More jobs:
Senior Security Engineer- Security Baselines
Job in
Brooklyn, Cuyahoga County, Ohio, USA
Listed on 2026-02-09
Listing for:
KeyCorp
Full Time
position Listed on 2026-02-09
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer
Job Description & How to Apply Below
- Security Baselines page is loaded## Senior Security Engineer
- Security Baselineslocations:
Brooklyn, OHtime type:
Full time posted on:
Posted Todaytime left to apply:
End Date:
March 23, 2026 (30+ days left to apply) job requisition :
R-37540
*
* Location:
** 4910 Tiedeman Road, Brooklyn Ohio As a member of the Cyber Defense team within Corporate Information Security, the Senior Exposure Management Engineer plays a critical role in safeguarding Key Bank’s infrastructure by designing, implementing, and maintaining secure configurations across on-premises, cloud, and hybrid environments. This position is responsible for ensuring that systems, applications, and networks are configured in strict alignment with industry-recognized standards, particularly the CIS Benchmarks, as well as organizational security baselines.
The engineer continuously monitors updates to CIS Benchmarks, integrates new controls, and supports audit readiness by maintaining comprehensive documentation and evidence of compliance. By leveraging industry standard automated scanning capabilities, the Senior Exposure Management Engineer validates configuration settings, identifies vulnerabilities, and ensures timely remediation and re-assessment, directly supporting Key Bank’s mission to Deter, Detect, Deny, and Disrupt adversaries through robust, standards-based defense.
The role involves collaborating with cross-functional teams to assess, remediate, and document configuration gaps, ensuring that all configurations meet or exceed CIS recommendations. This proactive approach directly supports the organization’s mission to Deter, Detect, Deny, and Disrupt adversaries through robust, standards-based defense##
Key Responsibilities
* Configuration Management:
Develop, implement, and maintain secure configuration baselines for operating systems, cloud platforms (Google Cloud, Microsoft Azure, AWS), applications, and network devices, ensuring strict adherence to CIS Benchmarks and organizational standards.
* Continuous Assessment:
Conduct regular configuration assessments and audits using Tenable and other industry-standard tools to validate compliance with CIS Benchmarks, NIST, PCI-DSS, and other regulatory requirements.
* Vulnerability Management:
Perform authenticated and unauthenticated vulnerability scans with Tenable, analyze results, and coordinate remediation activities. Ensure that scan policies are tuned to cover CIS Benchmark controls, and that remediation is verified through re-scanning.
* Threat Intelligence:
Collaborate with the Cyber Threat Intelligence and Red Team to incorporate threat intelligence into configuration management and prioritization processes.
* Project
Collaboration:
Work with project teams, architects, and third-party vendors to embed security controls in system designs and deployments and validate configuration requirements.
* Cross-Team
Collaboration:
Partner with infrastructure, application, and security teams to ensure baseline requirements are understood, implemented, and maintained across all environments.
* Compliance Reporting:
Track and report on configuration compliance metrics, maintain automated dashboards, and provide visibility to stakeholders and leadership within the Service Now application.
* Documentation & Audit Support:
Document configuration changes, exceptions, and remediation activities. Support internal and external audits by providing evidence of compliance and remediation.
* Process Automation:
Assist in the development and automation of configuration management and compliance reporting tools and frameworks.
* Knowledge Sharing:
Share knowledge and best practices with the team through presentations, documentation, and training sessions.
* Incident Response:
Support incident response and remediation efforts by identifying and correcting misconfigurations and partnering with blue teams to improve detection and response capabilities related to configuration changes and vulnerabilities.##
Required Qualifications
* Bachelor’s degree in computer science, Cybersecurity, or related field—or equivalent experience.
* 8+ years of experience in security engineering, configuration…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×