Senior Security Engineer

Tait

Lititz, PA

JOB DETAILS
JOB TYPE
Full-time
SKILLS
Amusement Parks, Business Operations, Cloud Computing, Communication Skills, Computer Security, Creative Design, Data Recovery, Diversity, Email Management/Administration, Endpoint Security, Enterprise Protection, Establish Priorities, Firewalls, Help Desk, IP (Internet Protocol), Identity Data Management, Incident Management, Incident Response, Information Technology & Information Systems, Information/Data Security (InfoSec), Insurance, Internet Security, Leading Edge Technology, Machine Tool, Manufacturing Systems, Network Monitoring, Network Security, Olympics, Operational Improvement, Operations Security (OPSEC), Process Improvement, Quality Management, Ransomware, Remote Access, Risk, Risk Analysis, Risk Management, Sales Management, Security Analysis, Security Design, Security Infrastructure, Security Patches, Service Level Agreement (SLA), Single Sign-On (SSO), Software as a Service (SaaS), Standards Development, System Architecture, Team Player, Technical Strategy, Technical Support, VPN (Virtual Private Network), Validation Plan, Vendor/Supplier Evaluation
LOCATION
Lititz, PA
POSTED
2 days ago

TAIT partners with artists, brands, IP holders and place makers to bring culture-defining, never-before-seen experiences to life. With a legacy of innovation spanning over 45 years, TAIT has grown from pioneering in rock ‘n’ roll concert staging to setting the global standard for extraordinary live events and experiences through cutting-edge technology, precision engineering, and creative design. TAIT’s 20 global offices have developed iconic productions and experiences in over 30 countries, all seven continents, and even outer space for renowned performers, theme parks, exhibits, and venues across the globe, including partnerships with Taylor Swift, Cirque Du Soleil, Royal Opera House, Nike, NASA, Bloomberg, Google, Beyoncé, and The Olympics

TAIT is looking for a hands-on Senior Security Engineer (SSE) to help mature and scale our developing Information Security program within TAIT’s Global Technology Services (“GTS”) team.
This role is ideal for someone who can operate across both strategy and execution—designing practical security controls, partnering closely with IT and operational teams, improving technical defenses, and reducing risk across corporate IT, cloud and SaaS platforms, endpoints, networks, identity systems, and manufacturing-adjacent environments.
 
The successful candidate will be a senior individual contributor who can build, improve, and operationalize security controls—not simply identify gaps. This person will work closely with the VP, Cybersecurity, Security Analysts, IT Infrastructure teams, and business stakeholders to strengthen TAIT’s resilience against both known and emerging threats in a complex, global environment.

Key Responsibilities:
 
Security Engineering
  • Design, implement, and improve security controls across identity, endpoint, network, cloud, SaaS, email, vulnerability management, and logging & data platforms.
  • Translate security strategy into practical technical roadmaps, standards, and implementation.
  • Partner with IT infrastructure and operations teams to harden systems, reduce attack surface, improve security posture, and shift security design to become a core component of infrastructure design.
  • Evaluate current security tooling and recommend improvements to coverage, configuration, monitoring, and integration.
  • Support secure architecture decisions for new systems, applications, infrastructure changes, and business initiatives.
Identity, Access, and Privilege Management
  • Strengthen identity security, including MFA, conditional access, SSO, privileged access, service accounts, and account lifecycle controls.
  • Help reduce excessive capabilities and improve least-privilege access across critical systems.
  • Partner with IT to improve privileged account management, administrative access, and remote access practices.
Endpoint, Vulnerability, and Threat Reduction
  • Improve endpoint security coverage, hardening, detection, and response capabilities.
  • Own or support vulnerability management processes, including scanning, prioritization, remediation tracking, and SLA reporting.
  • Work with IT teams to reduce exposure from unpatched systems, edge devices, VPNs, remote access platforms, and high-risk vulnerabilities.
  • Support ransomware resilience efforts, including backup validation, recovery planning, segmentation, and incident readiness. 
Detection, Logging, and Incident Readiness
  • Improve logging, alerting, and visibility across critical systems and data.
  • Work with internal analysts and external providers to improve detection quality and response processes.
  • Support incident response planning, tabletop exercises, and technical response procedures.
  • Assist with post-incident reviews and drive security improvements based on lessons learned.
Governance Support and Risk Reduction
  • Support development of technical security standards, baselines, and procedures.
  • Provide technical input for security risk assessments, vendor reviews, audits, cyber insurance requests, and business security questions.
  • Help prioritize security work based on business risk, operational impact, and practical feasibility.
  • Communicate security risks and recommendations clearly to both technical and non-technical audiences. 
Required Qualifications
  • 12+ years of experience in information security, security engineering, infrastructure security, or related technical roles.
  • Strong hands-on experience implementing and operating security controls in enterprise environments.
  • Practical knowledge of identity and access management, including MFA, SSO, conditional access, privileged access, and directory services.
  • Experience with endpoint security platforms, vulnerability management, patching processes, and security hardening.
  • Working knowledge of network security concepts, including firewalls, VPNs, segmentation, secure remote access, and network monitoring.
  • Experience supporting incident response, security investigations, or security operations.
  • Ability to work effectively with infrastructure, helpdesk, operations, engineering, and business teams.
  • Strong communication skills, including the ability to explain technical risk in business terms.
  • Ability to operate independently in a small security team and prioritize work based on risk.
TAIT is an equal opportunity employer fully committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran or any other protected characteristic as outlined by international, national, state, or local laws.

About the Company

T

Tait