LanceSoft, Inc. is seeking a highly skilled Lead Security Engineer to serve as a technical expert in designing, implementing, and maintaining enterprise-level information security solutions. This role will play a critical part in strengthening security posture, identifying vulnerabilities, and leading remediation efforts across applications and infrastructure.
Responsibilities:
- Act as a technical expert supporting the design, implementation, and maintenance of security solutions
- Provide guidance on security architecture standards and best practices
- Analyze vulnerability scans, penetration test results, and risk assessments; drive remediation efforts within SLAs
- Lead and support penetration testing and validation activities across systems and applications
- Monitor security systems, review logs, and respond to alerts and incidents
- Participate in incident response activities, including investigation and resolution of security breaches
- Collaborate with engineering and cross-functional teams to design and implement secure solutions
- Evaluate new and emerging security technologies to address evolving threats
- Conduct security assessments across applications, infrastructure, and cloud environments
- Design and implement secure CI/CD pipelines and DevSecOps practices
- Identify vulnerabilities in application code and infrastructure; recommend mitigation strategies
- Support security compliance and ensure adherence to organizational standards and policies
- Troubleshoot complex security issues and provide advanced technical support
- Lead break/fix activities and escalate issues as needed
Requirements:
- Bachelor's degree in Computer Science, Cybersecurity, Engineering, or related field (or equivalent experience)
- 7+ years of experience in technology systems, software development, or related field
- 5+ years of experience in information security applications and systems
- 4+ years of experience with database technologies
- 6+ years of experience working within SDLC environments
- 3+ years of DevOps or DevSecOps experience
- 1+ year of experience with cloud platforms (AWS, Azure, or GCP)
- 4+ years of experience designing secure application pipelines
- 4+ years of experience conducting application and infrastructure security assessments
- 5+ years of experience designing secure systems and recommending cybersecurity mitigations
- 6+ years of experience working across diverse application and infrastructure environments
- Experience with security tools such as SIEM, vulnerability scanners, and endpoint protection platforms
- Knowledge of WAF, firewalls, and container security
- Familiarity with cloud security best practices
- Strong analytical, problem-solving, and communication skills