Remote
Cybersecurity Engineer
About this role
ABOUT THE ROLE The Cybersecurity Engineer is responsible for independently executing defined security engineering and operational work across Accela’s endpoints, identities, cloud platforms, and enterprise systems. This role applies established security standards and practices to troubleshoot issues, maintain technical controls, analyze findings, implement solutions, and identify opportunities to improve how the team operates.
The Cybersecurity Engineer partners with IT, Engineering, DevOps, IAM, Compliance, and other teams to maintain effective technical safeguards while supporting business continuity. The role is expected to independently manage routine and moderately complex work, make sound decisions within established practices, and escalate highly complex or unfamiliar matters to senior engineers or security leadership as appropriate.
The ideal candidate brings strong enterprise IT experience, hands-on exposure to security technologies, and the ability to take ownership of assigned work from identification through resolution. This individual is also expected to identify recurring issues, recommend process or automation improvements, and continue building technical depth across security tooling, cloud platforms, and enterprise systems. SPECIFIC RESPONSIBILITIES Independently manage endpoint security and compliance activities across Windows, macOS, and Linux environments, including security baselines, EDR and antivirus agents, disk encryption, MDM, and operating system hardening.
Administer and troubleshoot identity and access controls, including account provisioning and deprovisioning, SSO, MFA, conditional access, and authentication issues. Monitor and analyze alerts and logs within SIEM, EDR, and related platforms, perform initial triage, take appropriate action within established procedures, and escalate complex findings when necessary. Conduct initial technical investigations by gathering and analyzing evidence, documenting findings, and recommending appropriate next steps.
Manage assigned vulnerability-management activities, including reviewing scan results, evaluating severity and exploitability, coordinating remediation with system owners, and tracking work through completion. Perform periodic access reviews, recertification activities, privileged-access reviews, and third-party access validation to support least-privilege practices. Own defined workstreams within security technology implementations, including planning, testing, configuration, pilot deployments, documentation, and rollout support.