Lead Security Engineer

FictivSchaumburg, IL
Onsite

About The Position

MISUMI Americas is seeking a hands-on Lead Security Engineer to manage the comprehensive security engineering efforts across the organization. This role involves securing infrastructure, conducting access audits, implementing and enforcing controls, reviewing systems and code, and investigating security incidents. The Lead Security Engineer will play a key role in shaping company-wide security policies and priorities, with a significant focus on both physical networking and cloud infrastructure. Responsibilities include managing Identity and Access Management (IAM), security groups, permission policies, and application permissions to ensure least privilege. The position also involves participation in a cross-departmental threat detection and incident response group, acting as an escalation point for complex security issues. The role will contribute to global security project prioritization, conduct audits and reviews, and help define security policies and standards. A growing aspect of the role includes managing AI tools, assessing the safety of new AI capabilities, and vetting integrations. Additionally, the Lead Security Engineer will collaborate with Information Security to build and maintain evidence for compliance with J-SOX, NIST 800-171, CMMC 2.0, and SOC 2 across the global business.

Requirements

  • Senior-level, hands-on expertise across identity and access management, infrastructure/cloud security, governance and compliance, incident response, application/integration security, and AI/LLM security
  • Hands-on incident investigation experience and the judgment to serve as an escalation point on user-facing threats like phishing and spam
  • Strong experience securing infrastructure across networking and cloud — firewalls and segmentation on the network side; IAM, security groups, permission policies, and application permissions on the cloud side
  • Cloud security experience (AWS, Azure, or similar) and comfort designing roles/RBAC in platforms like Microsoft Entra ID, Okta, or AWS IAM
  • Familiarity with security monitoring and detection tools sufficient to support investigations
  • Real experience running user access audits, access reviews, and compliance checks
  • Experience supporting audit/compliance programs such as SOC 2, NIST 800-53/800-171, CMMC 2.0, and J-SOX, including evidence gathering and control validation
  • Solid application security skills: automation tooling, secure code review, and secure integration practices
  • Confidence to make independent security decisions and sort competing priorities
  • Working understanding of AI/LLM security — administering AI tools, weighing new capabilities for risk, and evaluating integrations like MCP servers
  • A habit of converting manual security work into repeatable process and automation
  • Clear communication and the ability to work across a distributed, multi-site, global organization
  • Candidates must be a US citizen or green card holder.

Responsibilities

  • Act as the hands-on security lead across IT and engineering, and the main point of execution for security work
  • Help decide which security projects and initiatives to tackle first across MISUMI Americas' global operations
  • Help write, shape, and enforce security policies, standards, and governance alongside security leadership
  • Serve on our cross-departmental threat detection and incident response team, investigating incidents hands-on and helping coordinate the response
  • Act as the escalation point for IT, providing direction, mitigations, or solutions when an issue goes beyond routine
  • Dig into root cause on tougher problems and put fixes in place so they don't recur
  • Keep infrastructure secure across physical networking and cloud — firewalls, segmentation, wireless, and cloud account/workload configuration
  • Design and manage IAM at the infrastructure level: roles, security groups, and permission policies scoped to least privilege
  • Review and tighten application permissions and access policies as the environment grows; catch misconfigurations and permission drift early
  • Run user access audits and regular access reviews across identity and application layers
  • Determine what user groups and roles are needed to manage system access
  • Handle access changes as people join, move, and leave, keeping permissions aligned with policy
  • Manage enterprise AI tools such as Claude, keeping configurations, roles, and access current
  • Evaluate new AI capabilities (e.g., Claude for Chrome) and decide whether to enable them and what guardrails they need
  • Vet new AI integrations before launch, including automated scans and manual review of any new local MCP server
  • Turn AI security decisions into reusable policies and practices
  • Review systems for security issues, including running automated scans
  • Vet third-party and open-source components before adoption
  • Partner with engineering to build security into how we ship software and infrastructure
  • Gather and maintain audit evidence for J-SOX, NIST 800-171, CMMC 2.0, and SOC 2
  • Run recurring compliance checks and validate controls across our global footprint
  • Map controls and evidence to audit requirements and support audits start to finish, with a focus on evidence and remediation
  • Turn manual security work into documented practices, runbooks, and repeatable processes
  • Automate access reviews, monitoring, alerting, and reporting
  • Keep security documentation and the internal knowledge base current
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service