Lead, Cyber Security Engineer
Job in
Irving, Dallas County, Texas, 75084, USA
Listed on 2026-06-22
Listing for:
Pho Prime, LLC
Full Time, Seasonal/Temporary
position Listed on 2026-06-22
Job specializations:
-
IT/Tech
Cybersecurity, Information Security, Systems Engineer, Security Management & Operations
Job Description & How to Apply Below
Lead, Cyber Security Engineer W.W.Williams Company
Address 222 West Las Colinas Boulevard, Irving, TX, 75039, US
Schedule Full time
Job Type Permanent
Lead, Cyber Security Engineer Opportunity SummaryThe Lead, Cyber Security Engineer is a senior individual-contributor and team-lead role responsible for owning the end-to-end cyber security program at WW Williams. Reporting to CIO and based in the Dallas, Texas metro area, this hybrid role requires both strategic vision and deep technical execution. The successful candidate will establish measurable security baselines, drive the organization toward NIST Cybersecurity Framework (CSF) maturity, and act as the primary defender of WW Williams' digital assets across all business units.
SecurityProgram Leadership & Governance
- Own, evolve, and communicate the WW Williams Cyber Security roadmap aligned to NIST CSF (Identify, Protect, Detect, Respond, Recover) functions.
- Establish, document, and track security KPIs and KRIs to measure baseline performance, quantify risk reduction, and demonstrate continuous improvement to executive stakeholders.
- Develop and maintain security policies, standards, and procedures in alignment with regulatory requirements and industry frameworks (NIST 800-53, CIS Controls).
- Lead periodic cyber security maturity assessments; produce gap analyses with prioritized remediation roadmaps.
- Manage relationships with MSSPs, vendors, and third-party assessors; conduct vendor security reviews.
- Develop correlation rules and playbooks to minimize mean-time-to-detect (MTTD) and mean-time-to-respond (MTTR).
- Lead incident response activities including containment, eradication, forensic investigation, and post-incident review (PIR).
- Maintain threat intelligence feeds; translate threat actor TTPs (MITRE ATT&CK) into actionable defensive controls.
- Conduct adversarial simulation exercises (purple team / tabletop) to validate detection and response capabilities.
- Administer and optimize advanced endpoint detection and response (EDR/XDR) platforms; enforce next-generation antivirus (NGAV) and behavioral anomaly detection policies.
- Manage Field Effect Covalence (MDR) or equivalent managed detection and response solution; triage and act on platform alerts in concert with the SOC.
- Oversee network security architecture including firewall rule-set management, IDS/IPS tuning, micro-segmentation, and zero-trust network access (ZTNA) initiatives.
- Govern cloud security posture (CSPM) across Azure/AWS/GCP environments; enforce least-privilege IAM, secrets management, and cloud-native security controls.
- Administer the KnowBe4 Security Awareness Training & Simulated Phishing platform; design targeted campaigns, track click-rate metrics, and report on risk reduction over time.
- Drive a measurable reduction in human-layer risk through role-based training curricula, phishing simulations, and coaching for repeat offenders.
- Serve as the internal security advocate; communicate risk in business terms to non-technical audiences including C-suite and field operations.
- Own the full vulnerability management lifecycle: scan, prioritize (CVSS + business context), remediate, and verify closure within SLA.
- Manage patch management cadences across servers, endpoints, OT/IoT-adjacent systems, and network devices.
- Champion secure-by-design principles; conduct security design reviews and code-level assessments for internally developed applications.
- Maintain a risk register and communicate residual risk posture to leadership on a regular cadence.
- Govern privileged access management (PAM), MFA enforcement, and identity lifecycle processes in Active Directory / Azure AD / Entra .
- Implement and maintain data loss prevention (DLP) controls; classify and protect sensitive business data across storage, transit, and endpoint.
- Oversee email security stack (anti-phishing, DMARC/DKIM/SPF, secure email gateway) and web proxy / DNS filtering.
Required Qualifications
- 8–10+ years of progressive, hands‑on cyber security…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×