HDR

Technology

PlatformSecurityEngineer2

$72–129k Folsom, Colorado, United States; Denver, Colorado, United States; Englewood, Colorado, United States; Minneapolis, Minnesota, United States; St. Paul, Minnesota, United States; Pennington, New Jersey, United States; Woodcliff Lake, New Jersey, United States; Olympia, Washington, United States FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid candidates.

The Brief

“Platform Security Engineer 2 at HDR. Skills: Platform security, Network security, Virtualization engineering, Compliance frameworks. Implement and maintain vDefend distributed firewall policies. Maintain NSX micro-segmentation rules”

Industry & Context.

Technology
Problems you'll solve

Root cause analysis

Eligibility Requirements

24/7 operations support, On-call flexibility, Remain reasonably reachable during off-hours

What They're Looking For.

Must Have

Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related or equivalent practical experience, Minimum 3 years of experience in infrastructure security, systems security, network security, or virtualization engineering, Experience with firewall rule administration, segmentation, and IAM in enterprise environments, Working knowledge of VMware vSphere, Experience with NSX, vDefend, SSO/federation, or policy enforcement platforms, Working knowledge of compliance frameworks such as CIS and NIST, Experience with scripting, automation, or configuration validation

Nice to Have

Hands-on experience with VMware NSX and/or vDefend in production, Exposure to Azure, AWS, or hybrid cloud security concepts, Familiarity with VCF lifecycle, SDDC Manager, Aria Operations, Aria Automation, or related platform tooling, Experience with policy-as-code or configuration-as-code tools, Security+ certification, VMware VCP certification, SC-900 certification, AZ-500 certification, Equivalent certifications

What You'll Do.

Implement and maintain vDefend distributed firewall policies

Maintain NSX micro-segmentation rules

Administer Identity Broker integrations

Administer federation trusts

Administer access policy mappings

Enforce platform security baselines

Enforce hardening standards for VCF management

Enforce hardening standards for workload domains

Conduct security configuration reviews

Partner with engineering teams on remediation planning

Develop reusable policy standards

Develop segmentation templates

Develop security implementation patterns

Support integration of platform security controls with VCF

Contribute to compliance guardrails

Map platform configurations to control requirements

Participate in root cause analysis for security incidents

Participate in root cause analysis for recurring control

Provide operational guidance to staff

Provide operational guidance to peer teams

How You'll Work.

Team & Collaboration

Real-time collaboration; Partner with engineering teams; Provide operational guidance

Full Job Description

At HDR, our employee-owners are fully engaged in creating a welcoming environment where each of us is valued and respected, a place where everyone is empowered to bring their authentic selves and novel ideas to work every day. As we foster a culture of inclusion throughout our company and within our communities, we constantly ask ourselves: What is our impact on the world? Watch Our Story: ' https://www.hdrinc.com/our-story'  Each and every role throughout our organization makes a difference in our ability to change the world for the better. Read further to learn how you could help make great things possible not only in your community, but around the world.  Independently implement and maintain vDefend distributed firewall policies and NSX micro-segmentation rules for moderate-complexity environments. Administer Identity Broker integrations, federation trusts, and access policy mappings across platform services. Enforce platform security baselines and hardening standards for VCF management and workload domains. Conduct recurring security configuration reviews and partner with engineering teams on remediation planning. Assist in developing reusable policy standards, segmentation templates, and security implementation patterns. Support integration of platform security controls with VCF tools such as Aria Operations, Automation, and logging/monitoring workflows. Contribute to compliance guardrails by mapping platform configurations to CIS, NIST, and internal control requirements. Participate in root cause analysis for security incidents and recurring control failures. Provide operational guidance to Platform Security Engineer I staff and peer teams. Schedule & Presence:  This on-site role supports 24/7 operations through real-time collaboration, standard shifts occur within a 6:00 AM - 6:00 PM window, Monday through Friday.  Additionally, this position requires scheduled on-call flexibility and the ability to remain reasonably reachable during off-hours for critical bu

Free ATS check

Applying for this Platform Security Engineer 2 role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Taleo (Oracle)

  • Taleo is older software — paste plain text resume content to avoid formatting issues.
  • Avoid special characters, tables, and columns in your resume for this ATS.
  • The application may time out on inactivity — copy your answers to a text editor as backup.

ANONYMOUS · UNFILTERED

What do employees actually say about HDR?

Real rants from real employees. Read before you apply.

Read Company Rants →