.About us: At Echelon Risk + Cyber, we believe in defending basic human rights to security and privacy. We seek a highly skilled and experienced Senior Security Engineer to join our dynamic team at Echelon Risk + Cyber, a leading cybersecurity consulting firm. Our next team member will be ready to roll up their sleeves and identify opportunities for our clients and for Echelon internally with unquestioned integrity. This team member will be passionate about cybersecurity and ready to use their knowledge to be an Entrepreneurial Problem Solver and work alongside their Echelon team members to build creative solutions.At Echelon, we believe learning never stops. You will have the opportunity to engage with systems that are at the cutting edge of technology and team members that will challenge you with meaningful work. We allow our team members to build from the ground up and make an impact across the organization.What You Will Do:Implement and enforce security policies and procedures based on industry standards.Conduct regular security assessments, audits, and ensure compliance with security standards.Design and implement secure cloud solutions (Azure and AWS).Utilize Cloud Security Posture Management (CSPM) technologies.Ensure the security of SaaS platforms, including email, file sharing, and 3rd party applications.Configure and manage security controls for servers and endpoints, including deploying and managing endpoint protection solutions.Implement security policies for Mobile Device Management (MDM).Conduct regular vulnerability scans and automated penetration tests utilizing in-house tools and develop remediation plans for identified vulnerabilities.Implement and manage IAM solutions, including single sign-on (SSO) and privileged access management (PAM).Ensure proper user provisioning and access controls.Lead technical implementations of data protection services, including Data Loss Prevention (DLP) solutions.Participate in the development and maintenance of disaster recovery plans and procedures.Review and ensure backups, redundancy, and replication solutions meet availability and recovery best practices, including performing regular recovery tests.Conduct security reviews, assessments, and hardening activities across key systems from endpoints, servers, network infrastructure, and Cloud services.Apply and enforce security configuration benchmarks (e.G., CIS, NIST).Ensure compliance with regulatory requirements and industry standards.Implement and manage security information and event management (SIEM) systems.Deploy and maintain managed detection and response (MDR), intrusion detection systems (IDS), and intrusion prevention systems (IPS).Configure and manage network security policies across perimeter and internal network equipment, including firewalls and wireless access points.Participate in incident response planning and tabletop exercises and develop incident response plans and playbooks