Sr. Security Engineer
FCP EuroAbout the role
The Senior Security Engineer will support the establishment of FCP Euro's inaugural security function from the ground up, serving as the foundational technical authority for building comprehensive security capabilities. In this role, you will lead initiatives to harden system configurations, integrate advanced threat detection and prevention tools, and rigorously enforce secure coding practices. You will also conduct in-depth security assessments, facilitate continuous vulnerability management, drive incident response strategies, and collaborate closely with cross-functional teams to ensure our infrastructure, applications, and data are defended against evolving threats. The ideal candidate will have the vision and technical expertise to transform an undefined security landscape into a robust, mature security program that proactively defends against evolving technological risks.
FCP Euro is an online automotive parts retailer headquartered in Milford, Connecticut. FCP stands for "Foreign Car Parts," we specialize in replacement parts for European vehicles. In the past 10 years, FCP Euro has earned a spot on the Inc. 5000 fastest-growing private companies list eight times. Customer service is deeply rooted in our core values. FCP Euro is a customer and technology company, and this unique blended culture has yielded outstanding results worthy of reward and recognition. We are devoted to developing and maintaining user-friendly and accurate automotive catalogs. We have an incredible enthusiasm for what we do, and we are always looking for ways to grow, learn, and improve.
Key Responsibilities
Security Architecture & Design:
- Architect and implement scalable security controls, including firewalls, intrusion detection/prevention systems, web application firewalls, and SIEM platforms.
- Develop reference security architectures and hardening guidelines to ensure a consistent, secure baseline for systems and services.
- Conduct configuration reviews, secure system baselines, and ensure all platforms—on-premises and cloud—adhere to industry best practices.
- Enforce secure coding and deployment standards through code reviews, tooling, and collaboration with DevOps/Engineering teams.
- Integrate advanced threat detection tools, automated alerting, and forensic capabilities into our environment.
- Lead incident response efforts, including triage, root-cause analysis, and containment, as well as post-incident reviews to prevent future compromises.
- Continuously assess, prioritize, and remediate vulnerabilities across systems, networks, applications, and APIs.
- Conduct regular security assessments (e.g., penetration tests, red team exercises) and track remediation efforts to closure.
- Implement robust encryption strategies for data at rest and in transit.
- Manage cryptographic keys, certificates, and secrets to maintain the integrity and confidentiality of sensitive information.
- Align security controls with industry standards and frameworks (e.g., NIST, PCI, CCPA, GDPR).
- Collaborate with compliance and risk teams to ensure adherence to regulations such as GDPR, CCPA, or PCI-DSS as applicable.
- Work closely with cross-functional teams—Engineering, IT, Data, Product, Legal, and Complian
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s