- Location
- Virginia Beach, VA, US
- Workplace
- Onsite
- Type
- Full-time
- Department
- Engineering
- Experience
- 5+ years
- Education
- Bachelor
- Closing date
- Today
- Source
- iCIMS
Description
Overview
Kimley-Horn, one of Fortune Magazine's "100 Best Companies to Work For," is seeking a Cybersecurity Engineer to join our Information Security team. In this role, you will help secure the firm's cloud environments, identities, data, and AI technologies while driving initiatives across cloud security, IAM, PAM, DLP, and AI governance. You will collaborate with teams across the organization to identify risks, implement security controls, and strengthen the firm's overall security posture.
This is an in-office position.
Responsibilities
- Analyzing cloud infrastructure to understand and communicate risks, concerns, and outcomes of decisions
- Lead Identity and Access Management (IAM) initiatives, including authentication, authorization, privileged access management, conditional access, and identity governance
- Develop and maintain Data Loss Prevention (DLP) controls to protect sensitive business data across cloud services, endpoints, collaboration platforms, and AI-enabled applications
- Design, implement, and manage Privileged Access Management (PAM) solutions to secure administrative, service, and identities, including privileged account lifecycle management, just-in-time access, credential protection, session monitoring, and privileged access governance
- Establish security policies and governance for AI and agentic AI technologies that require authentication, authorization, monitoring, and lifecycle management
- Accountable for tracking cloud application vulnerabilities through security tools and meeting with development teams to formulate remediation plans
- Perform threat modeling, security assessments, and architecture reviews for cloud services, AI applications, and new technology deployments
- Partner with IT, infrastructure, and application teams to integrate security controls into cloud platforms, identity services, and AI-powered business solutions
- Participate in tabletop exercises and simulations to test and improve incident response plans
- Support compliance, audit, and risk management activities by documenting security controls, procedures, and technical standards
Qualifications
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field
- 5+ years of experience with Cloud Security, Identity and Access Management, Information Security, or a similar role within an enterprise-level organization
- Professional certifications, such as Security+, Cloud+, AZ-300, AZ-500, CCSP, CISSP, or other relevant security certifications
- Experience designing, implementing, and supporting security controls in Microsoft Azure, AWS, or other enterprise cloud environments
- Hands-on experience with Identity and Access Management (IAM) technologies, including authentication, authorization, single sign-on (SSO), federation, identity governance, and conditional access
- Experience administering or supporting Privileged Access Management (PAM) solutions, including privileged account governance, just-in-time access, credential vaulting, and privileged session management
- Experience implementing and managing Data Loss Prevention (DLP), information protection, and data governance controls across cloud services, endpoints, and collaboration platforms
- Knowledge of AI and agentic AI security concepts, including governance, identity lifecycle management, authorization models, and monitoring of AI agents
- Knowledge of security frameworks and standards such as NIST CSF, CIS Controls, ISO 27001, and Zero Trust Architecture
- Strong analytical, troubleshooting, and problem-solving skills
- Experience with change-management policies and procedures
- Strong communication skills, both written and verbal, with the ability to convey complex technical concepts to non-technical stakeholders
Desired Skills:
- Microsoft Entra ID, PIM, Identity Governance, and Conditional Access
- Microsoft Purview DLP and Information Protection
- CyberArk, OneIdentity, Delinea, or similar PAM platforms
- Security automation and orchestration experience
- AI and agentic AI security governance
- Experience managing machine identities, service accounts, and workload identities
- Threat modeling and cloud security architecture review experience
Why Kimley-Horn?
At Kimley-Horn, we do things differently. People, clients, and employees are at the forefront of who we are. Clients know we prioritize achieving their goals and growing their success. Employees know our culture and approach to business are built on a desire to provide an environment for everyone to flourish. Our commitment to quality is only as good as the people behind it— that’s why we welcome and develop passionate, hardworking, and proactive employees. We take pride in how our employee retention, robust benefits package, and company values have led to Kimley-Horn’s placement on the Fortune “100 Best Companies to Work” list for 19 years!
Key Benefits at Kimley-Horn
- Exceptional Retirement Plan: 2-to1- company match on up to 4% of eligible compensation (salary + bonus) and additional profit-sharing contribution.
- Comprehensive Health Coverage: Low-cost medical, dental, and vision insurance options.
- Time Off: Personal leave, flexible scheduling, floating holidays, and half-day Fridays.
- Financial Wellness: Student loan matching in our 401(k), and performance-based bonuses.
- Professional Development: Tuition reimbursement and extensive internal training programs.
- Family-Friendly Benefits: New Parent Leave, family building benefits, and childcare resources.