Nationwide

Consultant, Cybersecurity (Data Engineer)

Nationwide Scottsdale, Arizona, United States · $118K–$178K/yr

Insurance · 10,001+ employees

14 h ago
security Senior (5-10 yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The role involves designing and operating secure data pipelines, lakehouse models, and telemetry engineering patterns to transform raw security data into actionable intelligence. You will partner with cross-functional teams to ensure the security data lake is scalable, governed, and capable of supporting mission-critical detection and investigation workflows.

What they look for

Data Engineering Databricks Spark Python SQL Cybersecurity Telemetry Normalization Data Pipelines Lakehouse Architecture Detection Engineering Cloud Storage Observability Data Governance Incident Response Vulnerability Management MITRE ATT&CK

Requirements

Candidates should have strong data engineering skills with advanced experience in Databricks, Spark, Python, and SQL, along with a background in security operations. A minimum of six years of experience in technology, including four years in cybersecurity, is typically expected for this position.

Benefits

Medical insurance Dental insurance Vision insurance Life insurance Short term disability coverage Long term disability coverage Paid time off Paid holidays 401(k) with company match Company-paid pension plan

Full description

If you’re passionate about being part of a dynamic organization that enables a Fortune 100 company with nearly $70 billion in annual sales to drive innovation and adopt new technologies that deliver business results, then Nationwide’s Technology team could be the place for you! At Nationwide®, “on your side” goes beyond just words. Our customers are at the center of everything we do and we’re looking for associates who are passionate about delivering extraordinary care.

This role will work a hybrid schedule coming into the Columbus, Ohio, Des Moines, Iowa, or Scottsdale, Arizona office 2 days (Mondays & Wednesdays) per week. Remote internal associates may also be considered.

The Cyber Security Operations Center’s Innovation and Integration (CSOC-INI) team transforms emerging ideas into secure, production-ready capabilities that advance cyber defense. Across agentic solutions, modern application engineering, platform foundations, and security data engineering, we translate complex operational needs into scalable, observable outcomes.

This is a high-impact opportunity to build the security data foundation that powers modern Cyber Security Operations. In this role, you’ll design and operate the pipelines, lakehouse data models, and telemetry engineering patterns that turn massive volumes of raw security data into trusted, usable intelligence for detections, analytics, and investigations. You’ll work across cyber security, detection engineering, platform, and data teams to ensure the security data lake is scalable, observable, governed, and ready to support mission-critical operational decisions.

Job description

Designs, builds, and operates the security data engineering foundation that enables telemetry ingestion, normalization, enrichment, analytics, and detections across the Cyber Security Operations Center.

Owns secure and reliable data pipelines, lakehouse data models, telemetry quality controls, and the engineering patterns needed to support security analytics, detection content, investigations, and downstream operational workflows.

Partners closely with cyber security professionals, detection engineers, platform and operations engineers, and data consumers to ensure the security data lake is trustworthy, observable, scalable, governed, and production-ready.

Requirements

  • Security Operations experience preferred
  • Strong data engineering skills, with advanced Databricks and Spark experience and strong working ability in Python and SQL
  • Experience building and operating batch and streaming data pipelines for high-volume telemetry, logs, events, and security datasets
  • Strong knowledge of telemetry normalization (OCSF), enrichment, schema design, and data quality controls across security-relevant data sources
  • Experience designing and maintaining lakehouse or data lake architectures that support analytics, detections, investigations, and long-term retention needs
  • Familiarity with detection engineering requirements, including how curated data supports rules, analytics, triage, and investigation workflows
  • Experience integrating enterprise data sources, APIs, files, message streams, and cloud storage in a secure and maintainable way
  • Working knowledge of observability, cost management, performance tuning, and operational support for production data platforms
  • Ability to collaborate with architecture, platform, security, governance, and Cyber Security Operations stakeholders
  • Excellent verbal and written communication skills
  • Security Operations experience preferred

Expectations

  • Build and maintain production-grade data pipelines and lakehouse data products that support telemetry analysis, detections, and cyber security investigations
  • Define and implement ingestion, parsing, normalization, enrichment, and curation patterns for diverse security and platform telemetry sources
  • Design trustworthy data models and storage patterns in Databricks that balance performance, cost, lineage, retention, and analytical usability
  • Partner with detection engineers and analysts to ensure data products expose the fields, context, and quality needed for effective rules and analytics
  • Implement data quality monitoring, freshness checks, reconciliation controls, and operational telemetry for critical data flows
  • Optimize jobs, clusters, storage layout, and query performance for scale, reliability, and cost efficiency
  • Support secure access patterns, governance controls, and auditability requirements for sensitive security data
  • Troubleshoot pipeline defects, telemetry gaps, and downstream data issues quickly, and support production incident response when data engineering is involved
  • Continuously improve reusable ingestion frameworks, data standards, and engineering practices across the security data lake ecosystem

#LI-AC1

Job Description Summary

If you’re enthusiastic about delivering secure technology solutions to support a company providing extraordinary care to its customers, then Nationwide Technology is the place for you. Nationwide's industry-leading technology workforce embraces an agile work environment and a collaborative culture to deliver outstanding solutions and results. If that sounds like something you aspire to, we want to hear from you!

As a Cyber Operations professional, you'll be on the front line, protecting Nationwide's members and data! You will be immersed with incident response, cyber strategy and guidance, defense optimization and scanning and exploitation. We'll count on you to provide enterprise services in forensic investigation, attack and penetration, vulnerability scanning and response, cyber defense, security intelligence, security operations and infrastructure risk management.

Job Description

Key Responsibilities:   

  • Leads or responds to complex cyber incidents using industry recognized methodology, e.g., PICERL (Preparation, Identification, Containment, Eradication, Recovery and Lessons Learned).
  • Creates uplift of cyber security detection and alerts for ongoing prevention of threats.
  • Applies secure software and systems engineering practices throughout the delivery lifecycle to ensure our data and technology solutions are protected from threats and vulnerabilities.
  • Uses an efficiency mindset for incident response to design and implement automation and orchestration for the enrichment and handling of cyber security events.
  • Manages and supports vulnerability management via tools, processes, and proactively identifies vulnerabilities in the environment.
  • Plans and conducts team activities to enrich detection and prevention controls.
  • Plans and delivers proactive cyber activities (purple teaming, threat hunting, red teaming, etc.) with full understanding of the MITRE ATT&CK framework.
  • Identifies critical log sources and system events used for creation and tuning of cyber security detections.
  • Maintains awareness of current cyber threat landscape to perform evaluation, enrichment and dissemination for action to protect Nationwide members and environment.
  • Leads and works on initiatives as part of the overall cyber operations strategy.

May perform other responsibilities as assigned. 

 

Reporting Relationships:  Reports to Manager, Risk Leader or above. 

 

Typical Skills and Experiences:   

 

Education: Undergraduate studies in cyber security, management information systems, engineering, math, computer science, data analytics or comparable experience and education strongly preferred. Graduate studies in cyber security, computer science or a related field are a plus. 

 

License/Certification/Designation: Preferred certifications include: Certified Information Systems Security Professional (CISSP), Cisco Certified Network Associate (CCNA), Certified Ethical Hacker (CEH), GIAC Certified Intrusion Handler (GCIH), Digital Forensics Investigation: EnCase Certified Examiner (EnCE) certification, GIAC Strategic Planning Policy and Leadership (GSTRT), GIAC Security Expert (GSE), Certified Cloud Security Professional (CCSP), AWS Certified Cloud Practitioner, AZ500. 

 

Experience: Typically, six years of experience in technology, with four years in cyber security. Experience using Windows and Linux/Unix operating systems, administration and tools. Successful candidates will also have experience with network configurations, protocols, scripting, web application security, network security, firewalls and network topology from both physical and logical viewpoints, scripting in PowerShell, Python, Bash and Windows Batch. 

 

Knowledge, Abilities and Skills: Ability to make decisions, recommendations and manage work processes. Aptitude to influence, build partnerships and set priorities. Excellent communication skills to interact with all levels of associates, senior management and/or vendors. Insurance and/or financial services industry knowledge a plus. 

 

Other criteria, including leadership skills, competencies and experiences may take precedence.  

 

Staffing exceptions to the above must be approved by the hiring manager’s leader and Human Resource Business Partner. 

 

Values: Regularly and consistently demonstrates Nationwide Values. 

 

Job Conditions:   

 

Overtime Eligibility: Exempt (Not Eligible) 

 

Working Conditions: Hybrid to normal office environment.  

  

ADA: The above statements cover what are generally believed to be principal and essential functions of this job.  Specific circumstances may allow or require some people assigned to the job to perform a somewhat different combination of duties.   

We currently anticipate accepting applications until 08/21/2026. However, we encourage early submissions, as the posting may close sooner if a strong candidate slate is identified before the deadline.

Benefits

We have an array of benefits to fit your needs, including: medical/dental/vision, life insurance, short and long term disability coverage, paid time off with newly hired associates receiving a minimum of 18 days paid time off each full calendar year pro-rated quarterly based on hire date, nine paid holidays, 8 hours of Lifetime paid time off, 8 hours of Unity Day paid time off, 401(k) with company match, company-paid pension plan, business casual attire, and more. To learn more about the benefits we offer, click here.

Nationwide is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive culture where everyone feels challenged, appreciated, respected and engaged. Nationwide prohibits discrimination and harassment and affords equal employment opportunities to employees and applicants without regard to any characteristic (or classification) protected by applicable law.

This position could be filled within any of the lower 48 U.S. states.

Smoke-Free Iowa Statement: Nationwide Mutual Insurance Company, its affiliates and subsidiaries comply with the Iowa Smokefree Air Act. Smoking is prohibited in all enclosed areas on or around company premises as well as company issued vehicles. The company offers designated smoking areas in which smoking is permitted at each individual location. The Act prohibits retaliation for reporting complaints or violations. For more information on the Iowa Smokefree Air Act, individuals may contact the Smokefree Air Act Helpline at 888-944-2247.

For NY residents please review the following state law information: Notice of Employee Rights, Protections, and Obligations LS740 (ny.gov) https://dol.ny.gov/system/files/documents/2022/02/ls740_1.pdf

NOTE TO EMPLOYMENT AGENCIES:

We value the partnerships we have built with our preferred vendors. Nationwide does not accept unsolicited resumes from employment agencies. All resumes submitted by employment agencies directly to any Nationwide employee or hiring manager in any form without a signed Nationwide Client Services Agreement on file and search engagement for that position will be deemed unsolicited in nature. No fee will be paid in the event the candidate is subsequently hired as a result of the referral or through other means.

Nationwide pays on a geographic-specific salary structure and placement within the actual starting salary range for this position will be determined by a number of factors including the skills, education, training, credentials and experience of the candidate; the scope, complexity and location of the role as well as the cost of labor in the market; and other conditions of employment. If a Sales job, Sales Incentives, based on performance goals are possible in addition to this range. Note on Compensation for Part-Time Roles: Please be aware that the salary ranges listed below reflect full-time compensation. Actual compensation may be prorated based on the number of hours worked relative to a full-time schedule.

The national salary range for Consultant, Cyber Operations Professional : $118,000.00-$222,000.00

The expected starting salary range for Consultant, Cyber Operations Professional : $118,000.00 - $178,000.00

Similar roles