ironquill.tech/board

$ cat jobs/security-engineer-new-belgium-brewing-company-in-e2537c579084.json

Security Engineer

new belgium brewing company inc·US·United States·mid
Apply on himalayas → Get AI match score →
This role is responsible for playing a critical role in safeguarding our organization’s digital and operational assets by designing, implementing, and maintaining robust security solutions. This position spans enterprise IT, specializing in one or more of the following areas: cloud infrastructure, identity, and access management (IAM), and operational technology (OT) environments. The Security Engineer collaborates with cross-functional teams to embed security into core systems and processes, proactively detect and mitigate risks, and ensure compliance with industry standards and regulatory requirements. Essential Duties: • Design and implement security architectures across cloud platforms, networks, applications, and OT environments to align with organizational risk posture and business goals. • Conduct comprehensive risk assessments and threat modeling to identify vulnerabilities, evaluate impact, and recommend mitigation strategies. • Manage identity and access control systems, directory services, and privileged access management, ensuring least privilege access. • Perform security assessments of IT and OT environments, including vulnerability scanning, system hardening reviews, and segmentation analysis. • Monitor security events, analyze anomalies, and respond to incidents by conducting investigations, coordinating containment, and leading remediation. • Develop and maintain security documentation including architecture diagrams, policies, standards, runbooks, and response procedures. • Automate security processes where feasible, including IAM workflows, vulnerability scans, and audit reporting using tools or scripting languages. • Partner with IT, engineering, operations, and other internal teams to integrate security controls into system designs, infrastructure deployments, and software development lifecycles. • Stay current on emerging threats, technologies, and industry best practices; evaluate new tools and recommend adoption where appropriate. • Support r