Manager, Security Engineering
Listed on 2026-05-16
-
IT/Tech
Cybersecurity, Systems Engineer, Information Security, Network Security
About Hire Right
Hire Right is the premier global background screening and workforce solutions provider. We bring clarity and confidence to vetting and hiring decisions through integrated, tailored solutions, driving a higher standard of accuracy in everything we do. Combining in-house talent, personalized services, and proprietary technology, we ensure the best candidate experience possible. PBSA accredited and based in Nashville, TN, we offer expertise from our regional centers across 200 countries and territories in The Americas, Europe, Asia, and the Middle East.
Our commitment to get it right every time, everywhere, makes us the trusted partner of businesses and organizations worldwide.
This role leads the Security Engineering function, responsible for the design, implementation, and continuous improvement of technical security controls across infrastructure, applications, and cloud environments.
The position focuses on strengthening control effectiveness, driving automation, and embedding security into engineering and operational workflows. This role partners closely with Security Operations, Infrastructure, Dev Ops, and GRC to reduce risk and support business growth.
This role is focused on Security Engineering and does not directly own, but an contribute to, Security Operations or Incident Response functions.
Responsibilities Platform Ownership & Control Maturity- Endpoint Security (EDR)
- Email Security & Data Protection
- Web Proxy & DLP
- Web Application Firewall (WAF)
- Encryption & Key Management
- Vulnerability Management
- IAM Governance (UARs, RBAC support)
- Increasing maturity and effectiveness in all security controls
- Policy governance and tuning
- Reducing false positives and operational friction
- Transitioning controls from monitoring to enforcement
- Ensuring scalability and documentation
- Embed security into CI/CD pipelines and cloud provisioning workflows
- Drive adoption of secure-by-default standards (CIS benchmarks, secure images)
- Evaluate and implement application security tooling (Snyk, SAST, IaC scanning)
- Partner with engineering teams to reduce risk early in development
- Own vulnerability management strategy and execution
- Prioritize remediation based on exploitability and business risk
- Improve automation and tracking (e.g., Qualys to Jira integration)
- Reduce repeat findings and systemic issues
- Define and implement KPI framework across Security Engineering
- Establish dashboards to track risk reduction, platform health, and operational efficiency
- Provide reporting to leadership on program effectiveness
- Drive a metrics-based culture focused on outcomes
- Improve service delivery for security-related requests and escalations
- Reduce manual processes through automation
- Establish and maintain runbooks and documentation
- Ensure continuity across all supported platforms
- Manage security tooling lifecycle (selection, implementation, renewal)
- Rationalize overlapping tools and reduce cost
- Lead adoption of strategic tools
- Bachelor’s degree in Cybersecurity, Engineering, or equivalent practical experience
- 5+ years of experience in security engineering, infrastructure security, or related technical roles
- Strong hands‑on experience with endpoint security, network security, and system hardening
- Experience with enterprise security technologies such as WAF, secure web gateways/proxies, email security platforms, and encryption mechanisms.
- Experience collaborating with Infrastructure, Cloud, IT, and SOC teams in a production environment
- Familiarity with security and compliance frameworks such as SOC 2, ISO 27001, and NIST
- Experience implementing and operating enterprise security controls across multiple domains (endpoint, email, network, cloud)
- Experience integrating security into CI/CD pipelines and cloud environments
- Familiarity with data protection and DLP strategies across multiple channels (endpoint, web, email)
- Experience with vulnerability management and risk prioritization at scale
- Experience supporting or partnering with compliance and audit programs (SOC2, ISO, PCI, etc.)
- Strong…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).