The Kraft Group logo

Information Security Engineer

The Kraft GroupFoxborough, MA

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Senior-level
Benefits
Career Development
Tuition/Education Assistance
Health & Wellness Programs

Job Description

SUMMARY:

The Information Security Engineer is responsible for implementing and supporting security technologies and controls that protect the organization's IT infrastructure, systems, and data. This role plays a hands-on part in improving the overall security posture by contributing to the deployment, operation, and maintenance of security solutions. Working together with management and senior team members, the Information Security Engineer assists in executing security strategies, supporting compliance requirements, and mitigating risks across the enterprise. This position provides technical expertise to security operations, contributes to security engineering initiatives, and escalates complex issues when necessary. The Information Security Engineer supports all Kraft Group companies and locations.

DUTIES AND RESPONSIBILITIES

  • Design, deploy, and manage security solutions in alignment with security policies and business needs.
  • Assist in conducting risk assessments, security reviews, and gap analyses for compliance with standards such as NIST, CIS, ISO 27001, HIPAA, and GDPR.
  • Participate in vulnerability management lifecycle-monitoring alerts, identifying risks, and implementing remediation activities.
  • Manage and operate enterprise security tools including Tenable, CrowdStrike, NG-SIEM, Cisco FirePower, NetSpi, CyberArk and Zscaler.
  • Assist with firewall rule reviews, applying least privilege and zero-trust principles, and managing change workflows.
  • Administer and enhance Privileged Access Management (PAM) solutions, including implementing Just-In-Time (JIT) access, credential rotation, session monitoring, and least-privilege controls using CyberArk or similar technologies.
  • Respond to security incidents, performing triage, containment, documentation, and escalation in coordination with senior team members.
  • Analyze security event logs and correlate data to identify threats and recommend improvements based on threat intelligence.
  • Support penetration testing efforts by collaborating with third-party testers, reviewing findings, and assisting in remediation.
  • Contribute to user awareness programs by promoting security best practices and supporting education initiatives across the organization.
  • Collaborate with IT teams to guide and influence security best practices in operations, infrastructure, and application development.
  • Assist in internal and external audit activities, including documenting controls, tracking exceptions, and managing remediation plans.
  • Create and maintain security dashboards and reports to communicate trends, vulnerabilities, and risk metrics to leadership.
  • Stay informed of evolving security threats, technologies, and industry developments to improve security measures.
  • Work with IT and development teams to ensure security is integrated into design and implementation processes.
  • Special projects and assignments as business dictates.
  • Responsible for the creation, maintenance and control of all personally identifiable information or any other information protected by Confidentiality and Privacy Standards see Mass Regulations on Personal Identity Regulations and HIPAA.

SUPERVISORY RESPONSIBILITIES

  • This position has no supervisory responsibilities

SKILLS AND QUALIFICATIONS

  • Bachelor's degree in Cybersecurity, Computer Science, or Information Systems preferred.
  • 4-6 years of experience in cybersecurity architecture, security engineering, or related fields, with a track record of implementing security solutions.
  • Strong understanding of Defense-in-Depth, Zero-Trust Security Models, and Compensating Controls.
  • Experience in security design and implementation for Enterprise Platforms and Operating Systems (Windows, Unix/ Linux).
  • Familiarity with network security concepts, firewalls, and enterprise security controls (Cisco iOS & NX-OS, Aruba OS, Extreme XOS).
  • Experience with Enterprise NGFW platforms (Cisco FTD) and advanced threat detection tools.
  • Familiarity with regulatory compliance frameworks such as CIS, CISA, NIST, ISO 27001, ISO 27002, HIPAA, GDPR.
  • Ability to support cross-functional security projects and provide security guidance to IT teams.
  • Strong analytical and problem-solving skills with a focus on security risk mitigation.
  • Strong communication and documentation skills for reporting security risks and solutions to stakeholders.

PHYSICAL DEMANDS

  • Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

WORK ENVIRONMENT

  • Participate in after-hours on-call escalations and in Stadium event coverage rotations
  • The noise level in the work environment is usually moderate.
  • Fast-paced office environment.

CERTIFICATES, LICENSES, REGISTRATIONS

  • Certified Information Systems Security Professional (CISSP) or similar certifications preferred

OTHER DUTIES

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.

This company is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.

#LI-KG

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Information Security Engineer Jobs at The Kraft Group

What is the work location for this position at The Kraft Group?
This job at The Kraft Group is located in Foxborough, MA, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at The Kraft Group?
Employer has not shared pay details for this role.
What employment applies to this position at The Kraft Group?
The Kraft Group lists this role as a Full-time position.
What experience level is required for this role at The Kraft Group?
The Kraft Group is looking for a candidate with "Senior-level" experience level.
What benefits are offered by The Kraft Group for this role?
The Kraft Group offers following benefits: Career Development, Tuition/Education Assistance, and Health & Wellness Programs for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at The Kraft Group?
You can apply for this role at The Kraft Group either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.