Browse
···
Log in / Register

Security Engineering Manager

$111,000-165,000/year

Thorlabs

Newton, NJ, USA

Favourites
Share

Description

Thorlabs is pleased to play a role in advancing science through the components, instruments, and systems we design and manufacture. We believe that science and innovation have great potential to improve the world around us and are committed to advancing photonics (i.e., light-based) technologies that positively impact our customers, employees, and communities. Via educational outreach and more sustainable business practices, we continuously invest in a brighter future. We recognize that each of our employees is a unique individual with the ability to contribute to our success and seek to find great people who will thrive in our fun, fast-paced culture. The Security Engineering Manager will lead the evolution of our cybersecurity engineering, architecture, and operations. This role bridges strategic and tactical domains – collaborate cross-functionally with IT and business stakeholders, oversee enterprise security architecture (both Cloud and on-prem), manage security engineering team, and optimize security operations (including an outsourced SOC). This is a strategic role designed for a seasoned security expert with a proven ability to manage teams, architect complex solutions, and influence across departments. The successful candidate must be strategic while also comfortable at tactical level, with both leadership and hands-on responsibilities. Although the location of the position is in Newton, NJ, from time to time it may be required to undertake duties at other Thorlabs locations. Essential Job Functions include the following, but are not limited to: Leadership & Strategy Serve as a strategic advisor to the IT leadership team on emerging threats, investment priorities, and security posture. Set and track KPIs, KRIs, OKRs, and metrics to ensure effectiveness and continuous improvement. Collaborate closely with Infrastructure and Operations, Enterprise Applications, Application Development, and Enterprise Data teams to embed security into their processes. Present to executive stakeholders and help translate technical risk into business impact. Serve as the security SME in enterprise projects and technology investments, including tool evaluations, acquisitions, and divestitures, including strategic planning, budgeting, and cross-functional alignment. Security Architecture & Engineering Define and drive the enterprise security architecture roadmap across infrastructure, cloud, applications, and Operational Technology (OT). Lead the design and implementation of security controls, frameworks, and reference architectures. Oversee architecture reviews, and secure-by-design practices across the organization. Ensure baseline security measures are implemented and monitored (e.g., hardening, patching, zero trust, segmentation). Manage integration and ongoing optimization of security tools (e.g., CSPM, CNAPP, IAM, PKI, DLP). Identity & Access Management (IAM) Lead the Security Engineering function responsible for Identity and Access Management Architect and enhance enterprise IAM strategy including RBAC, PAM, MFA, SoD, and JML lifecycle. Drive IAM policy creation and enforcement across service, privileged, and user accounts. Guide the definition of IAM operating models, access certification processes, and automation of identity governance. Security Operations & Incident Response Oversee day-to-day security operations including SOC management (outsourced), SIEM/SOAR (Microsoft Sentinel), EDR/XDR, and threat detection and response. Collaborate with the SOC to improve detection rules, reduce false positives, and ensure robust incident detection and response capabilities. Plan and oversee penetration testing, forensic analysis, and incident investigations. Governance, Risk, & Compliance Align security architecture and operations with regulatory frameworks such as NIST, ISO 27001, CMMC, PCI-DSS, and GDPR. Partner with the GRC and Audit teams to ensure technical controls support broader compliance and risk. Coordinate with the GRC team to support policy development, risk assessments, and business continuity/disaster recovery planning. Requirements Physical Activities: The employee is occasionally required to stoop, kneel, crouch, climb or crawl. The employee must frequently lift and move up to 10 pounds and occasionally lift and move up to 25 pounds. Qualifications Experience: 10+ years of experience in cybersecurity with increasing leadership responsibility, with at least 4+ years direct people management in technical security teams. Extensive experience in security architecture, cloud platforms (Microsoft Azure, M365), and enterprise security tools. Strong command of at least 3 of the following core security domains: IAM, SIEM, vulnerability management, network security, DevSecOps, and incident response. Experience leading or managing an outsourced SOC or MDR provider. Proven leadership in security engineering and operations in a hybrid (cloud/on-prem) environment. Education: Bachelor’s degree in computer science, Engineering, related field, or equivalent work experience. Specialized Knowledge and Skills: Advanced degree (e.g., MS in Cybersecurity) is a plus. Certifications such as CISSP, CISM, Microsoft Certified: Cybersecurity Architect Expert, Azure Solutions Architect, or CEH. Experience with Microsoft Defender suite, Intune, Microsoft Sentinel, various IAM and Vulnerability Management Tools. Familiarity with security control frameworks (e.g., NIST CSF, MITRE ATT&CK, CIS). Excellent communication and interpersonal skills, with proven ability to lead across functions and influence executive stakeholders. Experience in Zero Trust architecture and OT security a big plus. Salary range for this position is $111,000 - $165,000 depending on experience Thorlabs values its diverse environment and is proud to be an Equal Employment Opportunity/Affirmative Action Employer. All qualified individuals will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age or veteran status. Job descriptions are not intended as and do not create employment contracts. The organization maintains its status as an at-will employer. Employees can be terminated for any reason not prohibited by law.

Source:  workable View original post

Location
Newton, NJ, USA
Show map

workable

You may also like

Workable
Engineering Technician II/III
Saalex is seeking an Engineering Technician II/III in Ridgecrest, CA. Saalex Solutions, a division of Saalex Corp., is an Engineering and Information Technology Services company with a focus on Test Range Operations and Management, Engineering and Logistics Services, Data Analytics and Business Intelligence Services and Information Technology Services. Position Type: Full-Time Salary: $21.38-$23.92 hourly (depending on experience) Work Location: Onsite. Essential Functions: Candidate must possess technician skills, such as welding, soldering, assembly, CNC, etc.   Candidate must be able to read drawings and follow written instructions for weapons assembly. Candidate must work well within a team environment and have good written and verbal communication skills.   Candidate must be able to communicate well with Engineers and other team members. This tasking is hands-on and adherence to OSHA safety standards is required.   Requirements Required: Minimum of 1-year related experience in assembling hardware, welding, soldering, or any other related activity required. Desired: A Penn Foster certificate is value added. Education: HS Diploma or GED required. Security Clearance: Must be eligible to obtain a secret clearance. Requirements to obtain a clearance include US Citizenship, security investigation, etc. Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Short Term & Long Term Disability Training & Development Wellness Resources Stock Option Plan
Ridgecrest, CA 93555, USA
$21-23/hour
Craigslist
Tech Support Representative (Andersonville, Chicago)
Booklog is looking for a level 1 – 3 technical support individual. This position is to provide outstanding technical support for Booklog software and various interfaces along with onboarding of new customers, testing of software and training on usage of software. We’re looking for a motivated individual to be part of our committed team. We need to be the experts so our customers don’t have to. Located in Chicago’s Andersonville neighborhood; telecommuting is available. Qualifications • At least 2 years experience in technical support, preferably phone support • Experience with Microsoft Windows operating systems • Familiarity with databases and database troubleshooting • Knowledge of computer network systems • Ability to troubleshoot software problems and offer solutions by phone • Good problem solving skills with attention to detail • Strong verbal, written, interpersonal, and organizational skills • Ability to work both independently and in a team environment • Experience with SQL Server 2022, Sybase SQL applications and databases • Ability and excitement to learn new skills • A ‘think outside of the box’ mentality • Customer Service experience • Software training experience a plus • Previous experience training customers on software usage • Experience with use of peripheral devices • 10% or less travel to customer locations within the US to train and install software Benefits • Casual environment with a great group of people who love what they do • In office or telecommuting options • 100% paid health insurance • 2 weeks vacation to start • Generous 401K options • Permanent full-time. PLEASE SEND RESUME WHEN APPLYING
5146 N Clark St #1222, Chicago, IL 60640, USA
$50,000/year
Workable
Biomedical Equipment Engineer I (Remote - Colorado)
This position is posted by Jobgether on behalf of EMSAR - Equipment Management Service and Repair. We are currently looking for a Biomedical Equipment Engineer I in Colorado (USA). This role provides an exciting opportunity to work hands-on with advanced medical equipment, ensuring its reliability and performance across a variety of healthcare environments. The Biomedical Equipment Engineer I will perform preventive maintenance, complex troubleshooting, and repairs on a wide range of medical and specialized devices. You will collaborate with internal teams and clients to deliver high-quality service while maintaining accurate documentation and adhering to safety standards. This position combines technical expertise, problem-solving, and customer interaction, offering both professional growth and the chance to make a direct impact on patient care and operational efficiency. Flexible nationwide travel is part of the role, adding variety and exposure to diverse healthcare settings. Accountabilities As a Biomedical Equipment Engineer I, you will: ·         Perform and document preventive maintenance, repair, and calibration of general, specialized, and high-tech medical equipment. ·         Utilize test equipment, electronics knowledge, and mechanical, pneumatic, and hydraulic skills to diagnose and repair devices. ·         Interpret service manuals, schematics, and technical documentation to ensure accurate maintenance and repair. ·         Maintain inventory of spare parts and manage work orders efficiently, prioritizing tasks to meet contractual commitments. ·         Provide training and guidance to customers and staff on the operation and applications of medical equipment. ·         Operate PC hardware and software to document service activities, submit reports, and maintain operational records. ·         Perform occasional troubleshooting and maintenance of non-medical devices as required. ·         Participate in occasional nationwide overnight and weekend travel for on-site support and project execution. Requirements The ideal candidate will have: ·         An Associate’s degree in Electronics, completion of DoD Biomedical Equipment Repair School, or equivalent experience. ·         Minimum of 1 year of experience in the repair and maintenance of medical equipment. ·         Valid driver’s license and access to a reliable vehicle. ·         Strong customer service and interpersonal skills with the ability to develop cooperative relationships with clients and colleagues. ·         Expertise in analyzing, repairing, and calibrating electronic and biomedical equipment. ·         Knowledge of software applications interfacing with equipment and understanding of regulatory compliance requirements. ·         Familiarity with anatomy, physiology, and biomedical device applications. ·         Ability to read schematics, understand color code conventions, and follow technical documentation accurately. ·         Physical capability to perform lifting (up to 50 lbs.), moving (up to 125 lbs.), and extensive standing, walking, and bending during service tasks. Benefits This role offers: ·         Competitive hourly salary ranging from $60,500 – $79,500. ·         Opportunities for professional development and hands-on experience with advanced biomedical equipment. ·         Flexible, fully remote work arrangement with nationwide travel exposure. ·         Comprehensive health, dental, and vision benefits. ·         Supportive and collaborative work environment fostering technical growth and career advancement. ·         Mentorship and guidance from experienced biomedical professionals. Jobgether is a Talent Matching Platform that partners with companies worldwide to efficiently connect top talent with the right opportunities through AI-driven job matching. When you apply, your profile goes through our AI-powered screening process designed to identify top talent efficiently and fairly. 🔍 Our AI evaluates your CV and LinkedIn profile thoroughly, analyzing your skills, experience and achievements. 📊 It compares your profile to the job’s core requirements and past success factors to determine your match score. 🎯 Based on this analysis, we automatically shortlist the 3 candidates with the highest match to the role. 🧠 When necessary, our human team may perform an additional manual review to ensure no strong profile is missed. The process is transparent, skills-based, and free of bias — focusing solely on your fit for the role. Once the shortlist is completed, we share it directly with the company that owns the job opening. The final decision and next steps (such as interviews or additional assessments) are then made by their internal hiring team. Thank you for your interest! #LI-CL1
Colorado, USA
$60,500/year
Craigslist
IT Network Administrator (Financial District)
Fully onsite, temp to perm, ASAP start date. Pay is BOE 48-85 per hour • 30% Network Operations and Security Management: Responsible for the daily operations, maintenance, and troubleshooting of the branch’s network. Monitor and analyze network performance, respond promptly to and resolve operational issues and incidents. Perform fault diagnosis and resolution for various types of network failures; create and manage support tickets with third-party vendors for any type of network performance degradation or system issue. Conduct regular and ad-hoc health checks to identify and eliminate risks, ensuring the overall health of the network environment. Coordinate with maintenance vendors for hardware repair and replacement. Responsible for network-related disaster recovery activities, including drills, testing, and documentation. • 25% Network Architecture Optimization and Technical Standards Development: Design and optimize network architecture by incorporating industry best practices and aligning with headquarters’ technical standards. Continuously improve the network architecture and evaluate emerging technologies for potential adoption. Revise and refine network management technical standards in accordance with HQ requirements and local business needs. • 20% Network Asset Management: Maintain and update network topology diagrams, as well as asset records for network devices and leased lines. Manage VLANs, IP addresses, DNS, and domain environments. Responsible for network configuration management and firewall port administration. Implement lifecycle management for network devices, including procurement and replacement. Handle equipment installation, placement, cabling, labeling, power supply, stacking, and routine inspections. • 10% Network Version and Patch Management: Responsible for the installation, configuration, patching, and maintenance of network infrastructure supporting the headquarters and branch data centers. Coordinate planned network upgrades with HQ departments and third parties. Perform firmware updates for network and security devices to ensure they remain on the latest versions. • 5% Network Business and Financial Management: Liaise with network vendors and participate in budgeting, procurement, contracting, invoice review, and payment processes for network-related services, ensuring service quality, cost control, and compliance. Collaborate with the Information Security Office and Risk Management Department to oversee vendor management and monitor their adherence to service level agreements (SLAs). • 5% Collaboration and Support: Work closely with other technical teams to complete network-related tasks. Provide network support and guidance to other IT staff, promoting knowledge sharing and continuous improvement. • 5% Other Duties: Perform additional related responsibilities as assigned. Requirements • College graduate with specialization in Computer Science, Information Technology, Computer Engineering or a related discipline or equivalent experience or equivalent combination of education and experience. • 3 years of satisfactory, progressive experience in network administration in a business environment incorporating switch, router and firewall configuration, network monitoring, and experience utilizing network management tools to that are acceptable to the management of the Information technology Department. Knowledge of network topology, understanding of LANS, VPN, Wi-Fi, etc. is required. • Fluent in English and Chinese. SPECIFICATIONS: • Strong knowledge in network administration, cyber security, IT operation, inventory and patch management, incident response, and etc.; • Must be able to prioritize work and multitask in a fast-paced environment. • Require participation in periodic network devices updates outside of normal business hours and respond to network-related operation issues and incidents in a timely manner. • Communication regarding work matters with the headquarters is allowed outside of regular working hours. • Have strong written and oral communication skills in English and oral communication in Mandarin. Self-motivated and with strong responsibility. • Holding professional certifications of CCNA, CCNP or CISSP is a good plus.
100 Pearl St, New York, NY 10004, USA
$48-85/day
Workable
Technical Support Engineer
Engineer Solutions that Empower Students  Are you passionate about technology, troubleshooting, and making an impact in education? MasteryPrep is seeking a Technical Support Engineer to provide high-quality support to both internal teams and external users, ensuring seamless operations across our technology platforms. Join a team dedicated to using technology to empower educators and students nationwide. In this role, you will serve as a key technical resource for our customers, troubleshooting and resolving complex issues across full-stack web applications. You’ll use modern developer tools, databases, and reporting systems to diagnose problems, ensure smooth integrations, and deliver timely solutions. This hands-on position involves collaborating closely with development, QA, and product teams to reproduce and resolve defects, maintaining application stability, and driving continuous improvement. Success in this role requires both strong technical expertise and clear, empathetic communication, ensuring that every customer interaction leads to a reliable and positive experience. Key Responsibilities: Serve as the primary point of escalation for customers issues, addressing their technical inquiries and issues related to full-stack technologies. Provide timely troubleshooting and resolution of customer-reported bugs in web applications built with TypeScript and React. Diagnose and resolve database-related issues in PostgresSQL and Firestore, ensuring data integrity and performance optimization. Document, track, and escalate customer-reported bugs using Gitlab. Collaborate with development teams to reproduce, diagnose, and resolve software defects Lead maintenance engineering. Work closely with cross-functional teams, including development, QA, and product management, to resolve complex technical issues. Communicate effectively with customers, providing updates on the status of their requests and issues in a clear and timely manner. Gather feedback from customers to improve the support process and contribute to product enhancements. About MasteryPrep Nearly 90% of low-income students graduate high school without a college-ready ACT or SAT score. MasteryPrep’s mission is to level the playing field in education by offering the most effective test preparation available – made accessible to all students.  Through more than 10 successful years of partnering with school districts and institutions on college readiness services and resources, MasteryPrep has surpassed one million students served since the company’s founding in 2012.  MasteryPrep increased its student outreach by 70 percent in 2021 and is ranked among the Inc. 5000 “Fastest Growing Companies,” featured by “Entrepreneur 360,” and selected among the “Growth Leaders” by Louisiana Economic Development. Requirements Bachelor's degree in Computer Science, Engineering, or a related field (or equivalent experience) 2+ years experience as a full-stack engineer Strong knowledge of Google Firestore, PostgreSQL, TypeScript, JaveScript, and React Experience with SSO,  specifically with Security Assertion Markup Language (SAML) protocols Proficient in integrating Learning Tools Interoperability (LTI) standards  Skilled in integrating with Student Information Systems (SIS)  Familiarity with rostering and integration services in education technology (e.g., Clever, ClassLink, Schoology) Excellent problem-solving and troubleshooting skills Ability to work independently and as part of a team in a fast-paced environment Strong communication and collaboration skills Familiarity with compliance standards such as FERPA, COPPA or PCI DSS preferred Knowledge of secure coding practices and application security testing techniques preferred Benefits $75,000-$85,000 starting salary based on qualifications  Opportunity to work with cutting-edge technologies in a collaborative environment Flexible work hours and remote work environment Professional development opportunities and reimbursement for certifications and training  Company-sponsored social events and team-building activities Employee benefits eligibility (health, disability, AD&D, life insurance) Matching 401k Paid time off Generous paid holidays
West Roxbury, Boston, MA, USA
$75,000/year
Cookie
Cookie Settings
Our Apps
Download
Download on the
APP Store
Download
Get it on
Google Play
© 2025 Servanan International Pte. Ltd.