Lead Cyber Security Engineer
Listed on 2026-05-02
-
IT/Tech
Cybersecurity, Systems Engineer, Network Security, Security Manager
Overview
Who are we? XNRGY Climate Systems is a North American leader in sustainable design and advanced manufacturing of custom air treatment systems. Focused on research and energy development, we contribute to the reduction of carbon footprints across industries. We are opening a new Technology headquarters in Mesa, Arizona, reflecting our commitment to growth and innovation in climate solutions.
Summary
:
We are seeking a highly experienced Lead Cybersecurity Engineer to help develop, operate, and continuously mature the organization’s cybersecurity program. This role translates security strategy into effective technical controls across enterprise IT, cloud, and OT environments, with a strong emphasis on the Microsoft security ecosystem. The ideal candidate brings 7+ years of experience running cybersecurity programs in a medium to large organization, deep hands-on expertise with Microsoft Defender, Sentinel, Purview, and Azure security, and a strong understanding of OT security principles and industrial environments.
- Cybersecurity Program Development & Operations:
Design, implement, and operate a comprehensive enterprise cybersecurity program, including governance, prevention, detection, and response capabilities. - Partner with IT, Cloud, Engineering, OT, and Compliance teams to align cybersecurity controls with business risk and operational requirements.
- Contribute to security roadmap planning, maturity assessments, and continuous improvement initiatives (e.g., Zero Trust, NIST CSF, CIS).
- Act as a senior technical advisor on cybersecurity risk, architecture, and control effectiveness.
- Microsoft Security Engineering:
Design, deploy, and administer Microsoft security solutions, including Defender for Endpoint, Defender for Identity, Defender for Cloud, Defender for Office 365, and integrate Defender XDR telemetry into centralized monitoring and incident response workflows.
- SIEM, Monitoring & Incident Response:
Architect and operate Microsoft Sentinel (SIEM/SOAR); log ingestion from Azure, Microsoft 365, on-premises, and OT-adjacent systems; analytics rule development and tuning; threat hunting and investigations using KQL; dashboards, workbooks, and operational metrics; automation and response using Logic Apps; lead or support security incident response efforts, including investigation, containment, remediation, and post-incident analysis.
- Identity, Data, Cloud & OT Security:
Implement and manage Microsoft Entra (Azure AD) security controls including Conditional Access, MFA, Identity Protection;
Privileged Identity Management (PIM); implement data protection and compliance controls using Microsoft Purview (DLP, information protection and sensitivity labeling); secure Azure infrastructure using native security mechanisms (NSGs, Azure Firewall, Private Endpoints, Azure Bastion);
Azure Policy and secure landing zones.
- OT (Operational Technology) Security:
Apply OT security principles to protect industrial and operational environments while supporting availability and safety requirements; collaborate with engineering and operations teams to assess and reduce cyber risk in IT/OT-converged environments; support segmentation, monitoring, and secure access strategies for OT systems; align OT security practices with IEC 62443, NIST without disrupting operations.
- Governance & Leadership:
Support audits and compliance initiatives (NIST, ISO 27001, SOC 2, HIPAA, PCI-DSS, as applicable); develop and maintain security architectures, standards, procedures, and incident response playbooks; mentor junior security engineers and provide hands-on technical leadership; stay current on emerging threats, Microsoft security roadmap updates, and OT security trends.
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience)
- 7+ years of experience developing, implementing, and operating a cybersecurity program for a medium to large organization
- Hands-on experience with Microsoft security technologies, including Microsoft Defender (Endpoint, Identity, Cloud, Office 365), Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).