Cybersecurity Engineer
ASSA ABLOYAbout the role
As the global leader in access solutions, ASSA ABLOY is committed to making the world a safer and more open place. Our Opening Solutions Americas team is hiring a Cybersecurity Engineer who will be responsible for implementing, operating, and maintaining the division's Zero Trust Segmentation program using Illumio. This role focuses on technical execution, segmentation policy development, application dependency analysis, workload onboarding, and day-to-day platform administration.
The engineer will work closely with infrastructure, cloud, application, and operational technology (OT) teams to reduce cyber risk, improve visibility into application communications, and support protection of critical business systems and Crown Jewel assets.
This role will be based onsite in New Haven, CT on a full-time basis.
What you will be doing as Cybersecurity Engineer
Illumio Platform Administration:
- Administer and maintain the Illumio platform, including Policy Compute Engine (PCE) and Virtual Enforcement Nodes (VENs).
- Deploy, troubleshoot, and upgrade Illumio agents across Windows and Linux environments.
- Monitor platform health, agent connectivity, policy status, and enforcement activities.
- Resolve segmentation-related incidents and operational issues.
- Support integration with enterprise security tools and asset management platforms.
Application Dependency Mapping:
- Analyze application traffic flows and communication patterns.
- Identify application dependencies and support workload classification.
- Validate required communications with application and infrastructure teams.
- Assist in documenting application architectures and connectivity requirements.
- Investigate unknown or unexpected east-west traffic.
Segmentation Policy Implementation
- Develop and maintain micro segmentation policies based on approved architecture and security standards.
- Create and manage:
- Application Ringfencing Policies
- Tier-to-Tier Policies
- Administrative Access Controls
- Core Services Allow Lists
- Logging and Monitoring Communications
- Test policies in visibility and simulation modes before enforcement.
- Assist with implementation planning and validation activities.
- Support policy tuning and optimization following deployment.
Asset Management & Labeling
- Maintain accurate workload labeling and segmentation metadata.
- Validate asset inventory and application ownership information.
- Assist with onboarding new applications into the segmentation program.
- Work with CMDB and infrastructure teams to correct data quality issues impacting segmentation effectiveness.
- Ensure newly deployed systems are enrolled in the program where appropriate.
Cloud & Hybrid Environment Security
- Support segmentation initiatives across:
- Azure
- Hybrid infrastructure
- On-premises data centers
- Hosted environments
- Assist cloud engineering teams with workload onboarding and policy implementation.
- Validate secure communications between cloud and on-premises systems.
Operational Technology (OT) Support
- Assist with micro segmentation efforts for manufacturing and operational technology environments.
- Support implementation of controls designed to protect critical OT systems.
- Participate in risk reduction activities involving industrial control systems and production environments.
- Help maintain availability-focused segmentation strategies for operational assets.
Monitoring & Continuous Improvement
- Monitor segmentation coverage and workload adoption.
- Identify opportunities to strengthen segmentation c
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s