NiSource

Cloud and Endpoint Security Engineer

Senior Cybersecurity Engineer – Cloud & Endpoint Security at NiSource, Columbus, OH. Engineer CrowdStrike Falcon, Azure/AWS/GCP security, SIEM/SOAR integration. 5+ yrs cybersecurity, 3+ CrowdStrike/EDR, threat detection expertise required. PTO, 401k, relocation.

Department - JobBoardly X Webflow Template
Direct Hire
Job Level - JobBoardly X Webflow Template
Mid-Level
ServiceNow Role Type:
ServiceNow Modules:
Department - JobBoardly X Webflow Template
IT Service Management
Department - JobBoardly X Webflow Template
Incident Management
Department - JobBoardly X Webflow Template
Integration Hub
Department - JobBoardly X Webflow Template
Security Operations
ServiceNow Certifications (nice to have):

Job description

Date - JobBoardly X Webflow Template
Posted on:
 
December 11, 2025

The Senior Cybersecurity Engineer – Cloud and Endpoint Security plays a pivotal role in engineering, administering, and optimizing NiSource’s security platforms across endpoint and cloud environments. This role combines hands-on expertise in CrowdStrike Falcon and cloud security (Azure, AWS, GCP) to deliver unified threat visibility, response automation, and proactive risk reduction across IT and OT assets.

Requirements

  • Engineer, administer, and optimize the CrowdStrike Falcon platform—covering policy tuning, sensor deployment, and health monitoring across enterprise endpoints
  • Develop and enhance custom detections, response logic, and playbooks leveraging Falcon Fusion, RTR, and threat intelligence data
  • Deploy, configure, and manage cloud security controls and integrations across Azure, AWS, and GCP—ensuring consistent protection across hybrid workloads
  • Integrate endpoint and cloud telemetry into SIEM (Splunk) and SOAR platforms for automation, enrichment, and real-time containment
  • Partner with the SOC and Incident Response teams to investigate alerts, correlate cloud and endpoint events, and validate detection efficacy
  • Lead efforts to secure endpoint and cloud baselines aligned with CIS, NIST, and NiSource technical specifications
  • Drive automation of security processes and metrics reporting using Python, PowerShell, and API-based integrations
  • Evaluate and pilot emerging security technologies, such as Falcon Discover, Identity Protection, or Cloud Workload Protection, to enhance defensive depth
  • Collaborate with infrastructure, architecture, and compliance teams to align controls with Zero Trust and regulatory frameworks (e.g., NERC, FERC, CIP)
  • Support vulnerability and patch management integrations using Falcon Spotlight and cloud-native tools
  • Participate in post-incident analysis and continuous improvement cycles to strengthen overall security posture

Benefits

  • Generous Paid Time Off
  • 401k Matching
  • Retirement Plan
  • Relocation Assistance

Requirements Summary

5+ years of experience in cybersecurity engineering, endpoint protection, or SOC environments. 3+ years of direct hands-on experience with CrowdStrike Falcon or a comparable EDR/XDR platform. 3+ years of threat detection engineering, endpoint telemetry, and incident response processes