Engineer, Information Security.
NASCARAbout the role
At NASCAR, you will find a community of passionate individuals who care about our sport and are united in seeing it grow.
NASCAR seeks a talented professional to join in the position of Engineer, Information Security. This position supports the protection, integrity, and resilience of our enterprise systems. This role involves proactively identifying, mitigating, and responding to cybersecurity threats across NASCAR's digital ecosystem. The engineer will collaborate closely with network, systems, and desktop engineering teams to ensure that all technology solutions align with security best practices and organizational objectives.
Duties include but are not limited to:
Monitor, detect, and respond to potential security threats or incidents across systems and networks.
Manage and tune security tools, including SIEM, endpoint protection, and vulnerability scanners.
Conduct or assist with proactive vulnerability assessments and penetration testing; track remediation and verify compliance.
Maintain and improve NASCAR’s security architecture, tools, and processes.
Support security audits, risk assessments, and incident response operations.
Implement and manage endpoint detection and response (EDR) solutions (e.g., CrowdStrike Falcon, Microsoft Defender, etc.).
Collaborate with IT, network, and application teams to design and enforce secure configurations.
Develop and maintain technical security documentation, including system baselines, and operational playbooks.
Contribute to NASCAR’s security awareness and training initiatives.
Provide escalation support for security-related service requests and incidents.
Required skills / experience:
Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
Working knowledge of the following concepts: IAM, IDP, SAML and SSO/MFA
Working knowledge of EntraID Enterprise Applications, Application Registrations, Microsoft Graph Permissions, API keys and certificates/secrets management
Familiar with user provisioning processes in Active Directory, EntraID, and other applications
Minimum of 4 years of experience in information security, systems engineering, or a related technical role.
Hands-on experience with:
Windows, Linux, and macOS environments
Network security technologies (firewalls, IDS/IPS, VPN, proxy)
Endpoint protection platforms and EDR (CrowdStrike, Defender, etc.)
Security information and event management (SIEM) tools such as Splunk or CrowdStrike NG SIEM
Vulnerability management and patching workflows
Email security platforms such as Proofpoint, Mimecast, or Microsoft Defender for Office 365
Working knowledge of frameworks such as NIST CSF, ISO 27001, or CIS Controls.
Familiarity with risk assessment and compliance audits.
Excellent analytical, troubleshooting, and communication skills.
Strong interpersonal skills with the ability to col
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s