Cybersecurity Engineer

Assa Abloy AB
  • New Haven, CT
    30+ days ago

    Job Description

    As the global leader in access solutions, ASSA ABLOY is committed to making the world a safer and more open place. Our Opening Solutions Americas team is hiring a Cybersecurity Engineer who will be responsible for implementing, operating, and maintaining the divisions Zero Trust Segmentation program using Illumio. This role focuses on technical execution, segmentation policy development, application dependency analysis, workload onboarding, and day-to-day platform administration.

    The engineer will work closely with infrastructure, cloud, application, and operational technology (OT) teams to reduce cyber risk, improve visibility into application communications, and support protection of critical business systems and Crown Jewel assets.

    This role will be based onsite in New Haven, CT on a full-time basis.

    What you will be doing as Cybersecurity Engineer

    Illumio Platform Administration:

    • Administer and maintain the Illumio platform, including Policy Compute Engine (PCE) and Virtual Enforcement Nodes (VENs).
    • Deploy, troubleshoot, and upgrade Illumio agents across Windows and Linux environments.
    • Monitor platform health, agent connectivity, policy status, and enforcement activities.
    • Resolve segmentation-related incidents and operational issues.
    • Support integration with enterprise security tools and asset management platforms.

    Application Dependency Mapping:

    • Analyze application traffic flows and communication patterns.
    • Identify application dependencies and support workload classification.
    • Validate required communications with application and infrastructure teams.
    • Assist in documenting application architectures and connectivity requirements.
    • Investigate unknown or unexpected east-west traffic.

    Segmentation Policy Implementation

    • Develop and maintain micro segmentation policies based on approved architecture and security standards.
    • Create and manage:
    • Application Ringfencing Policies
    • Tier-to-Tier Policies
    • Administrative Access Controls
    • Core Services Allow Lists
    • Logging and Monitoring Communications
    • Test policies in visibility and simulation modes before enforcement.
    • Assist with implementation planning and validation activities.
    • Support policy tuning and optimization following deployment.

    Asset Management & Labeling

    • Maintain accurate workload labeling and segmentation metadata.
    • Validate asset inventory and application ownership information.
    • Assist with onboarding new applications into the segmentation program.
    • Work with CMDB and infrastructure teams to correct data quality issues impacting segmentation effectiveness.
    • Ensure newly deployed systems are enrolled in the program where appropriate.

    Cloud & Hybrid Environment Security

    • Support segmentation initiatives across:
    • Azure
    • Hybrid infrastructure
    • On-premises data centers
    • Hosted environments
    • Assist cloud engineering teams with workload onboarding and policy implementation.
    • Validate secure communications between cloud and on-premises systems.

    Operational Technology (OT) Support

    • Assist with micro segmentation efforts for manufacturing and operational technology environments.
    • Support implementation of controls designed to protect critical OT systems.
    • Participate in risk reduction activities involving industrial control systems and production environments.
    • Help maintain availability-focused segmentation strategies for operational assets.

    Monitoring & Continuous Improvement

    • Monitor segmentation coverage and workload adoption.
    • Identify opportunities to strengthen segmentation controls and reduce attack surface exposure.
    • Participate in vulnerability remediation discussions where segmentation can reduce risk.
    • Develop reports and dashboards showing segmentation status and workload coverage.
    • Assist with root cause analysis and lessons learned following security events.

    Automation & Engineering

    • Develop scripts and automation to improve operational efficiency.
    • Utilize APIs to automate:
    • Workload onboarding
    • Reporting
    • Label validation
    • Policy management
    • Support integrations between Illumio and:
    • ServiceNow
    • CMDB platforms
    • SIEM solutions
    • Security tooling

    What we are looking for

    • Bachelors degree in Cybersecurity, Information Technology, Computer Science, or related field.
    • 3-5 years of cybersecurity, infrastructure, or security engineering experience.
    • Availability to be on-call for off-hour emergencies.
    • Experience with:
    • Network security
    • Firewalls
    • Server administration
    • Security operations
    • Understanding of:
    • TCP/IP networking
    • DNS
    • Active Directory
    • Windows and Linux administration
    • Cloud networking fundamentals
    • Experience troubleshooting application communication issues.

    Preferred Qualifications

    Experience with Illumio or other segmentation technologies.

    • Experience supporting Zero Trust initiatives.
    • Exposure to:
    • Microsoft Azure
    • ServiceNow
    • SIEM platforms
    • Vulnerability Management tools
    • Scripting experience using:
    • PowerShell
    • Python
    • REST APIs
    • Manufacturing or OT cybersecurity experience preferred.

    What we offer

    We're passionate about providing amazing opportunities and benefits, so that you can enjoy a lifelong career with us. We are proud to offer:

    • Continuous professional development opportunities and an environment that fosters internal growth and mobility.
    • Competitive compensation and benefits package which includes multiple healthcare options, tuition reimbursement, and matching 401k.
    • Generous holiday schedule and paid time off to refresh and recharge.
    • Employee pricing on our products and discount programs for travel, entertainment, and more!

    We review applications regularly, so don't hesitate, apply today!

    #LI-EL1

    #LI-OSA

    We are the ASSA ABLOY Group

    Our people have made us the global leader in access solutions. In return, we open doors for them wherever they go. With nearly 63,000 colleagues in more than 70 different countries, we help billions of people experience a more open world. Our innovations make all sorts of spaces - physical and virtual - safer, more secure, and easier to access.

    As an employer, we value results - not titles, or backgrounds. We empower our people to build their career around their aspirations and our ambitions - supporting them with regular feedback, training, and development opportunities. Our colleagues think broadly about where they can make the most impact, and we encourage them to grow their role locally, regionally, or even internationally.

    As we welcome new people on board, it's important to us to have diverse, inclusive teams, and we value different perspectives and experiences.

    Numbers & Facts

    LocationNew Haven, CT

    Skills

    • Access Controlunmatched
    • Analysis Skillsunmatched
    • Application Programming Interface (API)unmatched
    • Asset Managementunmatched
    • Asset Management Softwareunmatched
    • Automationunmatched
    • Business Solutionsunmatched
    • Cloud Applicationsunmatched
    • Cloud Computingunmatched
    • Compensation and Benefitsunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Continuous Improvementunmatched
    • Control Systemsunmatched
    • DNS (Domain Name System)unmatched
    • Data Qualityunmatched
    • Enterprise Protectionunmatched
    • Firewallsunmatched
    • Healthcareunmatched
    • Identify Issuesunmatched
    • Information Technology & Information Systemsunmatched
    • Internet Securityunmatched
    • Linux Administrationunmatched
    • Linux Operating Systemunmatched
    • Machine Toolunmatched
    • Manufacturingunmatched
    • Manufacturing Operationsunmatched
    • Metadataunmatched
    • Microsoft Active Directoryunmatched
    • Microsoft Windows Azureunmatched
    • Microsoft Windows Operating Systemunmatched
    • Microsoft Windows System Administrationunmatched
    • Network Operations Centerunmatched
    • Network Securityunmatched
    • On Callunmatched
    • Onboardingunmatched
    • Operational Improvementunmatched
    • Operational Strategyunmatched
    • Policy Developmentunmatched
    • Policy Implementationunmatched
    • Product Pricingunmatched
    • Product Programsunmatched
    • Production Systemsunmatched
    • Python Programming/Scripting Languageunmatched
    • REST (Representational State Transfer)unmatched
    • Reporting Dashboardsunmatched
    • Reporting Skillsunmatched
    • Risk Managementunmatched
    • Root Cause Analysisunmatched
    • Scripting (Scripting Languages)unmatched
    • Security Architectureunmatched
    • Security Attacksunmatched
    • Security Information and Event Management (SIEM)unmatched
    • ServiceNowunmatched
    • Simulationunmatched
    • Software Engineeringunmatched
    • Systems Administration/Managementunmatched
    • TCP/IP (Transmission Control Protocol/Internet Protocol)unmatched
    • Technical Recruitingunmatched
    • Training/Teachingunmatched
    • Validation Planunmatched
    • Windows PowerShellunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder