for the employee and dependents)
  • Short and long-term disability
  • Health Spending Account (HSA)
  • Transportation benefits
  • Employee Assistance Program
  • Time Off/Leave (PTO, Vacation or Sick Leave)

Workplace TypeThis is a hybrid position in Winston-Salem,NC.

Application DeadlineThis position is anticipated to close on Aug 14, 2026.

About TEKsystems

We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company.

The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.

About TEKsystems and TEKsystems Global Services

We’re a leading provider of business and technology services. We accelerate business transformation for our customers. Our expertise in strategy, design, execution and operations unlocks business value through a range of solutions. We’re a team of 80,000 strong, working with over 6,000 customers, including 80% of the Fortune 500 across North America, Europe and Asia, who partner with us for our scale, full-stack capabilities and speed. We’re strategic thinkers, hands-on collaborators, helping customers capitalize on change and master the momentum of technology. We’re building tomorrow by delivering business outcomes and making positive impacts in our global communities. TEKsystems and TEKsystems Global Services are Allegis Group companies. Learn more at TEKsystems.com.

The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.

San Francisco Fair Chance Ordinance: Pursuant to the San Francisco Fair Chance Ordinance, for all positions located in the city and county of San Francisco, we will consider for employment qualified applicants with arrest and conviction records.

Massachusetts Lie Detector: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Use of Artificial Intelligence (AI): We may use Artificial Intelligence (AI) to support parts of our hiring process, including sourcing, screening, and evaluating candidates. AI helps assess applications and qualifications, but final decisions are made by our hiring team. By applying, you acknowledge and agree that your application may be reviewed using AI tools.