
Sr Lead Cyber Security Engineering
Northern Trust1 hour ago
Base Salary
$115k - $195k/yr
Responsibilities
- Lead the identity-centric Workforce Security solutions team.
- Develop authentication, authorization, identity, access-management, governance, and Zero Trust solutions across hybrid and cloud environments.
- Review identity and access-management security solutions and provide consultation to partners and IT management.
- Design and support security solutions for Java microservices, React frontends, and Android/iOS mobile applications on Azure.
- Apply and support OAuth, OIDC, SAML, SSO, MFA, Kerberos, LDAP, identity federation, JWT, session handling, certificate authentication, TLS/SSL, API security, and application integration patterns.
- Support workforce cybersecurity solutions involving proxy services, passwordless authentication, YubiKey, biometrics, secrets management, role-based access control, privileged identity management, and just-in-time access.
- Support cloud security operations and troubleshoot complex identity scenarios using Sentinel, KQL, audit logs, and related tools.
- Apply threat modeling, application security, OWASP standards, container security, Kubernetes security, and cloud-native security practices.
- Evaluate AI concepts and their impact on identity and access management.
Requirements
- Bachelor’s degree in computer science or a related discipline and information-security experience, or an equivalent combination of education and work experience.
- Ten years of experience in an information security role.
- Five years of experience as a technical lead.
- Deep knowledge of application or infrastructure systems architecture and experience with multiple system technologies.
- Strong knowledge of identity management on Azure AD, OAuth, OIDC, SAML, SSO, MFA, conditional access policies, Kerberos, LDAP, and identity federation.
- Experience with Entra ID, EPM, Sentinel, Azure, AWS Security, Okta, PingFederate, and entitlement-management solutions.
- Hands-on experience with JWT, session handling, code signing, certificate authentication, TLS/SSL, API security, application registration, and application integration.
- Knowledge of CIEM, threat modeling, application security, OWASP standards, browser storage and cookies, Docker security, and Kubernetes.
- Excellent consultative and communication skills with the ability to work effectively with clients, partners, IT management, and staff.
- CISSP, CSSP, or cloud security certification preferred; Azure and AWS security certifications preferred.
- Strong collaboration skills and analytical ability.
Benefits
- Comprehensive benefits package including 401(k) and pension, medical, dental, vision, spending accounts, disability coverage, paid time off, parental and caregiver leave, life and accident insurance, and voluntary and well-being benefits.
- Discretionary bonus program that may include an equity component.
- Flexible and collaborative work culture with internal mobility opportunities and accessible senior leaders.
- Inclusive workplace and community philanthropy opportunities.