
Senior Cybersecurity Engineer
Posted 3 days ago

Posted 3 days ago
This is a fully remote position, open to applicants in United States.
• Design, implement, and maintain security measures across network, infrastructure, data, and application layers.
• Assist in the development of security policies and standards to ensure compliance.
• Conduct risk assessments and contribute to strategies for protecting both structured and unstructured data.
• Support penetration testing and vulnerability assessments to identify and address risks.
• Create and sustain tools for automating threat detection, response, and reporting.
• Work collaboratively with DevOps and IT teams to integrate security into CI/CD pipelines and cloud environments.
• Monitor and address security incidents alongside SOC and IR teams.
• Aid in compliance efforts such as NIST and SOX through technical enforcement and documentation.
• Engage in red/blue team exercises and threat modeling activities.
• Assess emerging threats and suggest proactive security measures.
• Contribute to the development of playbooks, runbooks, and operational procedures for security operations.
• Help protect BNSF’s digital assets, infrastructure, and applications while enhancing the maturity of security operations.
• Must be authorized to work in the US.
• A minimum of 6 years of experience in cybersecurity engineering or related fields.
• A Bachelor’s degree or higher in computer science, cybersecurity, or a related area is preferred.
• Capable of working independently now and in the future without BNSF’s assistance for obtaining, maintaining, or extending employment authorization (preferred; H-1B transfers, TN nonimmigrant status, and STEM OPT candidates with at least 2 years of remaining eligibility are also considered).
• Proficient in Python or Java for automation, scripting, and tool development.
• Practical experience with penetration testing tools such as Burp Suite, Metasploit, and Nmap.
• Strong knowledge of network security protocols, firewalls, IDS/IPS, VPNs, and Zero Trust Networking principles.
• Familiarity with data security principles including encryption, DLP, and access controls.
• Experience in securing web and mobile applications, APIs, and microservices.
• Background in securing containerized and ephemeral application deployments.
• Understanding of infrastructure security in on-premises, cloud (AWS/Azure/GCP), and hybrid environments.
• Solid understanding of SOC workflows, SIEM platforms, and incident response.
• Certifications such as OSCP, CEH, CISSP, or GIAC are advantageous.
• Strong analytical and problem-solving capabilities.
• Excellent communication and documentation skills.
• Ability to work both independently and collaboratively within cross-functional teams.
• Enthusiasm for continuous learning and staying ahead of the threat landscape.
• Experience with secure access frameworks such as SASE and ZTNA.
• Contributions to open-source security tools or research are a plus.
• All positions require pre-employment background verification, medical review, and a pre-employment drug screen.
• TWIC is necessary for roles requiring unescorted access to secure areas of port facilities.
• An industry-leading 401(k) plan and a renowned Railroad Retirement program.
• Comprehensive medical, dental, vision, telemedicine, mental health, cancer support, and high-quality care network options for you and your dependents, including domestic partners.
• Health care spending accounts (HSA) with employer contributions.
• Life and disability insurance provided at no charge.
• Support for parental, pediatric, and family building needs.
• Reimbursement for adoption and surrogacy expenses.
• Dependent care spending account with employer match.
• Discounts on travel, gym memberships, counseling services, and wellness support.
• Annual bonus through the Incentive Compensation Program.
• Generous leave and time-off policies.
• Business travel expenses covered by BNSF.
GitLab
GitLab
Cisco
Lovesac
Get handpicked remote jobs straight to your inbox weekly.