- Location
- Midland - HQ, United States of America
- Department
- Engineering
- Seniority
- Lead
- Experience
- 8+ years
- Education
- Master
- Source
- Workday
Description
Job Description:
Permian Resources (NYSE: PR) is currently seeking a Lead Cybersecurity Engineer to join the Enterprise Cybersecurity Team in Midland, Texas. This position serves as the principal technical authority for the Company’s security engineering function, setting technical direction, owning the security engineering roadmap, and mentoring a team of engineers and analysts, while remaining hands-on across security engineering, identity and access management, vulnerability management, and threat analysis. The ideal candidate combines deep technical expertise with the leadership to guide a multi-disciplinary team in a fast-paced environment.
General Responsibilities
Serve as the principal technical authority and design lead across security engineering, IAM, vulnerability management, and security operations.
Own and maintain the security engineering roadmap, standards, and reference architectures, and drive maturity improvements over time.
Provide technical direction, coaching, and mentorship to security engineers and analysts, and partner with leadership on hiring and skills development.
Lead the evaluation, selection, and implementation of security tools and platforms, and own key vendor and technical relationships.
Design and implement enterprise security solutions across network, endpoint, cloud, and application layers, including firewalls, EDR/XDR, SIEM, and DLP.
Develop and enforce security policies, procedures, and hardening standards to ensure the confidentiality, integrity, and availability of company data.
Own the identity architecture — SSO, MFA, conditional access, least-privilege/RBAC, and privileged access management (PAM).
Direct the vulnerability management program — scanning strategy, risk-based prioritization, SLAs, and remediation governance — including penetration-testing engagement and closure.
Act as senior escalation point for complex investigations and major-incident response, leading containment, eradication, recovery, and post-incident reviews.
Guide detection engineering and threat hunting, and incorporate threat intelligence into defensive controls.
Communicate risk, roadmap, and incident posture clearly to technical teams and executive stakeholders.
Minimum Qualifications
Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
8+ years of experience in cybersecurity engineering or a related role, including demonstrated experience as a technical lead.
Proven ability to set technical direction, mentor engineers, and own security architecture or programs.
Deep, hands-on expertise across multiple domains (security engineering, IAM, vulnerability management, and security operations) with strong working knowledge of all four.
Strong understanding of threat analysis, mitigation techniques, and incident response.
Familiarity with industry standards such as NIST CSF.
Technical expertise in several of the following security tools and technologies: Firewall Management, Web Application Firewall (WAF), Endpoint Detection and Response (EDR), Data Loss Prevention (DLP), Cloud Security (e.g., AWS, Azure, GCP), Security Information and Event Management (SIEM), Identity and Access Management (IAM), and Privileged Access Management (PAM).
Proficiency with scripting and automation (e.g., PowerShell, Python) and automation-first engineering practices.
Excellent leadership, communication, and stakeholder-management skills.
Preferred Qualifications
Related cybersecurity work experience in OT/Industrial Control Systems (SCADA) environments.
Senior certifications such as CISSP, CISM, GIAC, Microsoft SC-series, or equivalent experience.
Permian Resource is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.