ACLU - National Office-posted about 2 months ago
Full-time • Mid Level
Hybrid • New York, NY
251-500 employees

The ACLU seeks applicants for the full-time position of Cybersecurity Engineer in the Information Security Department of the ACLU’s National office in New York, NY. This is a hybrid role that has in-office requirements of two (2) days per week or eight (8) days per month. Director of Security Architecture & Engineering, this hands-on technical role is responsible for securing the ACLU’s infrastructure, endpoints, and cloud services by reducing vulnerability risk, improving control enforcement, and operationalizing core data protection strategies. This role is ideal for a security engineer who thrives at the intersection of infrastructure, identity, and data — someone ready to roll up their sleeves to turn policy into technical enforcement. The engineer will drive progress across cloud posture, endpoint compliance, DLP, and insider risk detection, ensuring controls are not just defined but deployed, measurable, and resilient in production environments. This position is part of a collective bargaining unit. It is represented by ACLU Staff United (ASU).

  • Implement and manage cloud security posture tooling and alerts, ensuring visibility into configuration drift, overexposure, and high-risk services.
  • Lead the vulnerability management lifecycle — including scanning, prioritization, stakeholder coordination, remediation tracking, and reporting.
  • Deploy and enforce secure configuration baselines across managed devices (Windows, macOS, mobile), including disk encryption, patch compliance, and privileged access.
  • Identify exposed services and reduce attack surface across infrastructure and endpoint environments using automation and policy-based enforcement.
  • Develop and maintain secure configuration management practices across IAM, network segmentation, endpoint posture, and SaaS platforms.
  • Engineer and support enterprise Data Loss Prevention (DLP) tooling, including policy definition, control enforcement, and incident response workflows across email, endpoint, and cloud.
  • Implement and tune insider threat detection signals using endpoint telemetry, behavior analytics, and identity context, in coordination with Security Operations.
  • Serve as a technical escalation point for endpoint, cloud, and identity security issues impacting control integrity or coverage.
  • Demonstrated experience in security engineering, cloud/infrastructure security, or endpoint protection.
  • Strong working knowledge of DLP, data classification, and endpoint telemetry tooling (e.g., Microsoft Purview, Intune, Defender for Endpoint, Jamf, etc.).
  • Hands-on experience with vulnerability management platforms and remediation coordination.
  • Experience designing and deploying secure configurations across Windows, macOS, and mobile environments.
  • Proficiency with scripting or infrastructure-as-code (e.g., PowerShell, Python, Terraform).
  • Excellent communication and cross-functional collaboration skills, particularly across IT, Legal, and Privacy stakeholders.
  • Commitment to securing digital systems in a mission-driven and rights-centered environment.
  • Familiarity with insider risk detection tooling or behavioral analytics platforms is a strong plus.
  • Time away to focus on the things that matter with a generous paid time-off policy
  • Focus on your well-being with comprehensive healthcare benefits (including medical, dental and vision coverage, parental leave, gender affirming care & fertility treatment)
  • Plan for your retirement with 401k plan and employer match
  • We support employee growth and development through annual professional development funds, internal professional development programs and workshops
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service