- Company Name
- Reed Smith LLP
- Job Title
- Security Engineer - Infrastructure - (Remote in Pittsburgh)
- Job Description
-
**Job Title:** Security Engineer – Infrastructure
**Role Summary:**
Supports the security and compliance of the firm’s infrastructure (networks, servers, workstations, telecommunications) under the Security Manager. Ensures alignment with ISO 27001, industry standards, and internal policies across on‑premises and cloud environments. Acts as a security consultant, incident response escalation point, and contributor to enterprise security projects.
**Expectations:**
- Maintain and improve security posture of all infrastructure components.
- Deliver timely resolution of security incidents, audit findings, and compliance gaps.
- Collaborate with IT teams, vendors, and stakeholders to embed security best practices.
- Stay current with emerging threats, technologies, and regulatory requirements.
**Key Responsibilities:**
- Manage Public Key Infrastructure (PKI) and certificate lifecycle.
- Implement encryption for data at rest, in transit, and in use (on‑prem and cloud).
- Secure AWS, Azure, and GCP environments; enforce identity, access, and data‑protection controls.
- Deploy, configure, and maintain firewalls (FWaaS/UTM), Secure Web Gateways, IDS/IPS, and LAN/WAN infrastructure.
- Operate advanced security solutions: CASB, Zero Trust Network Access, and related technologies.
- Lead escalation for security incidents and audits; develop mitigation and post‑incident reports.
- Provide subject‑matter expertise to IT teams on infrastructure, cloud, and endpoint security.
- Conduct security reviews, risk assessments, and recommend remediation actions.
- Monitor alerts, manage access controls, and ensure proper configuration of DNS and public domains.
- Administer endpoint protection (AV, EDR) policies in coordination with system owners.
- Support integration of third‑party systems, ensuring secure communication and compliance.
**Required Skills:**
- Strong knowledge of network security (firewalls, UTM, IDS/IPS, SWG).
- Experience with PKI, certificate management, and cryptographic practices.
- Proficiency in cloud security (AWS, Azure, GCP) and related IAM/Access controls.
- Hands‑on experience with CASB, ZTNA, and Zero Trust frameworks.
- Familiarity with ISO 27001 controls and audit processes.
- Ability to analyze security events, perform incident response, and produce reports.
- Solid understanding of endpoint protection (AV, EDR) and OS hardening.
- Experience with DNS management and public domain security.
- Excellent communication, consulting, and vendor‑management skills.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Relevant security certifications (e.g., CISSP, CISM, GSEC, CCSP, AWS/Azure Security Specialty) preferred.
- Certifications or training in ISO 27001, PKI, or cloud security advantageous.
Pittsburgh, United states
Hybrid
23-10-2025