Information Security Engineer

Integrity Express Logistics LLC
  • Cincinnati, OH
    3 days ago

    Job Description

    As the Information Security Engineer at Integrity, you are responsible for protecting Integrity Express Logistics' systems, networks, applications, and data by developing, implementing, and maintaining effective information security controls and practices. This role combines hands-on security engineering with risk assessment, vulnerability management, incident response, and continuous improvement of the Company's information security capabilities.

    The Information Security Engineer partners closely with Technology, Engineering, Infrastructure, and other business teams to identify security risks, implement appropriate safeguards, and support secure technology operations. This position monitors the evolving threat landscape, evaluates vulnerabilities, responds to security incidents, and helps ensure security considerations are incorporated into technology solutions and business processes.

    This position reports to the Senior Vice President, Technology Solutions.

    Must be able to work onsite in Cincinnati, OH on a weekly basis or as business needs require.

    Core Responsibilities

    Security Engineering, Infrastructure, & Controls

    • Design, implement, configure, maintain, and continuously improve security technologies, infrastructure, and controls that protect the Company's applications, endpoints, networks, systems, and data.
    • Configure, administer, and troubleshoot security tools and technologies, including endpoint protection, firewalls, authentication and access controls, intrusion detection and prevention systems, content filtering, and network monitoring solutions.
    • Partner with Technology and Engineering teams to support secure system configurations, architectures, and implementations.
    • Evaluate and recommend enhancements to security tools, controls, and technologies to strengthen the Company's security posture.

    Vulnerability Management, Security Testing, & Risk Assessment

    • Conduct security risk assessments and vulnerability evaluations to identify potential weaknesses, threats, and areas of exposure.
    • Perform and/or coordinate internal and external vulnerability scans, analyze findings, prioritize risks, and drive remediation efforts with appropriate stakeholders.
    • Conduct or coordinate security testing activities, including vulnerability scanning, phishing simulations, configuration reviews, and other control effectiveness assessments.
    • Track remediation progress and provide recommendations to reduce risk and improve control effectiveness.

    Security Monitoring, Threat Management, & Incident Response

    • Monitor security systems, logs, and alerts to identify suspicious activity, potential security incidents, and emerging threats.
    • Investigate security events, document findings, and coordinate incident response, containment, recovery, and remediation activities.
    • Maintain awareness of evolving cybersecurity threats, attack techniques, vulnerabilities, and industry trends, evaluating potential impacts to the Company.
    • Recommend and implement improvements to detection, response, and monitoring capabilities to reduce future risk.

    Security Program, Application Security, & Advisory Support

    • Support the development, implementation, maintenance, and continuous improvement of the Company's information security program, policies, standards, procedures, and technical controls.
    • Partner with Engineering, Infrastructure, and Technology teams to integrate security considerations into the design, implementation, and operation of systems and applications.
    • Provide guidance and recommendations related to operating systems, networks, databases, web applications, cloud environments, and other technology platforms.
    • Assist in translating security requirements into practical and scalable solutions that support business and technology objectives.

    Security Awareness, Documentation, & Continuous Improvement

    • Partner with stakeholders to develop and deliver security awareness initiatives, training programs, and employee education related to cybersecurity best practices.
    • Provide guidance on information security responsibilities, phishing awareness, data protection, and emerging security risks.
    • Maintain accurate documentation of security configurations, incidents, risks, controls, assessments, and remediation activities.
    • Identify opportunities to improve security processes, operational effectiveness, and the overall maturity of the Company's security program.
    • Perform other duties and responsibilities as assigned.

    Knowledge/Skills/Experience

    Required Qualifications

    • Bachelor's degree in Computer Science, Information Security, Information Technology, Cybersecurity, or a related field, or an equivalent combination of education and relevant experience.
    • Minimum of 5 years of experience in information security, cybersecurity engineering, security operations, or a related technology security role.
    • Demonstrated experience implementing, operating, and maintaining enterprise security technologies, systems, and controls.
    • Experience identifying, assessing, prioritizing, and remediating security vulnerabilities and technology risks.
    • Working knowledge of network, endpoint, operating system, application, database, and infrastructure security principles.
    • Experience with security technologies such as endpoint protection, firewalls, identity and authentication solutions, intrusion detection/prevention, content filtering, vulnerability management, and network or security monitoring tools.
    • Knowledge of cybersecurity principles, security protocols, access controls, vulnerability management, and incident response practices.
    • Experience investigating and responding to security incidents and documenting findings and corrective actions.
    • Ability to analyze complex technical information, identify potential risks, and develop practical solutions.
    • Strong analytical, technical, and problem-solving skills.
    • Strong written and verbal communication skills, including the ability to communicate security risks and recommendations to both technical and non-technical stakeholders.
    • Ability to work effectively across Technology, Engineering, Infrastructure, and business teams while managing multiple priorities.

    Preferred Qualifications

    • Experience supporting or helping mature an enterprise information security program.
    • Experience with cloud security, identity and access management, security information and event management (SIEM), vulnerability management, and endpoint detection and response (EDR) technologies.
    • Familiarity with recognized cybersecurity frameworks and standards, such as NIST Cybersecurity Framework, CIS Controls, or similar industry frameworks.
    • Relevant professional certification such as CISSP, Security+, GIAC, CISM, or another information security certification.
    • Experience working in an environment where security controls must balance operational requirements, business needs, and technology risk.

    Physical Requirements

    • Ability to sit or stand at a desk for prolonged periods of time.
    • Ability to lift up to 15 lbs.

    This position operates primarily in a remote work environment. Occasional work outside of normal business hours may be required to support software releases, production issues, or other critical technology initiatives. Limited travel may also be necessary for meetings, training, and company-sponsored events.

    We are committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at HR@intxlog.com or call 1-888-374-5138 ext. 4.

    US Based Employees - At IEL, we are committed to providing equal employment opportunities for all persons, regardless of age, ancestry, color, religious creed (including religious dress or grooming practice), family and medical care leave status, disability (mental and physical) including HIV and AIDS, marital status, medical condition (including cancer and genetic characteristics), genetic information, military status, protected veteran status, status as a victim of domestic violence or stalking, familiar status, national origin, race, sex, pregnancy, childbirth, breastfeeding or related medical condition, gender identity or expression, sexual orientation and or any other category protected by law.

    Numbers & Facts

    LocationCincinnati, OH

    Skills

    • Access Controlunmatched
    • Analysis Skillsunmatched
    • Applications Securityunmatched
    • Authenticationunmatched
    • Best Practicesunmatched
    • Business Processesunmatched
    • Business Supportunmatched
    • CISM - Certified Information Security Managerunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Cancerunmatched
    • Cloud Applicationsunmatched
    • Cloud Computingunmatched
    • Communication Skillsunmatched
    • CompTIA Security+unmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Content Filtering Softwareunmatched
    • Continuous Improvementunmatched
    • Corrective Actionunmatched
    • Documentationunmatched
    • Endpoint Securityunmatched
    • Enterprise Protectionunmatched
    • Equal Employment Opportunity (EEO)unmatched
    • Establish Prioritiesunmatched
    • Firewallsunmatched
    • GIAC - Global Information Assurance Certificationunmatched
    • Geneticsunmatched
    • HIV/AIDS (Acquired Immune Deficiency Syndrome)unmatched
    • Identify Issuesunmatched
    • Identity Data Managementunmatched
    • Incident Responseunmatched
    • Industry/Trade Analysisunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Applicationunmatched
    • Internet Securityunmatched
    • Intrusion Detection Systemsunmatched
    • Intrusion Detection and Prevention (IDP)unmatched
    • Logisticsunmatched
    • Medical Conditionsunmatched
    • Militaryunmatched
    • Multitaskingunmatched
    • Network Monitoringunmatched
    • Network Securityunmatched
    • Network Systemsunmatched
    • Operating Systemsunmatched
    • Operational Strategyunmatched
    • Operations Security (OPSEC)unmatched
    • Patient Careunmatched
    • People Managementunmatched
    • Phishingunmatched
    • Presentation/Verbal Skillsunmatched
    • Problem Solving Skillsunmatched
    • Process Improvementunmatched
    • Riskunmatched
    • Risk Analysisunmatched
    • Risk Managementunmatched
    • Security Analysisunmatched
    • Security Attacksunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Infrastructureunmatched
    • Security Monitoringunmatched
    • Security Protocolsunmatched
    • Software Administrationunmatched
    • Staff Trainingunmatched
    • System Architectureunmatched
    • System Operationsunmatched
    • Systems Administration/Managementunmatched
    • Technical Analysisunmatched
    • Technical Operationsunmatched
    • Technical Supportunmatched
    • Testingunmatched
    • Training Programunmatched
    • Trend Analysisunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Vulnerability Scannersunmatched
    • Work From Homeunmatched
    • Writing Skillsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder