Jobs and Careers
CE

Cybersecurity Engineer

CECO Environmental
United Statesfull_timeVerifiedPosted 29 Sept 2025

About the role

Job Summary

CECO Environmental is a global leader in providing sustainable solutions for industrial air, water, and energy transition. Since 1966, we’ve been addressing the world’s most pressing environmental challenges. Our mission is to protect people, the environment, and industrial equipment, making a tangible impact across industries like renewable energy, semiconductor manufacturing, power generation, and water treatment. As a purpose-driven company, we foster a culture of innovation, collaboration, and integrity, ensuring that every project we undertake creates lasting positive change. At CECO, you’ll be part of a growing, dynamic team committed to a cleaner, safer, and more sustainable future.

 

As part of the CECO corporate team, you will play a key role in supporting the continued growth and success of our global family of brands. Whether working in finance, HR, IT, accounting, marketing, or another corporate function, your expertise will help drive efficiency and innovation across our organization. By joining CECO, you’ll be part of a company committed to protecting the environment and enhancing industrial operations, all while fostering a collaborative and purpose-driven work environment.

 

The Security Engineer is responsible for the execution of the Cybersecurity and IAM strategy, identifying and mitigating cyber threats to the Company. Responsible for designing, documenting, implementing, and maintaining cybersecurity systems and processes. This role will also ensure that CECO users, devices, Azure resources, and applications have the appropriate level of access and security. May assist with IT due diligence efforts in M&A activities relative to Cybersecurity, IAM issue identification and development of risk mitigation plans.

Your Responsibilities Will Be:

  • Support and maintain Microsoft security platforms including Defender, Sentinel, Intune, and Entra ID (Azure Active Directory).
  • Manage and investigate cybersecurity incidents, alerts, and escalations as part of the Cybersecurity team.
  • Plan, implement, and maintain identity and access management controls, including MFA, privileged access, and conditional access policies.
  • Administer and monitor user accounts, permissions, and access rights for internal and external users, devices, and applications.
  • Configure and maintain secure authentication methods (SSO, SAML, OAuth, OpenID Connect) across enterprise systems.
  • Monitor and analyze logs, security events, and audit trails in Sentinel and other platforms to ensure compliance and visibility.
  • Investigate and resolve issues related to identity, access, or endpoint security, and provide technical support to users and stakeholders.
  • Contribute to the development and enforcement of cybersecurity policies, standards, and best practices, ensuring alignment with business objectives.
  • Research and evaluate new Microsoft and industry security tools, features, and practices, recommending improvements where applicable.
  • Collaborate with IT, Infrastructure, and business teams to implement secure solutions and remediate vulnerabilities.
  • This job description highlights the primary areas of responsibility; specific tasks may vary depending on department and business needs.
  • To perform this role successfully, an individual must be able to execute each essential duty effectively. Reasonable accommodation may be made for individuals with disabilities.

 Required Qualifications:

  • A bachelor’s degree in computer science, Information Systems, Business Management or a related field.
  • 7+ years of experience; or an equivalent combination of education and experience sufficient to successfully perform the essential duties of the job such as those listed above. 
  • Prior experience in IT Administration, Support, Engineering, and/or commercial industrial manufacturing industry is helpful.
  • Experience with Microsoft security stack (Defender, Sentinel, Intune, Entra ID).
  • Familiarity with SIEM/SOAR platforms and incident response processes.
  • Strong knowledge of IAM principles and authentication technologies.
  • Understanding of cloud and endpoint security fundamentals.
  • Hands-on experience with log analysis, threat detection, and security operations.
  • Strong problem-solving, communication, and collaboration skills.

Licensing/Certifications:

  • Relevant Security +, Microsoft, Networking and Azure certification(s) preferred.

Travel Requirements:

  • Occasional travel may be required, as necessary; must have ability to travel across borders.

ADA Requirements:

Work Environment: This position is based at the headquarters loca

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

CECO Environmental

View company profile →