CFA Institute-posted 3 months ago
$135,000 - $155,000/Yr
Full-time • Mid Level
Charlottesville, VA
1,001-5,000 employees
Religious, Grantmaking, Civic, Professional, and Similar Organizations

CFA Institute is seeking a hands-on Senior Security Engineer to design, build, and harden the systems that protect our global enterprise. In this role, you'll partner with Site Reliability Engineering, IT, and business teams to embed security into our platforms and products-improving detection, prevention, and response while ensuring compliance with industry standards. This position sits within Strategic Operations (reporting to the Senior Director, Global Support Services and aligned to the CISO organization) and may be based in approved U.S. jurisdictions with flexible work arrangements.

  • Engineer & Architect Defenses: Design, implement, and maintain secure infrastructure, applications, and services; automate controls to strengthen detection, prevention, and response.
  • Advance Cyber Hygiene: Lead system hardening, identity management, and patch governance; build guardrails with SRE across CI/CD pipelines, cloud platforms, and enterprise systems; ensure adherence to internal policies and external frameworks.
  • Respond & Evolve: Support proactive monitoring, logging, and threat detection; participate in incident response, root-cause analysis, forensics, and corrective actions; evaluate and implement emerging technologies to boost threat intelligence and detection capabilities.
  • Advise & Enable: Serve as a trusted SME to cross-functional partners; guide secure design during tech adoption and transformation; contribute to training and awareness that fosters a culture of resilience.
  • Bachelor's degree in Computer Science, Information Security, or related field (or equivalent combination of education and experience).
  • 5-7+ years in security engineering, infrastructure security, or related roles.
  • Depth in at least two areas such as cloud security (AWS/Azure/GCP), application security, network security, endpoint protection, or identity and access management.
  • Hands-on experience with SIEM, IDS/IPS, vulnerability management, and security automation tools.
  • Scripting proficiency (Python, PowerShell, Bash, etc.).
  • Working knowledge of NIST, ISO 27001, CIS Benchmarks, and OWASP.
  • Professional certifications such as CISSP, OSCP, GIAC, or CCSP.
  • Comprehensive health coverage for you and your family
  • Generous leave and time off
  • Competitive retirement plans
  • Flexible work options
  • Wellness, education, and support programs
  • Eligibility for annual incentives
  • 12% retirement employer contribution
  • Competitive medical benefits
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service