About this opportunity
ASSA ABLOY Opening Solutions Americas lists this Cybersecurity Engineer opportunity in new haven, Connecticut. Review the employer’s description below for duties, qualifications and application requirements.
Job description
As the global leader in access solutions, ASSA ABLOY is committed to making the world a safer and more open place. Our Opening Solutions Americas team is hiring a Cybersecurity Engineer who will be responsible for implementing, operating, and maintaining the division's Zero Trust Segmentation program using Illumio. This role focuses on technical execution, segmentation policy development, application dependency analysis, workload onboarding, and day-to-day platform administration.
The engineer will work closely with infrastructure, cloud, application, and operational technology (OT) teams to reduce cyber risk, improve visibility into application communications, and support protection of critical business systems and Crown Jewel assets.
This role will be based onsite in New Haven, CT on a full-time basis.
What You Will Be Doing As Cybersecurity Engineer
Illumio Platform Administration
Administer and maintain the Illumio platform, including Policy Compute Engine (PCE) and Virtual Enforcement Nodes (VENs).
Deploy, troubleshoot, and upgrade Illumio agents across Windows and Linux environments.
Monitor platform health, agent connectivity, policy status, and enforcement activities.
Resolve segmentation-related incidents and operational issues.
Support integration with enterprise security tools and asset management platforms.
Application Dependency Mapping
Analyze application traffic flows and communication patterns.
Identify application dependencies and support workload classification.
Validate required communications with application and infrastructure teams.
Assist in documenting application architectures and connectivity requirements.
Investigate unknown or unexpected east-west traffic.
Segmentation Policy Implementation
Develop and maintain micro segmentation policies based on approved architecture and security standards.
Create and manage:
Application Ringfencing Policies
Tier-to-Tier Policies
Administrative Access Controls
Core Services Allow Lists
Logging and Monitoring Communications
Test policies in visibility and simulation modes before enforcement.
Assist with implementation planning and validation activities.
Support policy tuning and optimization following deployment.
Asset Management & Labeling
Maintain accurate workload labeling and segmentation metadata.
Validate asset inventory and application ownership information.
Assist with onboarding new applications into the segmentation program.
Work with CMDB and infrastructure teams to correct data quality issues impacting segmentation effectiveness.
Ensure newly deployed systems are enrolled in the program where appropriate.
Cloud & Hybrid Environment Security
Support segmentation initiatives across:
Azure
Hybrid infrastructure
On-premises data centers
Hosted environments
Assist cloud engineering teams with workload onboarding and policy implementation.
Validate secure communications between cloud and on-premises systems.
Operational Technology (OT) Support
Assist with micro segmentation efforts for manufacturing and operational technology environments.
Support implementation of controls designed to protect critical OT systems.
Participate in risk reduction activities involving industrial control systems and production environments.
Help maintain availability-focused segmentation strategies for operational assets.
Monitoring & Continuous Improvement
Monitor segmentation coverage and workload adoption.
Identify opportunities to strengthen segmentation controls and reduce attack surface exposure.
Participate in vulnerability remediation discussions where segmentation can reduce risk.
Develop reports and dashboards showing segmentation status and workload coverage.
Assist with root cause analysis and lessons learned following security events.
Automation & Engineering
Develop scripts and automation to improve operational efficiency.
Utilize APIs to automate:
Workload onboarding
Reporting
Label validation
Policy management
Support integrations between Illumio and:
ServiceNow
CMDB platforms
SIEM solutions
Security tooling
What We Are Looking For
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field.
3–5 years of cybersecurity, infrastructure, or security engineering experience.
Availability to be on-call for off‑hour emergencies.
Experience with:
Network security
Firewalls
Server administration
Security operations
Understanding of:
TCP/IP networking
DNS
Active Directory
Windows and Linux administration
Cloud networking fundamentals
Experience troubleshooting application communication issues.
Preferred Qualifications
Experience with Illumio or other segmentation technologies.
Experience supporting Zero Trust initiatives.
Exposure to:
Microsoft Azure
ServiceNow
SIEM platforms
Vulnerability Management tools
Scripting experience using:
PowerShell
Python
REST APIs
Manufacturing or OT cybersecurity experience preferred.
What We Offer
We’re passionate about providing amazing opportunities and benefits, so that you can enjoy a lifelong career with us. We are proud to offer:
Continuous professional development opportunities and an environment that fosters internal growth and mobility.
Competitive compensation and benefits package which includes multiple healthcare options, tuition reimbursement, and matching 401k.
Generous holiday schedule and paid time off to refresh and recharge.
Employee pricing on our products and discount programs for travel, entertainment, and more!
We are the ASSA ABLOY Group
Our people have made us the global leader in access solutions. In return, we open doors for them wherever they go. With nearly 63,000 colleagues in more than 70 different countries, we help billions of people experience a more open world. Our innovations make all sorts of spaces – physical and virtual – safer, more secure, and easier to access.
As an employer, we value results – not titles, or backgrounds. We empower our people to build their career around their aspirations and our ambitions – supporting them with regular feedback, training, and development opportunities. Our colleagues think broadly about where they can make the most impact, and we encourage them to grow their role locally, regionally, or even internationally.
As we welcome new people on board, it’s important to us to have diverse, inclusive teams, and we value different perspectives and experiences.
#J-18808-Ljbffr
Worksite address
new haven, CT, 06540, US
Who can apply
Review the original listing for work authorization, qualifications and employer requirements.