Job Description
This is a senior, hands-on cybersecurity role supporting a growing enterprise security program in a regulated environment.
The ideal candidate is a well-rounded security engineer — someone who is comfortable working across application security, infrastructure security, cloud security, vulnerability management, and operational security, rather than being siloed into a single function (e.g., only blue team or only AppSec).
This role is approximately 60% hands-on technical work, 30% strategic/advisory, and 10% ticketing and operational support.
Key Responsibilities:
- Own and manage vulnerability management across applications, infrastructure, cloud, and endpoints
- Work with development and infrastructure teams to integrate security into CI/CD pipelines
- Perform application security reviews using SAST, DAST, and manual techniques
- Support cloud security in AWS and Azure (IAM, security groups, encryption, logging)
- Collaborate on GRC and compliance initiatives in regulated environments
- Assist with identity and access management, including manual reviews of privileged accounts
- Support IT and OT security environments (training provided for OT specifics)
- Build and automate security processes using PowerShell (Python a plus)
- Participate in security architecture discussions and tooling decisions
- Work closely with non-technical teams (CSV, compliance, operations)
- Track work and remediation through ServiceNow or similar ticketing systems
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
7+ years of progressive cybersecurity experience
3+ years in security engineering or security architecture
Strong experience with vulnerability management tools (Nessus/Tenable, Qualys, Rapid7)
Hands-on experience with AWS and/or Azure
Experience securing GxP-regulated systems
Strong understanding of:
Application security (OWASP Top 10)
CI/CD security integration
IDS/IPS and network security
Endpoint security / EDR
PowerShell scripting for automation
Understanding of SaaS vs DaaS vs PaaS
Experience working across IT and OT environments
Nice to Have Skills & Experience
Bachelor’s or Master’s degree
GMP experience
Python scripting
CISSP, CISM (preferred)
Cloud security certifications (AZ-500, AWS Security Specialty)
Experience with 21 CFR Part 11 and Computer System Validation
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.