Logo for Ntiva, Inc.

Security Engineer (Senior Level)

Job description

Are you looking for limitless career opportunities with a company that values growth, innovation, and teamwork? At Ntiva, we’re more than a Managed Services Provider, we’re a community dedicated to helping each other, our clients, and their businesses thrive both personally and professionally. Ntiva is a culture of people who are passionate about the work…and each other. 

Our clients view us as an essential part of their teams, relying on us for strategic guidance, fast solutions to complex challenges, and proactive support. With strategic locations across the U.S. and leadership from our founder, Steven Freidkin, we’re on the front lines of a fast-paced industry, facing cybersecurity threats and rapid technology changes together. 

If you thrive in a dynamic, supportive environment and enjoy going above and beyond, we’d love to meet you. Come explore one of our many opportunities and grow with us! 

 

How you’ll make an Impact

As a Senior Security Engineer, you serve as the senior technical advisor for high-risk security remediation, planned security infrastructure changes, and limited post containment recovery for GovCon clients. You are responsible for performing risk based technical analysis, sequencing recommendations, and clearly defining change guardrails that protect system stability, compliance posture, and service margins.

This role owns engineering judgment and technical recommendations, not just implementation. You are expected to identify unsafe or insufficiently defined work, recommend delays when requirements are not met, and ensure all changes include clear success, validation, and rollback criteria.

 

Location and Work Expectations

  • This is a hybrid -remote role with approximately 5% on-site work at client sites throughout the US if needed. The specific allocation of remote versus onsite requirements may fluctuate based on business needs.
  • This role also includes participation in a rotating on-call schedule.

 

What you will be doing

  • Provide senior level technical recommendations and execution guidance for high-risk remediation and availability impacting security changes.
  • Analyze and recommend change sequencing, blast radius reduction strategies, rollback feasibility, and validation requirements.
  • Require defined success criteria and rollback plans prior to execution; formally recommend delay or redesign when requirements are insufficient.
  • Execute approved proactive security remediation requiring advanced engineering judgment or infrastructure changes.
  • Perform approved, availability impacting security changes including firewall, firmware, and network security updates.
  • Implement configuration hardening and security control changes across servers, endpoints, and network infrastructure.
  • Serve as the senior technical lead for post containment recovery, guiding environments back to a validated steady state following MSSP/SOC containment.
  • Coordinate technical recovery activities across company stakeholders, and third-party vendors to prevent uncontrolled rebuild work.
  • Validate remediation outcomes against defined technical success criteria and confirm verified closure of findings.
  • High‑impact and high‑risk remediation requiring senior engineering analysis and judgment.
  • Planned firewall, firmware, and infrastructure security updates on an approved cadence.
  • Availability‑impacting security changes executed with defined rollback and validation steps.
  • Post‑containment recovery technical leadership for:
    • Business Email Compromise (BEC)
    • Malware mitigation/removal (non‑ransomware)
    • Foreign or impossible login events (nonforensic)
  • EDR agent deployment, health monitoring, and lifecycle management across all endpoints and servers
  • EDR Policy configuration, tuning, and optimization aligned to GovCon risk profiles
  • Implementation, and maintenance of web filtering security policies
  • Review and investigation of web filtering security events
  • Review and actioning of MDR threat intelligence and recommendations to enhance client environments
  • Participation in quarterly client security posture reviews to assess risk trends and control effectiveness
  • Review of DLP policies and tuning to reduce false positives while maintaining protection efficacy
  • Review and update of Microsoft Sentinel data connectors
  • Other duties as assigned

 
You’ll be successful in this role if you have

  • 5+ years of experience in Security Engineering, Infrastructure Engineering, or Systems Engineering, with ownership of high impact changes.
  • Demonstrated authority executing availability impacting security changes using disciplined rollback and validation practices.
  • Strong working knowledge of firewalls, network security devices, and firmware lifecycle management.
  • Experience with configuration hardening for Windows and Linux servers.
  • Solid understanding of identity, endpoint, and network security controls, including the use of compensating controls.
  • Experience leading post incident technical recovery following MSSP/SOC containment, including stabilization and determination of steady state.
  • Experience supporting GovCon or compliance driven environments (CMMC, DFARS, ITAR, NIST 800171 preferred).
  • Ability to partner effectively with internal teams, vendors, and client stakeholders.
  • Strong problem-solving skills with emphasis on stability, predictability, scope enforcement, and verified closure.
  • Ability to operate under pressure with a tactful, professional demeanor.

  
Required language skills

  • Ability to communicate professionally, in English, both written and orally
  • Ability to write business correspondence and process procedures
  • Ability to effectively present information and respond to questions from groups of managers, clients, and the general public

 

Benefits and Perks  

  • Medical, Dental and Vision coverage for employee and family  
  • 401k + company-matched contributions 4% match on 5% contribution - no vesting period! (Employee and Company contribute after 90 days)  
  • Group Term Life and Accidental Death and Dismemberment coverage (company provided)  
  • Short-Term (voluntary enrollment) and Long-Term Disability coverage (company provided)  
  • Health Savings Account (HSA) Options / PPO Options  
  • Employee Assistance Program  
  • Paid Time Off (PTO) + Volunteer Time Off (VTO) + 8 Paid Holidays + 3 Floating Holidays  
  • Education Reimbursement Program  
  • Generous Employee Referral Program - cash bonus for successful referrals!  
  • Dynamic Recognition and Rewards  
  • Clear Promotion and Advancement Tracks  
  • Work with Industry-Leading Talent  
     


The base pay range for this position is expected to be between $81,000.00 and $120,000.00 per year. The base pay offered may vary depending on multiple non-discriminatory factors including, but not limited to, market location, job-related knowledge, skills, and experience. The total compensation package for this position also includes medical benefits, 401(k) eligibility, and PTO. Additional details of participation in these benefit plans will be provided if an employee receives an offer of employment. 

FLSA Status: Salaried, Exempt 

Work Authorization Criteria 
This position requires U.S. citizenship due to federal government contract obligations and access to secured information systems. 
 
Workspace Requirements and Remote Work Policy 
Team members must establish a dedicated safe workspace that is free from distractions, hazards, and that is secure from unauthorized access. This includes following Ntiva’s IT User and Security Policies that include but are not limited to password-protecting all equipment, keeping confidential and proprietary documents secure, refraining from using public Wi-Fi, having adequate arrangements in place to avoid significant interruptions from caregiving responsibilities during work hours (except in emergency situations with manager approval). Any remote work away from a team member’s normal expected dedicated safe workspace must be requested by team member, is subject to review by management, and must adhere to Ntiva policies and procedures.   
 
Our Commitment to a Diverse Workforce 
At Ntiva, we are committed to creating and maintaining a diverse, inclusive, and welcoming work environment for all employees and job applicants. We firmly believe that a diverse workforce fosters a wider range of perspectives, experiences, and ideas that lead to increased creativity, innovation, and problem-solving capabilities. As an equal opportunity employer, we actively seek to recruit and retain a diverse workforce that reflects the communities we serve. We prohibit discrimination of any kind, including but not limited to race, color, religion, gender, gender identity or expression, sexual orientation, marital status, national origin, age, hair length, protective hairstyles, organ donor status, disability, veteran status, or any other legally protected status and comply with all applicable laws governing nondiscrimination in employment. 
 
Application Deadline: The sooner you apply, the sooner we can get to know you! Submit your resume today! Applications will be accepted until 4/22/26.  

Security Engineer Related jobs

Other jobs at Ntiva, Inc.

We help you get seen. Not ignored.

We help you get seen faster — by the right people.

🚀

Auto-Apply

We apply for you — automatically and instantly.

Save time, skip forms, and stay on top of every opportunity. Because you can't get seen if you're not in the race.

AI Match Feedback

Know your real match before you apply.

Get a detailed AI assessment of your profile against each job posting. Because getting seen starts with passing the filters.

Upgrade to Premium. Apply smarter and get noticed.

Upgrade to Premium

Join thousands of professionals who got noticed and hired faster.