Browse
···
Log in / Register

Security Engineering Manager

$111,000-165,000/year

Thorlabs

Newton, NJ, USA

Favourites
Share

Description

Thorlabs is pleased to play a role in advancing science through the components, instruments, and systems we design and manufacture. We believe that science and innovation have great potential to improve the world around us and are committed to advancing photonics (i.e., light-based) technologies that positively impact our customers, employees, and communities. Via educational outreach and more sustainable business practices, we continuously invest in a brighter future. We recognize that each of our employees is a unique individual with the ability to contribute to our success and seek to find great people who will thrive in our fun, fast-paced culture. The Security Engineering Manager will lead the evolution of our cybersecurity engineering, architecture, and operations. This role bridges strategic and tactical domains – collaborate cross-functionally with IT and business stakeholders, oversee enterprise security architecture (both Cloud and on-prem), manage security engineering team, and optimize security operations (including an outsourced SOC). This is a strategic role designed for a seasoned security expert with a proven ability to manage teams, architect complex solutions, and influence across departments. The successful candidate must be strategic while also comfortable at tactical level, with both leadership and hands-on responsibilities. Although the location of the position is in Newton, NJ, from time to time it may be required to undertake duties at other Thorlabs locations. Essential Job Functions include the following, but are not limited to: Leadership & Strategy Serve as a strategic advisor to the IT leadership team on emerging threats, investment priorities, and security posture. Set and track KPIs, KRIs, OKRs, and metrics to ensure effectiveness and continuous improvement. Collaborate closely with Infrastructure and Operations, Enterprise Applications, Application Development, and Enterprise Data teams to embed security into their processes. Present to executive stakeholders and help translate technical risk into business impact. Serve as the security SME in enterprise projects and technology investments, including tool evaluations, acquisitions, and divestitures, including strategic planning, budgeting, and cross-functional alignment. Security Architecture & Engineering Define and drive the enterprise security architecture roadmap across infrastructure, cloud, applications, and Operational Technology (OT). Lead the design and implementation of security controls, frameworks, and reference architectures. Oversee architecture reviews, and secure-by-design practices across the organization. Ensure baseline security measures are implemented and monitored (e.g., hardening, patching, zero trust, segmentation). Manage integration and ongoing optimization of security tools (e.g., CSPM, CNAPP, IAM, PKI, DLP). Identity & Access Management (IAM) Lead the Security Engineering function responsible for Identity and Access Management Architect and enhance enterprise IAM strategy including RBAC, PAM, MFA, SoD, and JML lifecycle. Drive IAM policy creation and enforcement across service, privileged, and user accounts. Guide the definition of IAM operating models, access certification processes, and automation of identity governance. Security Operations & Incident Response Oversee day-to-day security operations including SOC management (outsourced), SIEM/SOAR (Microsoft Sentinel), EDR/XDR, and threat detection and response. Collaborate with the SOC to improve detection rules, reduce false positives, and ensure robust incident detection and response capabilities. Plan and oversee penetration testing, forensic analysis, and incident investigations. Governance, Risk, & Compliance Align security architecture and operations with regulatory frameworks such as NIST, ISO 27001, CMMC, PCI-DSS, and GDPR. Partner with the GRC and Audit teams to ensure technical controls support broader compliance and risk. Coordinate with the GRC team to support policy development, risk assessments, and business continuity/disaster recovery planning. Requirements Physical Activities: The employee is occasionally required to stoop, kneel, crouch, climb or crawl. The employee must frequently lift and move up to 10 pounds and occasionally lift and move up to 25 pounds. Qualifications Experience: 10+ years of experience in cybersecurity with increasing leadership responsibility, with at least 4+ years direct people management in technical security teams. Extensive experience in security architecture, cloud platforms (Microsoft Azure, M365), and enterprise security tools. Strong command of at least 3 of the following core security domains: IAM, SIEM, vulnerability management, network security, DevSecOps, and incident response. Experience leading or managing an outsourced SOC or MDR provider. Proven leadership in security engineering and operations in a hybrid (cloud/on-prem) environment. Education: Bachelor’s degree in computer science, Engineering, related field, or equivalent work experience. Specialized Knowledge and Skills: Advanced degree (e.g., MS in Cybersecurity) is a plus. Certifications such as CISSP, CISM, Microsoft Certified: Cybersecurity Architect Expert, Azure Solutions Architect, or CEH. Experience with Microsoft Defender suite, Intune, Microsoft Sentinel, various IAM and Vulnerability Management Tools. Familiarity with security control frameworks (e.g., NIST CSF, MITRE ATT&CK, CIS). Excellent communication and interpersonal skills, with proven ability to lead across functions and influence executive stakeholders. Experience in Zero Trust architecture and OT security a big plus. Salary range for this position is $111,000 - $165,000 depending on experience Thorlabs values its diverse environment and is proud to be an Equal Employment Opportunity/Affirmative Action Employer. All qualified individuals will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. Job descriptions are not intended as and do not create employment contracts. The organization maintains its status as an at-will employer. Employees can be terminated for any reason not prohibited by law.

Source:  workable View original post

Location
Newton, NJ, USA
Show map

workable

You may also like

Workable
GNOSC Watch Officer (Network Engineer)
Expertise and Functions Perform all facets of a continuous 24/7 Global Network Operations and Security Center monitoring Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity Support and service maintenance activities to include Change Management coordination during the assigned shift day/time Engage in all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer Utilize communication skills, verbal and written, at both technical and senior/Executive management levels Understand Command level Management Speak clearly to diverse cultural audiences, VIPs, and dignitaries Perform as a section trainer and create lesson plans Other duties as assigned Requirements Education/Training:  Bachelor’s Degree in management or other relevant discipline preferred Must have, or obtain within 6 months of hire, a current DoD 8570.01 IAT Level II Certification such as CompTIA Security+ CE Certification or higher    Experience: 2+ years of professional experience in the required task area    Preferred Experience:   Experience in metrics-based IT Operations and Maintenance (O&M) teams Experience with Remedy and SNMP monitoring tools (e.g., Solarwinds, Microfocus NNMi/HPOV, and Systems Center Operations Manager) Experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation Experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions Experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices Experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Experience with Network Operations in a network operations center or other 24x7x365 IT Operations environment Knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices Knowledge of Cybersecurity principles and how to execute system/network security analysis Knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements Quality Assurance/Quality Control Inspection process knowledge Security: Must be a US citizen Candidate must be in possession of a minimum DoD issued Secret Clearance Physical Requirements: Able to occasionally reach with hands and arms Prolonged periods of computer screen use, while sitting or standing at a desk Adhere to safety protocols when in work areas requiring use of PPE (e.g. eyewear, gloves, masks, hearing protection, steel toed shoes, etc.) Able to safely lift and carry up to 20 pounds at a time Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Short Term & Long Term Disability Training & Development Wellness Resources Salary: $75,000 - 97,000 Salary rates for this position are competitive and commensurate with experience and industry standards. We offer a comprehensive benefits package that may include health insurance, paid time off, and retirement savings options.
Colorado Springs, CO, USA
$75,000-97,000/year
Workable
Development Lead
This position is posted by Jobgether on behalf of Trilogy Federal. We are currently looking for a Development Lead in Georgia (USA). The Development Lead will guide a team of developers in designing, building, and deploying cloud-based solutions that enhance operational efficiency and meet business needs. This role requires a collaborative, technically skilled leader who can manage multiple initiatives, ensure best practices, and deliver high-quality solutions in a fast-paced, client-focused environment. The ideal candidate brings deep expertise in Salesforce and Microsoft Dynamics 365 development, experience with cloud integration, and the ability to mentor team members. The position involves close collaboration with cross-functional teams, aligning with Agile workflows and federal IT security standards, and occasionally requires on-site work in Washington, D.C. Accountabilities ·         Lead a development team in creating and customizing cloud-based applications on Salesforce and Microsoft Dynamics 365. ·         Establish and enforce best practices, conduct code reviews, and ensure high standards of software quality across projects. ·         Optimize Salesforce components (Apex, Visualforce, Lightning) and Dynamics 365 customizations (Power Apps, Power Automate, JavaScript) to meet operational requirements. ·         Ensure integration of cloud solutions with legacy systems and other platforms (AWS, Azure) using APIs, web services, and CI/CD pipelines. ·         Collaborate with Integration Leads, Cloud Engineers, and Scrum Masters to deliver features within Agile sprints aligned with project objectives. ·         Maintain compliance with federal security and privacy standards (FISMA, NIST 800-53, HIPAA) through secure coding and access controls. ·         Monitor development progress using approved tools (Jira, GitHub, ServiceNow) and contribute to biweekly status reports. ·         Facilitate Agile ceremonies, ensuring team alignment with the VIP Lean-Agile framework and sprint goals. ·         Troubleshoot and resolve application issues, ensuring high availability and performance for end-users. ·         Leverage emerging cloud technologies, such as serverless computing and AI integrations, to enhance system efficiency. ·         Engage with stakeholders, including CORs, to gather requirements, validate solutions, and deliver user-centric outcomes. ·         Mentor team members on Salesforce and Dynamics 365 best practices, supporting staff development and technical growth. ·         Optimize applications for scalability, cost-efficiency, and long-term maintainability. Requirements ·         Bachelor’s degree in Computer Science, IT, Software Engineering, or related field (Master’s preferred). ·         Active certifications in Salesforce Certified Platform Developer and Microsoft Dynamics 365 Fundamentals; additional certifications (AWS Developer, Azure Developer Associate) preferred. ·         8+ years of experience in cloud application development, focusing on Salesforce, Microsoft Dynamics 365, or similar platforms in federal or enterprise environments. ·         Proven expertise in Salesforce development (Apex, Lightning), Dynamics 365 customization, and cloud integration with hands-on CI/CD experience (Jenkins, GitHub Actions). ·         Strong programming, analytical, and problem-solving skills in fast-paced, dynamic environments. ·         Familiarity with federal IT security standards (FISMA, NIST, HIPAA) and Agile/VIP Lean-Agile methodologies highly desirable. ·         Proficiency in MS Office Applications and approved project management/development tools (Jira, GitHub, ServiceNow). ·         Ability to adapt to evolving technical requirements and occasional travel to Washington, D.C. ·         Ability to obtain Public Trust Clearance. Preferred Qualifications: ·         Prior experience with VA, VBA, or VHA systems. Benefits ·         Health, dental, and vision insurance ·         Optional FSA ·         Paid parental leave ·         Safe Harbor 401(k) with full employer contributions from day 1 ·         Paid time off and 11 paid holidays ·         Group term life/AD&D coverage with optional supplemental plans ·         Pet insurance ·         Monthly phone and internet stipend ·         Tuition and professional training reimbursement ·         $80,000 – $91,998 annual salary range ·         Flexible remote work options available in eligible states (CO, CT, D.C., FL, GA, IL, MD, NY, SC, TX, VA) Jobgether is a Talent Matching Platform that partners with companies worldwide to efficiently connect top talent with the right opportunities through AI-driven job matching. When you apply, your profile goes through our AI-powered screening process designed to identify top talent efficiently and fairly. 🔍 Our AI evaluates your CV and LinkedIn profile thoroughly, analyzing your skills, experience, and achievements. 📊 It compares your profile to the job’s core requirements and past success factors to determine your match score. 🎯 Based on this analysis, we automatically shortlist the 3 candidates with the highest match to the role. 🧠 When necessary, our human team may perform an additional manual review to ensure no strong profile is missed. The process is transparent, skills-based, and free of bias — focusing solely on your fit for the role. Once the shortlist is completed, we share it directly with the company that owns the job opening. The final decision and next steps, such as interviews or additional assessments, are then made by their internal hiring team. Thank you for your interest!   #LI-CL1
Georgia
$80,000/year
Workable
Senior Cloud Developer
This position is posted by Jobgether on behalf of Trilogy Federal. We are currently looking for a Senior Cloud Developer in Georgia (USA). This role offers a compelling opportunity to lead the design, development, and deployment of cloud applications that support critical government IT operations. The Senior Cloud Developer will work in a fast-paced, collaborative environment, driving technical excellence across Salesforce and Microsoft Dynamics 365 platforms. This position requires hands-on development expertise, strong programming skills, and the ability to integrate cloud solutions with legacy systems. The role emphasizes delivering secure, scalable, and efficient solutions while mentoring team members and collaborating with stakeholders to achieve impactful outcomes. Occasional on-site visits may be required to support project needs. Accountabilities ·         Lead the development and customization of cloud-based applications on Salesforce and Microsoft Dynamics 365, supporting operational needs and corporate IT systems. ·         Oversee optimization of Apex, Visualforce, and Lightning components in Salesforce, and configure Dynamics 365 using Power Apps, Power Automate, and JavaScript. ·         Integrate cloud applications with legacy systems and other platforms (e.g., AWS, Azure) using APIs, web services, and CI/CD pipelines. ·         Collaborate with Integration Leads, Cloud Engineers, and Scrum Masters to deliver features and enhancements within Agile sprints, ensuring alignment with project goals. ·         Ensure cloud applications comply with federal security and privacy standards (FISMA, NIST 800-53, HIPAA) through secure coding practices and access controls. ·         Utilize approved tools (Jira, GitHub, ServiceNow) to manage code repositories, track tasks, and maintain status reports. ·         Oversee Agile ceremonies (sprint planning, stand-ups, retrospectives) to align development with the VIP Lean-Agile framework. ·         Troubleshoot and resolve cloud application issues to maintain high availability and performance. ·         Leverage emerging cloud technologies, including serverless computing and AI integrations, to enhance modernization efforts. ·         Mentor team members on Salesforce and Dynamics 365 development best practices and technical excellence. ·         Optimize cloud solutions for scalability, cost-efficiency, and alignment with operational and customer service goals. Requirements ·         Bachelor’s degree in Computer Science, Information Technology, Software Engineering, or a related field (Master’s preferred). ·         Salesforce Certified Platform Developer and Microsoft Dynamics 365 Fundamentals certifications required; additional certifications (AWS Certified Developer, Azure Developer Associate) preferred. ·         8+ years of experience in cloud application development, with expertise in Salesforce, Microsoft Dynamics 365, or similar platforms, preferably in federal or VA environments. ·         Hands-on experience with Salesforce development (Apex, Lightning), Dynamics 365 customization, cloud integration, and CI/CD tools (e.g., Jenkins, GitHub Actions). ·         Strong programming, analytical, and problem-solving skills, with the ability to deliver high-quality code in dynamic environments. ·         Familiarity with federal security standards (FISMA, NIST, HIPAA) and the VIP Lean-Agile framework is highly desirable. ·         Proficiency with MS Office and VA-approved tools (Jira, GitHub, ServiceNow). ·         Ability to adapt to evolving technical requirements and occasional travel to VA sites in Washington, D.C. ·         Ability to obtain a Public Trust Clearance. Preferred Qualifications: ·         Experience with VA, VBA, or VHA environments. ·         Familiarity with mainframe, legacy OS, Windows Server, Linux, middleware, application servers, messaging systems, and cloud monitoring tools. Benefits ·         Competitive annual salary: $80,000 - $90,000 (based on experience and qualifications). ·         Health, dental, and vision insurance coverage. ·         Optional FSA and paid parental leave. ·         Safe Harbor 401(k) with employer contributions fully vested from day 1. ·         Paid time off and 11 paid holidays. ·         No-cost group term life/AD&D plan, with optional supplemental coverage. ·         Pet insurance and monthly phone/internet stipend. ·         Tuition and professional training reimbursement. ·         Flexible remote work options in eligible states, supporting work-life balance. Jobgether is a Talent Matching Platform that partners with companies worldwide to efficiently connect top talent with the right opportunities through AI-driven job matching. When you apply, your profile goes through our AI-powered screening process designed to identify top talent efficiently and fairly. 🔍 Our AI evaluates your CV and LinkedIn profile thoroughly, analyzing your skills, experience, and achievements. 📊 It compares your profile to the job’s core requirements and past success factors to determine your match score. 🎯 Based on this analysis, we automatically shortlist the 3 candidates with the highest match to the role. 🧠 When necessary, our human team may perform an additional manual review to ensure no strong profile is missed. The process is transparent, skills-based, and free of bias — focusing solely on your fit for the role. Once the shortlist is completed, we share it directly with the company that owns the job opening. The final decision and next steps, such as interviews or additional assessments, are then made by their internal hiring team. Thank you for your interest!   #LI-CL1
Georgia
$80,000/year
Cookie
Cookie Settings
Our Apps
Download
Download on the
APP Store
Download
Get it on
Google Play
© 2025 Servanan International Pte. Ltd.