What are the responsibilities and job description for the Cyber Security Engineer position at Stefanini Group?
Job Description:
- Cybersecurity Engineer plays a critical role in protecting the global technology ecosystem. This position designs, builds, and operates security controls that safeguard enterprise systems, cloud services, applications, manufacturing environments, and data across the organization. Engineers in this role are hands‑on practitioners who lead technical investigations, continuously advance detection and response capabilities, and embed security into modern IT and OT (Operational Technology) environments.
- Cybersecurity Engineers work closely with cross‑functional teams—including Infrastructure, Cloud, Network Engineering, Application Development, Governance/Risk/Compliance, and Manufacturing Technology—to implement secure architectures, automate protections, and proactively reduce organizational risk. This role requires a strong engineering mindset, the ability to analyze complex systems, and the discipline to operate reliably in mission‑critical environments.
- The ideal candidate demonstrates deep curiosity, exceptional technical judgment, and a strong sense of ownership—balancing long‑term architectural improvements with the operational urgency required to respond to evolving threats.
Required Qualifications:
- Strong hands-on cybersecurity engineering experience in enterprise environments.
- Deep knowledge of network, endpoint, cloud, and on-prem security architecture.
- Experience with firewalls, WAFs, SIEM, EDR/XDR, NDR, IDS/IPS, NAC, and automation platforms.
- Experience securing AWS, Azure, and/or GCP environments.
- Knowledge of IAM, Active Directory, Entra ID, PKI, certificates, and encryption.
- Ability to investigate incidents, analyze telemetry, and respond to threats.
- Experience with threat hunting, detection engineering, and alert tuning.
- Experience with vulnerability management and penetration test coordination.
- Familiarity with secure application practices and tools such as SAST, DAST, SCA, and container security.
- Ability to script or automate security workflows using SOAR and common scripting languages.
- Ability to document findings and communicate technical risk clearly.
- Strong troubleshooting, root cause analysis, and cross-functional collaboration skills.
- Willingness to participate in on-call support.
Preferred Qualifications:
- Experience with OT/manufacturing security, including SCADA and PLC environments.
- Experience with Zero Trust technologies such as SSE, CASB, DLP, and ZTNA.
- Familiarity with AI governance and AI security.
- Experience supporting compliance frameworks such as NIST, ISO 27001, GDPR, PCI, SOX, HIPAA, and SOC 2.
- Experience with vendor evaluation, contract support, and security tool cost/value analysis.
- Experience mentoring others and contributing to security culture initiatives.