Comfrt Logo

Comfrt

Senior Cybersecurity Engineer

Posted Yesterday
Remote
Hiring Remotely in United States
150K-170K Annually
Senior level
Remote
Hiring Remotely in United States
150K-170K Annually
Senior level
Responsible for designing and maintaining security systems, managing threat detection, mentoring junior members, and ensuring compliance with security regulations.
The summary above was generated by AI

About Us:
Comfrt is one of the fastest-growing DTC apparel brands in the world, with a social presence that even industry giants envy. Founded just three years ago, we’ve quickly built a reputation for stylish, elevated, and functional clothing designed to deliver unmatched comfort. From subtly weighted hoodies and sweatpants to cozy blankets and even pet hoodies, every Comfrt piece is created to inspire relaxation, support well-being, and promote a positive mindset.
About the Job: 
We are seeking a highly skilled and experienced Senior Cybersecurity Engineer to join our growing Technology team. The ideal candidate will be responsible for designing, implementing, and maintaining robust security systems and protocols to protect our organization's networks, systems, and data. This role requires deep technical expertise, a proactive approach to threat detection and mitigation, and the ability to mentor junior team members.

Key Responsibilities:
Security Architecture and Design
  • Design, implement, and manage enterprise-wide security architecture, ensuring alignment with business objectives and regulatory requirements (e.g., NIST, ISO 27001, PCI-DSS).
  • Evaluate, recommend, and deploy new security technologies and tools, including SIEM, EDR, SASE, intrusion detection/prevention systems (IDS/IPS), and vulnerability scanners.
  • Implement and manage security solutions tailored for a remote work environment, including secure remote access, endpoint security, and data loss prevention (DLP) across distributed endpoints.
  • Work collaboratively with the internal Technology team to review internal architecture and provide recommendations for enhancements, improvements, or threat remediation.
Threat and Vulnerability Management
  • Lead efforts in vulnerability assessment, penetration testing, and risk analysis.
  • Develop and execute remediation plans for identified vulnerabilities.
  • Monitor access and conduct regular security audits and reviews.
  • Spearhead communications and coordination with external resources for security evaluations, reviews, and program development.
Incident Response and Operations
  • Act as a lead responder for security incidents, including investigation, containment, eradication, and recovery.
  • Develop, maintain, and test the Incident Response plan.
  • Manage and operate security tools and platforms, ensuring optimal performance and tuning to minimize false positives.
Compliance and Policy
  • Develop, document, and enforce security policies, standards, and procedures across the organization.
  • Ensure continuous compliance with all relevant security regulations and internal policies.
  • Collaborate with internal stakeholders and external audit teams on security-related initiatives.
Mentorship and Leadership
  • Provide technical guidance, mentorship, and training to junior cybersecurity analysts and engineers.
  • Lead cross-functional projects related to security improvements, policy, and infrastructure.
  • Communicate complex security concepts and risks effectively to both technical and non-technical stakeholders.
Qualifications:
Required:
  • Bachelor's degree in Computer Science, Information Security, or a related field (Master's degree preferred).
  • Minimum of 5-7 years of professional experience in cybersecurity engineering or a similar role.
  • Experience with network security and networking technologies (TCP/IP, SASE, ZTNA) and with system, security, and network monitoring tools.
  • Proven experience with cloud security platforms (e.g., AWS, Azure, GCP) and best practices.
  • Strong practical experience with scripting languages (e.g., Python, Bash) for automation of security tasks.
Preferred:
  • Experience architecting and implementing security programs based on ISO 27001/NIST 800-171 frameworks.
  • Experience analyzing and defining threat/vulnerability risk, impact, and likelihood of exploitation.
  • Hands on experience with deployment and configuration of modern security stacks including SIEM, EDR/XDR, and IDS/IPS solutions.
  • Comfortable with employing IaC tools to implement required security infrastructure in a cloud based environment.
  • Previous experience in leading threat hunting initiatives, incident response, and security related items.
Preferred Certifications (one or more highly desirable):
  • Certified Information Systems Security Professional (CISSP)
  • Comptia Security+
  • Certified Cloud Security Professional (CCSP)
  • GIAC certifications (e.g., GSEC, GCIA, GCIH)

Why Join Comfrt?

  • Be part of a purpose-driven company that’s shaping the future of comfort and mental wellness.
  • Work in a supportive, creative environment where your ideas and growth are valued.
  • Enjoy Comfrt benefits such as generous paid time off, company-covered health insurance, 5% 401k match, and discounts on all Comfrt products! 
  • Join a passionate team making an impact on exciting projects, all while enjoying the flexibility and collaborative support of a fully remote environment.
 

Comfrt is an equal opportunity employer. We are committed to building a team that represents a variety of backgrounds, perspectives, and skills.

This role is open to remote candidates in multiple U.S. states. The salary range for this position is $150,000–$170,000 annually. Actual compensation will be determined based on factors such as years of experience, skills, certifications, and geographic location. 
 

Top Skills

AWS
Azure
Bash
Edr
GCP
Intrusion Detection
Iso 27001
Nist
Pci-Dss
Python
Sase
SIEM
Tcp/Ip
Vulnerability Scanners

Similar Jobs

2 Hours Ago
Remote or Hybrid
United States
70K-260K Annually
Senior level
70K-260K Annually
Senior level
3D Printing • AdTech • 3PL: Third Party Logistics
The Senior Cybersecurity Engineer will design and maintain secure platforms, integrate systems, collaborate on security operations, and manage cloud environments to enhance the organization’s cybersecurity posture.
Top Skills: APIsAWSAzureC++Ci/CdDevOpsDockerGCPKubernetesLinuxRustWebhooks
Yesterday
Remote
Georgia, USA
120K-180K Annually
Mid level
120K-180K Annually
Mid level
Retail
As a Senior Cybersecurity Engineer, you will secure sensitive data and assets, develop incident response strategies, and implement cybersecurity measures.
Top Skills: Automation WorkflowsCybersecurityData AnalysisIncident ResponseThreat Hunting
Yesterday
Remote
USA
55K-82K Annually
Senior level
55K-82K Annually
Senior level
Healthtech
Design and enforce AI-focused cybersecurity governance, manage risk, integrate processes, provide training, and work collaboratively across departments.
Top Skills: AICybersecurityDevsecopsMicrosoft 365Nist CsfPci DssSIEM

What you need to know about the NYC Tech Scene

As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.

Key Facts About NYC Tech

  • Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
  • Key Industries: Artificial intelligence, Fintech
  • Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
  • Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account