IT Security Engineer
Job in
Oshkosh, Winnebago County, Wisconsin, 54901, USA
Listed on 2026-07-24
Listing for:
Trek Bicycle Corporation
Full Time
position Listed on 2026-07-24
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Security Management & Operations
Job Description & How to Apply Below
Waterloo, Wisconsin time type:
Full time posted on:
Posted Todayjob requisition :
Trek
115295## A bit about usTrek is an awesome place to work, with amazing benefits for all employees. We build only products we love, provide incredible hospitality to our customers, and change the world by getting more people on bikes. When you’re on our team, you’re taken care of, encouraged to learn and grow, and given lots of opportunities to do so.
Give us your best, and we’ll give it right back. Sound pretty sweet? Then come join us!
** Job Description
**
* Location:
Trek Waterloo HQ (Hybrid)*##
** Role Summary
** Help us secure the Awesome Bus! We are looking for someone to join our global cybersecurity team. We are a highly effective team that works to protect and defend against intrusions into Trek's systems.
The Information Security Engineer owns two of the security program's most operationally critical functions:
Identity & Access Management (IAM) and Security Operations (SOC). This is a senior individual contributor role — you won't manage people, but you will own the technical controls that govern who can access Trek's systems and how threats against those systems are detected and contained.
You will be the hands-on owner of Trek's identity infrastructure — Microsoft Entra , privileged access, joiner-mover-leaver processes, and access governance — while simultaneously operating as Trek's primary security analyst: monitoring for threats, investigating incidents, and running detection and response workflows across Crowd Strike Falcon, Zscaler, and Microsoft Sentinel. This role demands both the precision of an IAM engineer and the instincts of a SOC analyst.
You will work closely with the Director of IT Security and collaborate cross-functionally with IT, HR, Legal, and engineering teams across Trek's global environment.
If you want a role where no two days are the same, where you own real enterprise security infrastructure, and where the work you do directly protects a globally recognized brand — this is it.##
** Key Responsibilities
** Identity & Access Management
* Own the IAM program lifecycle: identity governance, role-based access control (RBAC), access certification, joiner-mover-leaver (JML) processes, and policy enforcement
* Administer and optimize Microsoft Entra (Azure AD) including SSO, MFA, Conditional Access policies, and directory health
* Design and maintain a least-privilege access model across SaaS, cloud, and on-premises systems, including privileged access management (PAM)
* Drive access certification campaigns: scope, execute, and report on periodic entitlement reviews across all systems
* Develop and enforce IAM policies, standards, and procedures — including third-party and service account governance
* Detect and investigate identity-based threats: anomalous authentication, lateral movement indicators, credential abuse, and over-privileged account activity
* Partner with HR, IT, and application teams to ensure processes are accurate, automated where possible, and consistently enforced
* Support audit and compliance activities with identity evidence and access control documentation
** Security Operations
*** Serve as Trek's primary security analyst: monitor alerts across Crowd Strike Falcon, Microsoft Sentinel, and Zscaler; triage, investigate, and escalate as warranted
* Own the incident response lifecycle for security events — from initial detection through containment, eradication, recovery, and post-incident review
* Develop, tune, and maintain detection rules and correlation logic across SIEM and EDR platforms to reduce noise and surface high-confidence detections
* Build and maintain incident response playbooks, investigation runbooks, and post-incident documentation
* Integrate identity signals and IAM data into SOC detection workflows — connecting the IAM and SOC functions into a unified threat detection capability
* Conduct threat hunting using Crowd Strike, Sentinel, and Zscaler telemetry to proactively identify attacker activity that evades automated detection
* Orchestrate and automate security operations workflows to improve speed and consistency across…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×