Northwest Partners is seeking a Security Engineer Lead to support an enterprise accounting client by driving identity‑focused security initiatives and leading hands‑on delivery across various security domains. The role involves managing security projects, architecting security policies, and collaborating with stakeholders to deliver measurable security outcomes.
Responsibilities:
- Lead end‑to‑end delivery of enterprise security projects, including planning, execution, governance, and reporting
- Manage concurrent workstreams across DLP, PAM, password management, pentesting, and access reviews
- Architect and deploy DLP policies across endpoints, email, cloud (M365/Purview), and network egress
- Define data‑classification models and tune DLP rules to reduce false positives
- Oversee enterprise PAM rollout and governance using platforms such as CyberArk, BeyondTrust, or Delinea
- Establish vaulting, session‑recording, and just‑in‑time access controls for hybrid environments
- Implement enterprise password‑management strategy and integrate with SSO/MFA and identity governance tools
- Manage penetration testing programs, vendor coordination, findings triage, and remediation tracking
- Build and operationalize continuous access‑review programs across AD, Entra ID, and key SaaS applications
- Automate access certifications using IGA platforms such as SailPoint or Saviynt
- Present program updates and risk posture to C‑suite and collaborate with Legal, Compliance, HR, and Finance
Requirements:
- 12+ years of progressive cybersecurity experience, including 5+ years in a senior engineering or lead role
- Proven success delivering large-scale security projects in complex, matrixed, regulated environments
- Hands-on expertise in at least four areas: DLP, PAM, password management, penetration testing, or identity governance
- Experience with Microsoft Purview, CyberArk/BeyondTrust, Entra ID, SailPoint/Saviynt, and M365/Azure security tools
- Strong ability to influence cross-functional teams without direct authority
- Scripting skills in PowerShell or Python
- Bachelor's degree required
- CISSP, CISM, CRISC, OSCP, or Microsoft Security certifications