WuXi Chemistry Logo

WuXi Chemistry

Security Engineer

Posted 18 Days Ago
Remote
Hiring Remotely in United States
Mid level
Remote
Hiring Remotely in United States
Mid level
Implements and maintains security technologies across endpoint, network, cloud, server, and mobile environments. Monitors alerts, investigates incidents, performs vulnerability assessments, develops detection rules, hardens systems, supports identity and access controls, automates security tasks, and coordinates remediation. The role also supports audits, security reviews, documentation, reporting, and continuous improvement while collaborating with IT and security teams.
The summary above was generated by AI
Overview

The Security Engineer is responsible for implementing, maintaining and improving security systems, processes and controls in the US/EU WuXi security environment to protect the security and integrity of WuXi AppTec data. The Security Engineer works with security and Shared Service IT colleagues to configure, test, deploy and maintain security technology, investigate incidents and address vulnerabilities. The role contributes to continuous improvement of assigned systems under the direction of the Director Infrastructure and Security. The Security Engineer supports the security of a diverse IT environment that includes desktop services, on-site servers and applications, cloud hosted solutions and mobile solutions.


This is a hybrid job, must be located in Saint Paul MN 

Responsibilities
  • Implement, configure, maintain and troubleshoot security technologies across the company’s IT environments, including SIEM, EDR, firewalls, IDS/IPS, data loss prevention and mobile device management tools.
  • Monitor and triage security alerts, correlate logs across systems and use threat intelligence to identify suspicious activity. Prioritize findings by risk and escalate according to established procedures.
  • Investigate cybersecurity incidents, including phishing, malware and unauthorized access. Determine the scope and impact, preserve evidence, coordinate approved containment and recovery actions, and document cases through closure.
  • Develop, test and tune security detection rules and alerting use cases to improve threat visibility and reduce false positives.
  • Perform vulnerability assessments, validate and prioritize findings, coordinate remediation with IT teams, and verify that security fixes are effective.
  • Implement and maintain secure configuration baselines for endpoints, servers, network devices and cloud resources. Identify configuration drift and coordinate corrective actions through established change procedures.
  • Support identity and access management controls, including multi-factor authentication, single sign-on, privileged access and periodic access reviews, in collaboration with system and application owners.
  • Assess and strengthen the protection of sensitive company information by applying encryption, data masking and appropriate data handling controls in accordance with established security policies and standards.
  • Develop and maintain scripts using PowerShell, Python or similar tools to automate repetitive security tasks, enrich investigations and improve reporting and remediation workflows.
  • Participate in security reviews of proposed infrastructure, cloud configurations, new systems and significant technology changes before deployment. Identify risks, recommend appropriate controls and escalate design decisions or exceptions for review.
  • Support security audits and compliance activities by gathering technical evidence, validating assigned controls against applicable policies and standards, and tracking remediation of audit findings.
  • Maintain accurate security documentation, including system configurations, operating procedures, incident response runbooks and change records. Prepare operational metrics and reports that identify trends, control gaps and improvement opportunities.
  • Collaborate with security team members and Shared Service IT colleagues to deliver assigned security projects, share technical knowledge and resolve operational issues. Meet agreed deadlines and quality standards, communicate progress and escalate risks or blockers.
  • Monitor emerging threats and security developments, assess their relevance to the company’s environment and recommend improvements to security tools, controls and procedures.
Qualifications

Experience / Education            

  • 4 years of relevant experience in cyber security roles
  • Bachelor’s or equivalent work experience as a Security Engineer
  • Certification(s) such as CISSP, CISM, CompTIA Security+ or CompTIA CySA+ are preferred. 

Knowledge / Skills / Abilities:

  • Working knowledge of network, server and mobile security, with hands-on experience configuring, maintaining and troubleshooting security technologies such as SIEM, firewalls, access control lists (ACLs), IDS/IPS, data loss prevention and mobile device management tools.
  • Practical experience administering and configuring endpoint detection and response (EDR) tools, maintaining endpoint protection policies and performing approved host isolation and remediation actions.
  • Ability to analyze and correlate security alerts and logs, investigate cybersecurity incidents and recognize when escalation is required.
  • Understanding of vulnerability assessment, risk-based prioritization, remediation tracking and validation of security fixes.
  • Practical experience configuring and maintaining security controls in cloud environments such as Microsoft Azure or AWS, including secure cloud configurations, logging and security monitoring.
  • Working knowledge of identity and access management, including multi-factor authentication, single sign-on, privileged access, account lifecycle management and access reviews.
  • Knowledge of system hardening and secure configuration baselines for endpoints, servers and network devices, including the ability to identify configuration drift and implement and test corrective changes using established procedures.
  • Knowledge of controls used to protect sensitive company information, including encryption, data masking and secure data handling, in accordance with established security policies and standards.
  • Ability to develop and maintain scripts using PowerShell, Python or similar tools to automate security tasks, support investigations and improve reporting.
  • Familiarity with security policies, standards and frameworks such as NIST, CIS or ISO 27001, including the ability to validate technical controls and gather evidence for audits.
  • Ability to review proposed infrastructure, cloud configurations and technology changes before deployment, apply basic threat modeling techniques, identify security risks and recommend appropriate controls.
  • Ability to maintain clear technical documentation and investigation records, prepare accurate security reports and operational metrics, and communicate findings and recommendations to technical and non-technical stakeholders.
  • Ability to collaborate across teams, manage assigned tasks, meet agreed deadlines and identify issues that require guidance or a management decision.
  • Working knowledge of network access control, segmentation and microsegmentation, including experience with Cisco Identity Services Engine (ISE) to support device authentication, authorization and network access policies that restrict unauthorized access and lateral movement.
  • Practical experience configuring and maintaining DNS and web security tools such as Cisco Umbrella, including managing filtering policies, investigating blocked requests and troubleshooting access issues.


An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability


This job description does not state or imply that the above are the only duties and responsibilities assigned to this position.  Employees holding this position will be required to perform any other job-related duties as requested by Management.

Similar Jobs

2 Days Ago
Remote or Hybrid
US
172K-240K Annually
Expert/Leader
172K-240K Annually
Expert/Leader
Information Technology
Owns enterprise AI security assessment, architecture, and control programs. The role evaluates AI systems, vendors, platforms, and shadow AI; designs secure architectures, guardrails, identity models, sandboxes, gateways, and runtime controls; and develops detection and response capabilities for prompt injection, jailbreaks, data leakage, and tool misuse. The engineer partners with governance, identity, platform, engineering, and security operations teams, advises senior leaders, drives remediation, and mentors security professionals.
Top Skills: Ai GatewaysAi GuardrailsAi ObservabilityAi SandboxesAnthropicAWSAzureAzure Ai ServicesData Loss PreventionGCPIdentity And Access ManagementIso/Iec 42001LangchainMcpMicrosoft Copilot StudioMitre AtlasNist Ai RmfOpenaiOwasp Top 10 For Llm ApplicationsSemantic KernelZero Trust
3 Days Ago
Remote or Hybrid
United States
185K-270K Annually
Expert/Leader
185K-270K Annually
Expert/Leader
Big Data • Cloud • Productivity • Software • Database • Analytics • Automation
Own and scale Jellyfish’s security engineering program, including strategy, architecture, secure SDLC governance, AI security, threat modeling, vulnerability remediation, incident response, penetration testing, and bug bounty programs. The role combines hands-on software development with executive advising, cross-functional leadership, mentorship, and security risk management across SaaS infrastructure and customer-facing AI products.
Top Skills: AIAWSBug Bounty ProgramsCC++CircleCIDjangoGithub ActionsGitlab CiJavaScriptLlmsLlvmMachine LearningPenetration TestingPostgresPythonRustSdlcSemgrepSoftware Composition AnalysisTerraformThreat ModelingTypescriptVulnerability Management
3 Days Ago
Remote
USA
223K-279K Annually
Junior
223K-279K Annually
Junior
Consumer Web • Healthtech • Professional Services • Social Impact • Software
Build and lead product and application security efforts, partnering with Product and Engineering on secure design, development, code reviews, vulnerability discovery, and security guardrails. Develop AI-native security tooling and support incident response, vulnerability management, penetration testing, and security operations. Help establish secure development practices and scalable security systems across Headway’s platform.
Top Skills: AWSDatadogEcsFargateFastapiGitKafkaLaceworkPagerdutyPostgresPython 3ReactRedisS3SemgrepSnykSparkSqlalchemyTypescript

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account