Senior Information Security Engineer – Windows Infrastructure
Technology, Data & Digital · IT Infrastructure & Security · Cybersecurity · Systems Engineering
In short
Saab seeks an experienced Senior Information Security Engineer specializing in Windows infrastructure for air traffic control systems in East Syracuse, NY. This on-site role focuses on implementing and managing secure Windows environments, ensuring compliance with safety and security regulations. The position requires expertise in Active Directory, Group Policy, network design, and hardware/software integration, with a focus on risk and vulnerability management.
Responsibilities
- Develop, document, and maintain security architectures, network designs, and cloud infrastructures.
- Evaluate systems to identify weaknesses, perform security reviews, and execute ethical hacks or penetration tests.
- Lead IT analysts, security engineers, and deployment teams.
- Design, implement, and manage Group Policy Objects (GPOs) for security configurations.
- Configure, administer, and harden Windows Server and workstation systems.
- Implement and maintain Active Directory security configurations.
- Design and implement role-based access control (RBAC) and least-privilege access models.
- Deploy, configure, and manage endpoint protection and antivirus solutions.
- Apply system hardening practices aligned with industry security frameworks.
- Perform security assessments of Windows environments and implement remediation actions.
- Assist in creating secure configurations, patch processes, and compliance with security policies.
- Document system configurations, security controls, and deployment procedures.
- Provide technical guidance and knowledge transfer to customer stakeholders.
Requirements
- Bachelor’s degree in Systems Engineering, Computer Science, Information Technology, Information Security, or related field (or equivalent experience).
- 6+ years of experience administering and securing Microsoft Windows environments.
- Strong hands-on experience with PowerShell scripting and automation.
- Proven experience creating and managing Windows domains, including development of Group Policy Objects and Active Directory structures.
- Experience integrating third-party software into Windows environments.
- Hands-on experience with Windows Deployment Services.
- Solid understanding of Windows security architecture and system hardening techniques.
- Must be a U.S. citizen.
Desired Qualifications
- Experience with PXE boot and BIOS configuration.
- Experience implementing role-based access control and identity management practices.
- Experience performing security assessments and remediation.
- Familiarity with security monitoring tools and SIEM platforms.
- Knowledge of security frameworks such as NIST, CIS Benchmarks, or ISO 27001.
- Relevant certifications such as CompTIA Security+, CISSP, Microsoft security or identity certifications, or GIAC certifications.
- Experience with Microsoft Hyper-V Virtualization.
- Experience with Splunk.
- Experience with PDQ.
- Experience with RSA Authentication Manager.
Benefits
- Medical, vision, and dental insurance for employees and dependents
- Generous paid time off, including 8 designated holidays
- 401(k) with employer contributions
- Tuition assistance and student loan assistance
- Wellness and employee assistance resources
- Employee stock purchase opportunities
- Short-term and long-term disability coverage
#information security#windows infrastructure#air traffic control#cybersecurity