This job has expired

This job posting is no longer active and is not accepting applications. Explore similar roles below!

W.W. Williams
Posted 1mo ago

Lead, Cyber Security Engineer

W.W. Williams
Irving, Texas, United States
HybridFull Time
Responsibilities
  • leading program
  • detecting threats
  • managing incidents
Requirements
  • 8+ years enterprise cyber security experience
  • Build/mature security programs to NIST CSF
  • Hands-on with EDR/MDR, SIEM
  • Vulnerability scanning
  • Cloud security
  • KnowBe4
  • Strong communication and incident response skills
Technical tools mentioned
NIST 800-53CIS ControlsMITRE ATT&CKKnowBe4Field Effect CovalenceCrowdStrike FalconSentinelOneMicrosoft Defender XDRMicrosoft SentinelSplunkTenable NessusTenable SecurityCenterQualysRapid7 InsightVMMicrosoft AzureAWSGCPActive DirectoryAzure ADEntra IDDMARCDKIMSPFCyberArkBeyondTrustDelineaPythonPowerShellKQLMicrosoft Defender 365

Job description

Lead, Cyber Security Engineer Opportunity Summary:

The Lead, Cyber Security Engineer is a senior individual-contributor and team-lead role responsible for owning the end-to-end cyber security program at WW Williams. Reporting to CIO and based in the Dallas, Texas metro area, this hybrid role requires both strategic vision and deep technical execution. The successful candidate will establish measurable security baselines, drive the organization toward NIST Cybersecurity Framework (CSF) maturity, and act as the primary defender of WW Williams' digital assets across all business units.

Job Duties:

Security Program Leadership & Governance

  • Own, evolve, and communicate the WW Williams Cyber Security roadmap aligned to NIST CSF (Identify, Protect, Detect, Respond, Recover) functions.
  • Establish, document, and track security KPIs and KRIs to measure baseline performance, quantify risk reduction, and demonstrate continuous improvement to executive stakeholders.
  • Develop and maintain security policies, standards, and procedures in alignment with regulatory requirements and industry frameworks (NIST 800-53, CIS Controls).
  • Lead periodic cyber security maturity assessments; produce gap analyses with prioritized remediation roadmaps.
  • Manage relationships with MSSPs, vendors, and third-party assessors; conduct vendor security reviews.

Threat Detection, Incident Response and Threat Intelligence

  • develop correlation rules and playbooks to minimize mean-time-to-detect (MTTD) and mean-time-to-respond (MTTR).
  • Lead incident response activities including containment, eradication, forensic investigation, and post-incident review (PIR).
  • Maintain threat intelligence feeds; translate threat actor TTPs (MITRE ATT&CK) into actionable defensive controls.
  • Conduct adversarial simulation exercises (purple team / tabletop) to validate detection and response capabilities.

Endpoint, Network & Cloud Security

  • Administer and optimize advanced endpoint detection and response (EDR/XDR) platforms; enforce next-generation antivirus (NGAV) and behavioral anomaly detection policies.
  • Manage Field Effect Covalence (MDR) or equivalent managed detection and response solution; triage and act on platform alerts in concert with the SOC.
  • Oversee network security architecture including firewall rule-set management, IDS/IPS tuning, micro-segmentation, and zero-trust network access (ZTNA) initiatives.
  • Govern cloud security posture (CSPM) across Azure/AWS/GCP environments; enforce least-privilege IAM, secrets management, and cloud-native security controls.

Security Awareness & Human-Layer Defense

  • Administer the KnowBe4 Security Awareness Training & Simulated Phishing platform; design targeted campaigns, track click-rate metrics, and report on risk reduction over time.
  • Drive a measurable reduction in human-layer risk through role-based training curricula, phishing simulations, and coaching for repeat offenders.
  • Serve as the internal security advocate; communicate risk in business terms to non-technical audiences including C-suite and field operations.

Vulnerability Management & Secure Development

  • Own the full vulnerability management lifecycle: scan, prioritize (CVSS + business context), remediate, and verify closure within SLA.
  • Manage patch management cadences across servers, endpoints, OT/IoT-adjacent systems, and network devices.
  • Champion secure-by-design principles; conduct security design reviews and code-level assessments for internally developed applications.
  • Maintain a risk register and communicate residual risk posture to leadership on a regular cadence.

Identity, Access & Data Protection

  • Govern privileged access management (PAM), MFA enforcement, and identity lifecycle processes in Active Directory / Azure AD / Entra ID.
  • Implement and maintain data loss prevention (DLP) controls; classify and protect sensitive business data across storage, transit, and endpoint.
  • Oversee email security stack (anti-phishing, DMARC/DKIM/SPF, secure email gateway) and web proxy / DNS filtering.

Work Experience and Required Qualifications:

  • 8–10+ years of progressive, hands-on cyber security engineering experience in enterprise environments.
  • Demonstrated experience building or maturing a security program against a recognized framework (NIST CSF, NIST 800-53, CIS Controls, or ISO 27001).
  • Proven ability to define security baselines, measure current-state maturity, and track improvement over time using quantitative metrics.
  • Hands-on experience with KnowBe4 (administration, campaign design, reporting) or equivalent security awareness platforms.
  • Hands-on experience with Field Effect Covalence, CrowdStrike Falcon, SentinelOne, Microsoft Defender XDR, or comparable MDR/XDR solutions.
  • Strong working knowledge of SIEM platforms (Microsoft Sentinel, Splunk, or equivalent); ability to write detection rules and build dashboards.
  • Solid understanding of network security principles: firewalls, IDS/IPS, NAC, VPN, ZTNA, and network traffic analysis.
  • Experience managing vulnerability scanners (Tenable Nessus / Security Center, Qualys, or Rapid7 InsightVM).
  • Proficiency with cloud security in at least one major cloud provider (Azure preferred); understanding of shared-responsibility model and CSPM tools.
  • Strong written and verbal communication skills; able to produce board-ready risk reports and technical runbooks alike.

Preferred Qualifications:

  • CISSP, CISM, or GIAC certifications (GCIA, GCIH, GPEN)
  • Experience with Microsoft Sentinel & Defender 365 ecosystem
  • Scripting/automation skills (Python, PowerShell, KQL)
  • Familiarity with OT/ICS security considerations
  • Prior experience in distribution, logistics, or field-service industries
  • Purple team / adversary emulation experience (MITRE ATT&CK)
  • PAM tooling (CyberArk, BeyondTrust, or Delinea)
  • SOC 2 Type II, CMMC, or PCI-DSS compliance exposure

Employee Rewards and Benefits:

  • 8 Paid Holidays & 1 Paid Wellness Day
  • Paid Time Off
  • Employee Referral Bonus Program
  • Medical, Dental & Vision Insurance
  • 401k with a Company Match
  • Company Paid Training
  • Growth & Leadership Opportunities

About the Company:

W.W. Williams was founded in Columbus, Ohio, in 1912. Today The W.W. Williams Companies have a broad portfolio of businesses located throughout the U.S. and Mexico. The W.W. Williams Companies include CT Power and Guaranteed Truck Service. W.W. Williams offers a full range of industry-leading products, while providing technical/mechanical service and repair, remanufacturing and warehouse/supply chain management solutions to a varied customer base. Our products and services include diesel engines, transmissions, heavy duty truck repair, transport refrigeration, power generation and third-party supply chain logistics services. Our customers include on-highway truck fleets, off-highway equipment users, data centers, hospitals, Department of Defense OEMs, vehicle OEMs, U.S. Military and boat owners to name a few.

What began as a small family-owned business has evolved into one of the nation's most diversified solutions provider. We are relentlessly dedicated to helping our customers achieve maximum up time. From single trucking to cranes to fleet management to power generators to military and commercial packaging - consider it done.

We are Genuine. Honest. Passionate. That's not a slogan, it's a mantra. Everyone who wears the W.W. Williams name - from service technicians to advisors to business executives - is committed to getting the job done right, the first time around. Our people are our greatest assets; we support our team with access to world class training and development opportunities. It's this level of investment and care that matters to customers, giving you peace of mind that your fleet is in the right hands.

W.W. Williams is one of the nation’s largest sales and service networks of industrial power products. With multiple locations across the US and Mexico, we are dedicated to providing highly professional service and strong relationships with our customers.

Join us for a career where you'll grow both personally and professionally in a welcoming, diverse, and inclusive environment.

Competitive wages and benefits. AAP/EPE/M/F/Vets/Disabled, DFWP.

About W.W. Williams

Sells and services industrial power products and commercial vehicles.

Year founded
1912
Employees
1250
Organization type
Private
Latest investment
Raised $472.00k Private Equity (2025) — led by Brightstar Capital Partners
Headquarters
US

Similar jobs

Cyber Security Engineer roles near Irving, Texas
1d
Save
Mark Applied
Hide
Cyber Security Engineer
Louisville or Charlotte or Tampa or Dallas or Chicago or New York City or Nashville or Miami or Boston
$89k-$121k/yr RemoteFull Time
Humana
HumanaNYSE: HUM: Provides health insurance plans and clinical healthcare services.
Bachelor's degree in a technical field, cybersecurity or cloud security experience, continuous professional development, and ability to support enterprise security tools, integrations, automation, and controls.
AppOmni, Cycode, Checkmarx, Wiz, Prisma Cloud, JFrog/Xray, AppScan, GCP Model Armor, Splunk, ServiceNow, Microsoft 365, Azure DevOps, GitHub, BurpSuite, NowSecure, Azure, Google Cloud Platform (GCP), Amazon Web Services (AWS)
3d
Save
Mark Applied
Hide
Senior Engineer, Cyber Security-Generation
Irving, Texas, United States
OnsiteFull Time
Vistra
VistraNYSE: VST: Operates power plants and provides retail electricity services.
5+ YOERequires 5–8 years in industrial or infrastructure cybersecurity, expertise in NERC CIP, ICS/OT security, control systems, networking, and scripting with PowerShell, JavaScript, and/or Python.
PowerShell, JavaScript, Python, TCP/IP, VLANs, NAT, firewalls
2w
Save
Mark Applied
Hide
CYBER SECURITY ENGINEER
Fort Worth, Texas, United States
OnsiteFull Time
Custom Truck One Source
Custom Truck One SourceNYSE: CTOS: Sells and rents specialized trucks and heavy equipment.
5+ YOE5+ years cybersecurity engineering experience; strong knowledge of network, cloud, and infrastructure security architecture; bachelor's in CS/InfoSec or equivalent; relevant certifications preferred; scripting/automation experience and security tooling expertise.
SIEM, EDR/XDR, IAM/PAM, AWS, Azure, GCP, Python, PowerShell
4w
Save
Mark Applied
Hide
Cyber Security Engineer
Plano or San Jose or Irvine or Broomfield
$123k-$197k/yr OnsiteFull Time
Broadcom
BroadcomNASDAQ: AVGO: Designs and sells semiconductors and infrastructure software to enterprises.
12+ YOEExpertise in incident response, threat hunting, SIEM integrations and automation; programming with Python and scripting; bachelor's in CS/IT and 12+ years relevant experience.
Python, Google Chronicle, Splunk, Phantom SOAR, CRIBL, Logstash, IBM QRadar, SIEM
6mo
Save
Mark Applied
Hide
Cyber Security Engineer- JCC2-JCO
Lackland Air Force Base, Texas, United States
RemoteFull Time
Semper Valens Solutions
Semper Valens Solutions: Provides systems engineering, software development, and technical support services.
5+ YOE5 years DoD cybersecurity RMF/NIST/STIG; 5 years security tools; 5 years network/os/db security; scripting (Python/PowerShell/Bash).
firewalls, IDS/IPS, SIEM, endpoint protection, Python, PowerShell, Bash, RMF, NIST, STIG
1w
Save
Mark Applied
Hide
Cyber Security Data Developer
Charlotte or Atlanta or Houston or New York City or Parsippany or Jersey City or Dallas
$105k-$148k/yr OnsiteFull Time
AIG
AIG: Global provider of property casualty insurance and risk solutions.
10+ YOERequires 10+ years in technology and 5+ years in enterprise UI development, with advanced React, Python, SQL Server or PostgreSQL, and cybersecurity, risk, cloud, or analytics experience.
React, Python, SQL Server, PostgreSQL, Node.js, TypeScript, AWS, Azure, GCP, Power BI, QlikView, SIEM
2w
Save
Mark Applied
Hide
Cyber Security Identity Staff Engineer
Bethesda or Palo Alto or Richardson or Seattle
$110k-$230k/yr OnsiteFull Time
GEICO
GEICO: Provides vehicle and property insurance services to consumers.
4+ YOE4+ years in technology or identity engineering; expertise with identity protocols and privileged access; experience with cloud providers, Linux/Mac/Windows; Python or Go; Bachelor's in CS/Information Systems or equivalent.
Active Directory, Kerberos, LDAP, SAML, SCIM, OAuth, OIDC, IGA, PAM, JIT, ITDR, NHI, EPM, MITRE, CIS, NIST, Python, Go, REST APIs, Linux, Mac, Windows, AWS, GCP, Azure, IaaS
1mo
Save
Mark Applied
Hide
Cyber Product Security Engineer, Lead
Plano, Texas, United States
OnsiteFull Time
Toyota
ToyotaNYSE: TM: Designs and manufactures vehicles and provides automotive financial services.
8+ YOE8+ years in application/product security, bachelor's in CS/InfoSec, experience with secure SDLC, threat modeling, vulnerability assessment, OWASP, programming in Java/Python/JavaScript, and security certifications (CISSP/CSSLP/CEH) preferred.
Java, Python, JavaScript, OWASP Top 10, Application Security Posture Management (ASPM), DevSecOps
This job has expired