Senior Security Engineer- Security Baselines - Cleveland - Key Bank

    Key Bank
    Key Bank Cleveland

    1 day ago

    $96,000 - $181,000 (USD) per year
    Description

    Location:

    4910 Tiedeman Road, Brooklyn Ohio

    As a member of the Cyber Defense team within Corporate Information Security, the Senior Exposure Management Engineer plays a critical role in safeguarding KeyBank's infrastructure by designing, implementing, and maintaining secure configurations across on-premises, cloud, and hybrid environments. This position is responsible for ensuring that systems, applications, and networks are configured in strict alignment with industry-recognized standards, particularly the CIS Benchmarks, as well as organizational security baselines. The engineer continuously monitors updates to CIS Benchmarks, integrates new controls, and supports audit readiness by maintaining comprehensive documentation and evidence of compliance. By leveraging industry standard automated scanning capabilities, the Senior Exposure Management Engineer validates configuration settings, identifies vulnerabilities, and ensures timely remediation and re-assessment, directly supporting KeyBank's mission to Deter, Detect, Deny, and Disrupt adversaries through robust, standards-based defense. The role involves collaborating with cross-functional teams to assess, remediate, and document configuration gaps, ensuring that all configurations meet or exceed CIS recommendations. This proactive approach directly supports the organization's mission to Deter, Detect, Deny, and Disrupt adversaries through robust, standards-based defense

    Key Responsibilities

    • Configuration Management: Develop, implement, and maintain secure configuration baselines for operating systems, cloud platforms (Google Cloud, Microsoft Azure, AWS), applications, and network devices, ensuring strict adherence to CIS Benchmarks and organizational standards.
    • Continuous Assessment: Conduct regular configuration assessments and audits using Tenable and other industry-standard tools to validate compliance with CIS Benchmarks, NIST, PCI-DSS, and other regulatory requirements.
    • Vulnerability Management: Perform authenticated and unauthenticated vulnerability scans with Tenable, analyze results, and coordinate remediation activities. Ensure that scan policies are tuned to cover CIS Benchmark controls, and that remediation is verified through re-scanning.
    • Threat Intelligence: Collaborate with the Cyber Threat Intelligence and Red Team to incorporate threat intelligence into configuration management and prioritization processes.
    • Project Collaboration: Work with project teams, architects, and third-party vendors to embed security controls in system designs and deployments and validate configuration requirements.
    • Cross-Team Collaboration: Partner with infrastructure, application, and security teams to ensure baseline requirements are understood, implemented, and maintained across all environments.
    • Compliance Reporting: Track and report on configuration compliance metrics, maintain automated dashboards, and provide visibility to stakeholders and leadership within the ServiceNow application.
    • Documentation & Audit Support: Document configuration changes, exceptions, and remediation activities. Support internal and external audits by providing evidence of compliance and remediation.
    • Process Automation: Assist in the development and automation of configuration management and compliance reporting tools and frameworks.
    • Knowledge Sharing: Share knowledge and best practices with the team through presentations, documentation, and training sessions.
    • Incident Response: Support incident response and remediation efforts by identifying and correcting misconfigurations and partnering with blue teams to improve detection and response capabilities related to configuration changes and vulnerabilities.

    Required Qualifications

    • Bachelor's degree in computer science, Cybersecurity, or related field—or equivalent experience.
    • 8+ years of experience in security engineering, configuration management, or related roles.
    • Proficiency with configuration management tools (e.g., Ansible, Chef, Puppet) and scripting languages (PowerShell, Python, Bash).
    • Experience with Vulnerability Management platforms (Tenable, Qualys, Rapid7 etc) running vulnerability scans, monitoring agent health, and maintaining scanner operability.
    • Comprehensive expertise in Tenable or comparable vendor solutions for compliance scanning.
    • Strong understanding of Cisco, Windows, Linux, Kali Linux, and macOS operating systems.
    • Hands-on experience with cloud platforms (Google Cloud, Microsoft Azure, AWS).
    • Familiarity with security frameworks and standards (e.g., CIS Benchmarks, SCAP, NIST CSF, MITRE ATT&CK).
    • Experience with ServiceNow security related modules such as Vulnerability Response & Configuration Compliance
    • Effective research, documentation, and reporting skills.
    • Willingness to travel.

    Preferred Certifications

    • Certified Information Systems Security Professional (CISSP)
    • GIAC Security Essentials (GSEC)
    • GIAC Certified Vulnerability Assessor (GCVA)
    • Microsoft Certified: Azure Security Engineer Associate
    • AWS Certified Security – Specialty
    • Google Cloud Security Engineer

    COMPENSATION AND BENEFITS

    This position is eligible to earn a base salary in the range of $96, $181,000.00 annually. Placement within the pay range may differ based upon various factors, including but not limited to skills, experience and geographic location. Compensation for this role also includes eligibility for incentive compensation which may include production, commission, and/or discretionary incentives.

    Please click here ) for a list of benefits for which this position is eligible.

    Key has implemented an approach to employee workspaces which prioritizes in-office presence, while providing flexible options in circumstances where roles can be performed effectively in a mobile environment.

    Job Posting Expiration Date: 03/23/2026

    KeyCorp is an Equal Opportunity Employer committed to sustaining an inclusive culture. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, genetic information, pregnancy, disability, veteran status or any other characteristic protected by law.

    Qualified individuals with disabilities or disabled veterans who are unable or limited in their ability to apply on this site may request reasonable accommodations by emailing

    #LI-Hybrid

    KeyBank is an organization collectively committed to helping you unlock your potential and discover what truly drives you. Working here means sharing our purpose to help our clients, colleagues, and communities thrive. You'll find genuinely supportive teammates, a flexible, inclusive work environment, challenging projects, accessible leaders, and opportunities to grow in your position and your career. For 200 years, Key has opened doors in our communities. Let us open one for you.


  • Work in company

    Senior Security Engineer- Security Baselines

    Only for registered members

    As a member of KeyBank's Cyber Defense team within Corporate Information Security,Senior Exposure Management Engineer plays a critical role in safeguarding infrastructure by designing secure configurations across environments. · This proactive approach supports Deter,Detect,Deny, ...

    Brooklyn $96,000 - $181,000 (USD) Full time

    1 month ago

  • Work in company

    Senior Security Engineer- Security Baselines

    Only for registered members

    This Senior Security Engineer role plays a critical part in safeguarding KeyBank's infrastructure by designing secure configurations across on-premises cloud hybrid environments. · , , Develop implement maintain secure configuration baselines for operating systems cloud platforms ...

    Brooklyn $96,000 - $181,000 (USD)

    1 month ago

  • Work in company

    Senior Security Engineer- Security Baselines

    Only for registered members

    Location: · 4910 Tiedeman Road, Brooklyn Ohio As a member of the Cyber Defense team within Corporate Information Security, the Senior Exposure Management Engineer plays a critical role in safeguarding KeyBank's infrastructure by designing, implementing, and maintaining secure con ...

    Brooklyn

    1 day ago

  • Work in company

    Senior Security Engineer- Security Baselines

    Only for registered members

    As a member of the Cyber Defense team within Corporate Information Security, the Senior Exposure Management Engineer plays a critical role in safeguarding KeyBank's infrastructure by designing, implementing and maintaining secure configurations across on-premises, cloud and hybri ...

    Brooklyn, OH

    3 weeks ago

  • Work in company

    Security Team Lead with Security Clearance

    Only for registered members

    Job Title: Security Team Lead with Security Clearance · This position involves leading a team of security professionals to secure enterprise network environments while ensuring operational compliance with various cybersecurity requirements. · ...

    Bratenahl

    1 week ago

  • Work in company

    Manager Cybersecurity

    Only for registered members

    This role provides enterprise leadership for endpoint security, overseeing prevention, detection and response capabilities while ensuring alignment with Zero Trust principles and healthcare regulatory frameworks (HIPAA HITRUST NIST). · ...

    Cleveland $118,960 - $190,360 (USD)

    1 month ago

  • Work in company

    Security Engineer

    Only for registered members

    The Security Operations Engineer is responsible for building operating and improving security controls while actively responding to security events across hybrid and cloud environments. · This role owns problems end-to-end drives investigations fixes and helps engineer a modern r ...

    Cleveland

    2 weeks ago

  • Work in company

    Network Analyst

    Only for registered members

    · Network Analyst · Examples of Duties · Troubleshoots, repairs, and implements complex information technology solutions. This includes support for system architecture, hardware, software, operating systems, distributed computing, data analysis, facilities planning, resource man ...

    Cleveland $70,000 - $125,000 (USD) per year

    1 week ago

  • Work in company

    Sr. Security Engineer

    Only for registered members

    Benesch is proud to announce the opening for a Sr Security Engineer in our Cleveland office This position is hybrid and has work from home flexibility who champions a First in Service approach and are ready to be part of an exciting and growing Firm we would invite you to apply t ...

    Cleveland $145,000 - $175,000 (USD)

    3 weeks ago

  • Work in company

    Information Security Analyst

    Only for registered members

    This role is primarily responsible for executing the tactical and strategic initiatives of the Information Security team to include programs such as risk and vulnerability management, incident response, security architecture, · cloud security and third-party vendor management. · ...

    Cleveland $100,000 - $115,000 (USD)

    2 months ago

  • Work in company

    Network Analyst

    Only for registered members

    · Description · Network Analyst · Examples of Duties · Troubleshoots, repairs, and implements complex information technology solutions. This includes support for system architecture, hardware, software, operating systems, distributed computing, data analysis, facilities planning ...

    - Innovation & Technology $70,000 - $125,000 (USD) per year

    1 week ago

  • Work in company

    Endpoint Administrator

    Only for registered members

    We are seeking a detail-oriented and technically motivated Endpoint Systems Administrator to support the administration of our enterprise endpoint environment. This role assists with device deployment, configuration, security, and lifecycle management. · Support the administratio ...

    Cleveland $60,000 - $80,000 (USD)

    1 month ago

  • Work in company Remote job

    Manager Cybersecurity

    Only for registered members

    Last the Cleveland Clinic team where you will work alongside passionate caregivers and provide patient-first healthcare. · This role provides enterprise leadership for endpoint security, · overseeing prevention, detection, and response capabilities while ensuring alignment with Z ...

    Cleveland, OH

    1 month ago

  • Work in company

    Security Engineer

    Only for registered members

    The Security Operations Engineer is responsible for building operating and improving security controls while actively responding to security events across hybrid and cloud environments. · Investigate and respond to security alerts across SIEM XDR NDR identity email endpoint and c ...

    Cleveland, OH

    2 weeks ago

  • Work in company Remote job

    Information Security Analyst

    Only for registered members

    + Execute on security strategy as defined by the Information Security Manager. · + Participation in the Firm's Vulnerability Management Program, working with cross-functional teams to identify, manage and mitigate security vulnerabilities across the Firm. · Job summary: This role ...

    Cleveland, OH

    1 month ago

  • The Digital and IT Senior Technical Specialist leads the transformation of business vision into digital capabilities.The role will leverage their comprehensive IT and business experience to lead the strategic vision and roadmap of highly secure and resilient technologies. · ...

    Cleveland

    1 month ago

  • Work in company

    Senior Data Platform Engineer

    Only for registered members

    JOB DESCRIPTION · The Senior Data Platform Engineer role is responsible for designing, building, problem-solving, troubleshooting, and maintaining business intelligence platforms within the current technology environment. The role involves analyzing complex technical problems, d ...

    Cleveland $108,531 - $140,086 (USD)

    1 week ago

  • Work in company

    SR. AIX Linux Administrator

    Only for registered members

    BCTG's direct client is looking for a Senior AIX/Linux Adminstrator to provide hands-on technical support and perform as the SME for large enterprise-wide AIX and Linux servers environment. · ...

    Greater Cleveland

    1 month ago

  • Work in company

    Senior AIX

    Only for registered members

    This Senior AIX & Linux Administrator role is a key Subject Matter Expert (SME) position supporting our client's most critical enterprise systems. · ...

    Cleveland, OH

    2 months ago

  • Work in company

    Special Project Technician

    Only for registered members

    Case Western Reserve University is committed to providing a transparent estimate of the salary for this position at the time of its posting. The starting wage rate is $16.20 per hour, depending on qualifications, experience, department budgets, and industry data. · Employees rece ...

    Cleveland $45,000 - $78,000 (USD) per year

    1 week ago

  • Work in company

    Supervisor, Cyber Remediation

    Only for registered members

    We are the leading provider of professional services to the middle market globally. · We instill confidence in a world of change empowering our clients and people to realize their full potential. · Our exceptional people are key to our unrivaled culture and talent experience, · a ...

    Cleveland, OH

    1 month ago

Jobs
>
Cleveland