Lead Cybersecurity Engineer

Ollie'S Bargain Outlet
  • Harrisburg, PA
    30+ days ago

    Job Description

    Join our team and live the Ollie-tude!: (Ollie's Core Values)

    • BE A TEAM PLAYER- Associates are expected to be supportive and work together.
    • BE CARING- How do I treat others with courtesy, dignity, and respect?
    • BE VALUE OBSESSED- Live the "good stuff cheap" mindset.
    • BE COMMITTED- Operate with grit, passion, tenacity, and action.
    • BE GROWING- How do we get better every day?
    • BE REAL- Associates should be honest, transparent, genuine, trustworthy, and sincere.

    Competitive Benefits

    • Medical, Dental, Vision, and RX coverage after 30 days of employment.
    • 401K, Company match begins at Associate enrollment
    • Strong career growth & talent development culture
    • 20% Associate discount on all Ollie's purchases.
    • Vast array of voluntary benefits

    Position Overview:

    The Lead, Cybersecurity Engineer is responsible for leading the design, implementation, and continuous improvement of enterprise cybersecurity capabilities that protect the organization's systems, networks, applications, cloud environments, and data assets. This role provides both strategic leadership and technical oversight across cybersecurity engineering, threat detection, vulnerability management, security architecture, identity security, and incident response capabilities.

    The Lead serves as a trusted advisor to technology and business leaders, develops and executes security strategies aligned with organizational objectives, and leads a team of cybersecurity engineers and analysts responsible for maintaining a resilient and scalable security program. This position balances security risk management with business enablement and drives continuous improvement of the organization's overall security posture.

    Primary Responsibilities:

    Leadership & Strategy

    • Lead, mentor, and develop a high-performing cybersecurity engineering team through coaching, performance management, career development, and technical leadership.
    • Execute cybersecurity engineering strategies, roadmaps, and priorities aligned with business objectives and enterprise risk tolerance.
    • Partner with executive leadership, infrastructure, application development, operations, compliance, and business teams to embed security into technology initiatives and operational processes.
    • Drive a culture of accountability, continuous improvement, operational excellence, and secure-by-design principles across the organization.
    • Manage security engineering projects, budgets, vendor relationships, and resource planning to ensure successful delivery of strategic initiatives.

    Cybersecurity Engineering & Architecture

    • Oversee the design, implementation, and optimization of enterprise security controls across endpoints, networks, servers, cloud platforms, applications, and data environments.
    • Establish security architecture standards, engineering patterns, and technical governance processes that support scalability, resilience, and compliance requirements.
    • Lead architecture reviews and provide security guidance for new technologies, cloud services, digital transformation initiatives, and business projects.
    • Ensure security requirements are integrated throughout the system development lifecycle and infrastructure deployment processes.

    Security Operations & Threat Management

    • Provide leadership for security monitoring, threat detection, incident response, and security investigations.
    • Manage the organization's vulnerability management program, including risk prioritization, remediation governance, metrics, and executive reporting.
    • Oversee the administration and effectiveness of security technologies including SIEM, EDR, IDS/IPS, firewalls, email security, web security, identity security, and data protection solutions.
    • Coordinate response efforts for significant cybersecurity incidents and ensure effective root cause analysis and corrective action implementation.

    Identity, Access & Data Protection

    • Lead the maturation of identity and access management capabilities, including privileged access management, authentication controls, least privilege, and access governance.
    • Oversee the implementation of security controls supporting data protection, encryption, secure configuration management, and zero trust initiatives.
    • Ensure appropriate technical safeguards are implemented to protect sensitive business and customer information.

    Risk, Compliance & Governance

    • Partner with compliance, audit, and risk management teams to support regulatory, contractual, and industry security requirements.
    • Translate cybersecurity frameworks and standards into practical technical controls and operational processes.
    • Support audits, assessments, and regulatory reviews by providing technical leadership, documentation, and evidence of control effectiveness.
    • Develop metrics, dashboards, and executive reporting that communicate cybersecurity risk, program maturity, and operational effectiveness.

    Innovation & Continuous Improvement

    • Evaluate emerging threats, technologies, and industry trends to identify opportunities for enhancing security capabilities.
    • Drive automation initiatives that improve operational efficiency, reduce risk, and strengthen security outcomes.
    • Champion continuous improvement initiatives that enhance cybersecurity resilience, operational effectiveness, and business alignment.
    • Complete any additional responsibilities and/or duties as assigned

    Qualifications:

    • Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field, or equivalent professional experience.
    • 5+ years of progressive experience in cybersecurity, information security, security engineering, infrastructure engineering, or related technology disciplines.
    • Demonstrated experience designing and implementing enterprise security controls across cloud, on-premises, and hybrid environments.
    • Strong expertise in security operations, incident response, vulnerability management, security architecture, and enterprise security technologies.
    • Experience operating in lead role of cross-functional initiatives and influencing stakeholders across technical and business organizations.
    • Working knowledge of cybersecurity frameworks and standards including NIST CSF, CIS Controls, PCI DSS, ISO 27001, or similar frameworks.
    • Strong understanding of cloud security, identity security, network security, endpoint protection, and modern enterprise architectures.
    • Industry certifications such as CISSP, CISM, CCSP, GIAC, or equivalent.
    • Knowledge of Zero Trust architectures, cloud-native security, automation, infrastructure-as-code, and security orchestration technologies.
    • Experience supporting highly regulated environments and enterprise audit programs.
    • Proficiency in scripting or automation using Python, PowerShell, or similar technologies.

    Physical Requirements:

    • Ability to sit at a desk to work on a computer for an extended period of time.
    • Ability to see, hear, and speak regularly.
    • Ability to grip, reach, and pinch with arms and hands frequently.
    • Ability to bend and twist occasionally.
    • Ability to work in a constant state of alertness and safe manner.

    Ollie's is an equal opportunity employer. In compliance with Federal and State Equal Opportunity Laws, qualified applicants are considered for all positions applied for without regard to race, color, religion, sex, sexual orientation and identity, national origin, age, veteran's status, disability, or any other legally protected status.

    Numbers & Facts

    LocationHarrisburg, PA

    Skills

    • Auditingunmatched
    • Authenticationunmatched
    • Automationunmatched
    • Budgetingunmatched
    • Business Strategyunmatched
    • Business Transformationunmatched
    • CCSP - Cisco Certified Security Professionalunmatched
    • CISM - Certified Information Security Managerunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Career Counselingunmatched
    • Cloud Applicationsunmatched
    • Cloud Architectureunmatched
    • Cloud Computingunmatched
    • Coachingunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Configuration Managementunmatched
    • Continuous Improvementunmatched
    • Corrective Actionunmatched
    • Cross-Functionalunmatched
    • Cryptographyunmatched
    • EEO Regulationsunmatched
    • Email Securityunmatched
    • Emerging Technologyunmatched
    • Endpoint Securityunmatched
    • Engineeringunmatched
    • Engineering Managementunmatched
    • Enterprise Protectionunmatched
    • Establish Prioritiesunmatched
    • Federal Laws and Regulationsunmatched
    • Firewallsunmatched
    • GIAC - Global Information Assurance Certificationunmatched
    • ISO (International Organization for Standardization)unmatched
    • Identity Data Managementunmatched
    • Incident Responseunmatched
    • Industry/Trade Analysisunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Intrusion Detection Systemsunmatched
    • Intrusion Prevention Systemsunmatched
    • Leadershipunmatched
    • Mentoringunmatched
    • Metricsunmatched
    • Operational Improvementunmatched
    • Operational Strategyunmatched
    • Operations Managementunmatched
    • Operations Processesunmatched
    • Organizational Development/Managementunmatched
    • PCI-DSSunmatched
    • Performance Managementunmatched
    • Prescription Drugsunmatched
    • Process Improvementunmatched
    • Python Programming/Scripting Languageunmatched
    • Regulationsunmatched
    • Regulatory Complianceunmatched
    • Reporting Dashboardsunmatched
    • Riskunmatched
    • Risk Managementunmatched
    • Root Cause Analysisunmatched
    • Scripting (Scripting Languages)unmatched
    • Security Architectureunmatched
    • Security Attacksunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Infrastructureunmatched
    • Security Monitoringunmatched
    • Software Developmentunmatched
    • Software Development Lifecycle (SDLC)unmatched
    • State Laws and Regulationsunmatched
    • Strategic Planningunmatched
    • System Integration (SI)unmatched
    • Talent Managementunmatched
    • Team Lead/Managerunmatched
    • Team Playerunmatched
    • Technical Leadershipunmatched
    • Technical Strategyunmatched
    • Technical Writingunmatched
    • Trend Analysisunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Vendor/Supplier Relationsunmatched
    • Windows PowerShellunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder