Senior Cybersecurity Engineer - Cloud
Sound TransitAbout the role
Salary range is $100k to $195k, with a midpoint of $145k. New hires typically receive between minimum and midpoint, however, we may go slightly higher based on experience, internal equity and market.
Sound Transit also offers a competitive benefits package with a wide range of offerings, including:
- Health Benefits: We offer two choices of medical plans, a dental plan, and a vision plan all at no cost for employee coverage; comprehensive benefits for employees and eligible dependents, including a spouse or domestic partner.
- Long-Term Disability and Life Insurance.
- Employee Assistance Program.
- Retirement Plans: 401a – 10% of employee contribution with a 12% match by Sound Transit; 457b – up to IRS maximum (employee only contribution).
- Paid Time Off: Employees accrue 25 days of paid time off annually with increases at four, eight and twelve years of service. Employees at the director level and up accrue additional days. We also observe 12 paid holidays and provide up to 2 paid floating holidays and up to 2 paid volunteer days per year.
- Parental Leave: 12 weeks of parental leave for new parents.
- Pet Insurance.
- ORCA Card: All full-time employees will receive an ORCA card at no cost.
- Tuition Reimbursement: Sound Transit will pay up to $5,000 annually for approved tuition expenses.
- Inclusive Reproductive Health Support Services.
- Compensation Practices: We offer competitive salaries based on market rates and internal equity. In addition to compensation and benefits, you’ll find that we provide work-life balance, opportunities for professional development and recognition from your colleagues.
GENERAL PURPOSE:
Under general direction, performs at a senior professional level supporting the operation of the technical controls outlined by the Agency’s Information Security Program for its cloud infrastructure; evaluates, designs, builds, and documents security solutions; evaluates proposed projects and activities to identify information security risks and available mitigating controls; supports the design of cloud infrastructure components and supporting systems by incorporating necessary technical security controls and design considerations, evaluates systems for compliance with internal policies and standards, as well as applicable regulatory frameworks, recommending solutions to address any gaps; provides support for process-based security controls, including security incident response, penetration testing and other security assessment techniques.
PRIMARY DUTIES AND RESPONSIBILITIES:
The following duties are a representative summary of the primary duties and responsibilities. Incumbent(s) may not be required to perform all duties listed and may be required to perform additional, position-specific duties.
- Serve as the primary SME for information security controls within the Azure / Microsoft 365 space and other cloud solutions as required.
- Design and implement comprehensive cloud-based security controls including but not limited to; identity and access management controls, secure configuration, monitoring, protection and detection tools, among others
- Keep cloud infrastructure current, making recommendations, and continually improving cloud security technologies.
- Work across the organization to continually improve cyber resilience within the cloud space.
- Identify and assess technology-related risks to information security associated with prospective cloud infrastructure solutions; and recommends appropriate mitigating controls.
- Evaluate any prospective technology solution for adherence to documented agency standards, policies, and regulatory responsibilities.
- Develop technical cloud focused standards to interpret and implement applicable information security policies and controls.
- Collaborate with other IT engineering and administration disciplines to ensure security best practices are incorporated into design, implementation, operation and maintenance of systems and services within the cloud infrastructure.
- Assess and classify any identified system vulnerabilities in accordance with pre-defined risk criteria.
- Advise and consult with internal customers on security assurance activities, risk assessment, threat modeling and mitigation of vulnerabilities.
- Assist with information security incident investigation and response efforts within the cloud infrastructure.
- C
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s