Cybersecurity Engineer
Location: Remote (US/Canada)
About the Role:
Constellation1, a Constellation Software Inc. company, is an industry leader in the integrated online real estate technology business and are partnered with some of the largest names in real estate. This position develops and deploys solutions delivering value to all lines of business that encompass Constellation1.
We’re seeking a highly motivated Cybersecurity Engineer to join our growing operations team. In this role, you’ll be on the front lines of protecting our colocation and cloud-based infrastructure. You will define, implement, and enforce security policies, and lead key initiatives across the security lifecycle—from vulnerability management to web application security, and everything in between.
This is an exciting opportunity to work in a high-impact role where your expertise will directly influence the security posture of mission-critical systems and services.
Key Responsibilities:
- Secure Infrastructure: Design and implement security controls across colocation facilities and cloud platforms (AWS, Azure, GCP).
- Policy & Governance: Develop and maintain security policies, standards, and procedures aligned with industry best practices and compliance requirements.
- Vulnerability Management: Lead vulnerability assessments and remediation efforts, working cross-functionally with DevOps and infrastructure teams.
- Application & Web Security: Configure and manage Web Application Firewalls (WAFs) and security rules, particularly with tools like Cloudflare and AWS WAF.
- Incident Response: Participate in detection, triage, and response to security incidents, conducting root cause analysis and post-mortems.
- Penetration Testing: Coordinate internal and third-party penetration testing, validate findings, and ensure timely resolution of vulnerabilities.
- Security Monitoring: Enhance monitoring capabilities and investigate anomalies using SIEM tools and security analytics platforms with tools like Wazuh and Crowdstrike.
- Cloudflare Management: Administer Cloudflare policies, performance configurations, and DDoS mitigation strategies.
- Compliance Support: Contribute to audit readiness and compliance initiatives (e.g., SOC 2, ISO 27001, PCI-DSS).
Qualifications:
- 5-8 years of experience in cybersecurity, with hands-on experience securing hybrid infrastructure (cloud + physical datacenter).
- Strong knowledge of network and application security principles.
- Proficient in managing security tools and platforms like WAFs, SIEMs, vulnerability scanners (e.g., Qualys, Tenable), and Cloudflare.
- Experience writing and enforcing security policies, playbooks, and procedures.
- Familiarity with scripting and automation (Python, PowerShell, Bash) is a plus.
- Certifications such as CISSP, GSEC, or Security+ are valued but not required.
Why Join Us:
- Work with a collaborative and forward-thinking team
- Tackle meaningful challenges in a modern, fast-paced tech environment
- Access professional development, certification support, and hands-on mentorship
