• West Chester, OH
    6 days ago

    Job Description

    Are you interested in working for a company that fosters growth opportunities, community involvement and a team oriented atmosphere? ClarkDietrich fosters a work-life balance and offers competitive compensation and benefits. Join a team that is STRONGER THAN STEEL, by applying to become a Security Engineer at our West Chester, OH location.

    POSITION SUMMARY

    The Security Engineer designs, implements, and operates security controls across identity, endpoints, networks, cloud services, applications, data, and AI-enabled systems. This hands-on role reduces cyber risk while enabling the responsible use of modern technology. The engineer partners with infrastructure, application, data, legal, privacy, and business teams to build resilient services, detect and respond to threats, and translate technical findings into practical action.

    KEY RESPONSIBILITIES

    Security architecture and engineering

    • Engineer secure platforms. Design and improve preventive, detective, and recovery controls across hybrid infrastructure, SaaS, cloud platforms, endpoints, networks, and business applications.
    • Strengthen identity. Implement MFA, Conditional Access, least privilege, privileged-access management, lifecycle governance, service-identity controls, and periodic access reviews.
    • Secure cloud-native workloads. Assess cloud configurations, APIs, containers, serverless services, infrastructure as code, CI/CD pipelines, secrets, and software supply-chain dependencies.
    • Manage exposure. Identify and prioritize vulnerabilities, attack paths, misconfigurations, unsupported assets, and internet-facing risk; partner with owners through verified remediation.
    • Embed security by design. Perform architecture reviews and threat modeling for new systems, integrations, vendors, and major changes; define proportionate control requirements before production.

    AI and emerging-technology security

    • Govern enterprise AI use. Maintain visibility into approved and unapproved AI services, models, agents, copilots, plugins, data connections, and business use cases; help teams choose secure, sanctioned paths.
    • Secure AI systems end to end. Review data flows, model and API access, retrieval pipelines, vector stores, prompts, tools, memory, outputs, and human-approval points across the AI lifecycle.
    • Threat-model AI-specific abuse. Evaluate prompt injection, sensitive-data disclosure, insecure output handling, model or data poisoning, excessive agency, identity abuse, supply-chain compromise, denial of service, and unsafe tool execution.
    • Implement AI guardrails. Apply strong authentication, scoped authorization, data classification and DLP, secrets management, content filtering, tool isolation, rate limits, audit logging, monitoring, and human-in-the-loop controls.
    • Validate before and after launch. Coordinate security testing, adversarial evaluation, red teaming, misuse-case testing, and ongoing monitoring for AI applications and material model, prompt, tool, or data changes.
    • Enable safe adoption. Translate AI policy into usable engineering standards and employee guidance; investigate shadow-AI and risky data-handling patterns without defaulting to indiscriminate blocking.
    • Use AI responsibly in security operations. Apply automation and AI-assisted analysis to accelerate triage, investigation, detection development, and reporting while preserving evidence, access controls, validation, and accountable human decisions.

    Detection, incident response, and resilience

    • Improve detection. Engineer useful telemetry and detections across identity, endpoint, network, cloud, email, applications, data, and AI services; tune alerting to improve signal quality.
    • Respond to incidents. Lead or support triage, containment, eradication, recovery, evidence preservation, communications, and post-incident improvement, including identity and token compromise.
    • Automate repeatable work. Build scripts, queries, playbooks, and integrations that improve investigation speed, control consistency, and operational visibility.
    • Protect recovery paths. Validate hardening, patching, backup security, recovery procedures, and disaster-recovery assumptions through exercises and technical testing.
    • Share actionable intelligence. Produce decision-ready metrics and concise reporting on exposure, incidents, control health, AI risk, remediation performance, and residual risk.

    Governance and collaboration

    • Maintain security standards, diagrams, procedures, playbooks, risk decisions, and operational records that are clear enough for another engineer to use.
    • Support audits and controls related to Japanese Sarbanes-Oxley (J-SOX), change management, privacy, third-party risk, and applicable company requirements.
    • Evaluate security and AI vendors, permission requests, data usage, architectural fit, contractual security commitments, and operational ownership.
    • Communicate risk in business terms, collaborate across technical and nontechnical teams, and provide targeted security guidance and awareness.
    • Participate in security projects, an on-call rotation, and related responsibilities as business and threat conditions evolve.

    Numbers & Facts

    LocationWest Chester, OH

    Skills

    • Access Controlunmatched
    • Analysis Skillsunmatched
    • Application Programming Interface (API)unmatched
    • Architectural Servicesunmatched
    • Artificial Intelligence (AI)unmatched
    • Authenticationunmatched
    • Automationunmatched
    • Business Caseunmatched
    • Business Solutionsunmatched
    • Change Managementunmatched
    • Cloud Applicationsunmatched
    • Cloud Computingunmatched
    • Compensation and Benefitsunmatched
    • Computer Securityunmatched
    • Content Filtering Softwareunmatched
    • Continuous Deployment/Deliveryunmatched
    • Continuous Integrationunmatched
    • Data Modelingunmatched
    • Data Recoveryunmatched
    • Denial of Service (DoS)unmatched
    • Disaster Recoveryunmatched
    • Employee Orientationunmatched
    • Establish Prioritiesunmatched
    • Incident Responseunmatched
    • Injectionsunmatched
    • Legalunmatched
    • Memory Hardwareunmatched
    • Metricsunmatched
    • Model Reviewunmatched
    • On Callunmatched
    • Operational Controlunmatched
    • Production Controlunmatched
    • Reporting Skillsunmatched
    • Requirements Managementunmatched
    • Riskunmatched
    • Sarbanes-Oxley Act (SOX)unmatched
    • Scripting (Scripting Languages)unmatched
    • Security Designunmatched
    • Security Patchesunmatched
    • Software as a Service (SaaS)unmatched
    • System Integration (SI)unmatched
    • Team Playerunmatched
    • Technical/Engineering Designunmatched
    • Test Caseunmatched
    • Testingunmatched
    • Threat Modelingunmatched
    • Traffic Shapingunmatched
    • Use Casesunmatched
    • Web Client Plug-insunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder