Cybersecurity Engineer

🏢 Celcuity · all 7 jobs
📍 United States
💰 USD 120,000 - 130,000 / annual
📅 Posted Sep 14, 2026 · via Himalayas
🏷 Cybersecurity Engineering, Infosec, Security Operations, Soc Analyst, It Security, Cybersecurity Engineer +6 more
Apply on original site ↗

Reporting to the Executive Director, Information Security and GRC, the Cybersecurity Engineer will focus on supporting Celcuity ’s day-to-day cybersecurity operations and maintaining the effectiveness of the company’s information security controls, processes, and technologies. Serving as a key technical resource, the Cybersecurity Engineer will support security monitoring, incident investigation and response, vulnerability and patch management, security awareness, and the administration of essential cybersecurity systems and tools. Key responsibilities include reviewing and investigating security alerts, coordinating incident response and remediation activities, monitoring vulnerabilities and patching activities, administering security awareness initiatives, and maintaining information security policies, procedures, and operational documentation. The role will also review security advisories, support security assessments and compliance activities, evaluate the effectiveness of security controls, coordinate with internal technology teams and external service providers, and identify opportunities to continuously strengthen Celcuity ’s cybersecurity posture.
Responsibilities:

- Review, triage, and investigate security alerts and events.

- Perform investigation and analysis of security events and incidents, including suspicious activity, phishing, malware, unauthorized access, and potential account or system compromise.

- Coordinate incident response activities with the Security Operations Center (SOC), technology service providers, and internal stakeholders, including containment, remediation, and recovery.

- Document investigations, findings, and response activities, and recommend improvements based on lessons learned and emerging threats.

- Coordinate vulnerability and patch management activities, including oversight of patching performed by technology service providers.

- Review vulnerability assessment results, prioritize remediation using a risk-based approach, monitor remediation progress, and report outstanding vulnerabilities and risks to appropriate stakeholders.

- Administer the organization’s security awareness and phishing simulation program, including training, communications, and employee follow-up.

- Administer and support security tools and platforms used for monitoring, vulnerability management, threat detection, and incident response.

- Review firewall events, participate in periodic firewall rule and configuration reviews, and recommend improvements to endpoint, identity, email, firewall, and network security controls.

- Maintain information security policies, standards, procedures, operational documentation, and playbooks, and recommend updates based on evolving threats, technology changes, and business requirements.

- Support security assessments, audits, compliance activities, and operational metrics and reporting.

- Review vendor security advisories, assess potential organizational impact, and coordinate remediation or mitigation activities as appropriate.

- Provide cybersecurity input for new technologies and solutions and assist with vendor security questionnaires and related documentation.

- Perform other related duties as assigned.

Qualifications:

- AS or BS degree and 5 years’ work experience in cybersecurity, information security, security operations, or a related field, or equivalent combination of education and work experience.

- 1 year of experience supporting systems and services in a regulated environment; experience in an FDA-regulated environment is preferred.

- Security+, CySA+, SSCP, GSEC, or other relevant cybersecurity certifications highly desired.

- Experience investigating security alerts and supporting incident response activities.

- Experience assessing and prioritizing vulnerabilities and coordinating remediation and patch management activities.

- Experience administering or supporting security technologies, including security monitoring, endpoint protection, em

← All remote jobs

Want more like this? Browse every live remote developer role.All remote developer jobs →

Get remote developer jobs like this by email

One weekly digest. No spam, unsubscribe anytime.

Similar for you