PitchMeAI
PitchMeAI
Home›Jobs›IT & Cyber Security Engineer
OnTrac

IT & Cyber Security Engineer

OnTrac · United States

  • Hybrid
  • Full-time
  • $234,000 / year
  • United States

Job highlights

  • Design and maintain secure hybrid IT environments.
  • Enhance SOC capabilities and GRC automation.
  • Integrate security tools for unified posture.
  • Support risk assessments and vulnerability remediation.
  • Provide Tier 3 incident response and mentorship.

About the role

About OnTrac

OnTrac is hiring an IT & Cyber Security Engineer! Are you eager to join a dynamic and expanding company where you can both learn and make a meaningful impact? If you possess a strong sense of empathy, enjoy assisting others, thrive in a fast-paced environment, and excel at problem-solving, we encourage you to apply today to connect with a recruiter!

Founded in 1986, OnTrac has evolved into the leading provider of same-day and next-day delivery services in the U.S. for premier e-commerce and product-supply businesses, including five of the largest retailers in the U.S.

Location: Remote State/Territory: Washington D.C., Maryland, Virginia (Preferably)

Salary: $156,000. - $234,000. Annually, depending on experience.

Shift: Monday - Friday, 8:00am - 5:00pm (Hours subject to change based on the needs of the business)

Employment Logistics

The IT & Cyber Security Engineer is responsible for designing, building, and maintaining robust security architectures across hybrid environments (on‑prem + cloud). You will enable the SOC by improving detection and orchestration capabilities and enable GRC by translating regulatory requirements into technical controls and automated evidence collection. This is a "hands-on-keyboard" role that requires the ability to pivot between deep technical engineering and assisting in strategic support.

Unpacking The Benefits

We offer a comprehensive benefits package designed to support your health, financial security, and life outside of work.

  • Medical, Dental, and Vision insurance; HSA and FSA options
  • Life and Disability coverage (basic and voluntary)
  • Voluntary Accident, Critical Illness, Identity & Fraud Protection, Auto & Home, and Pet Insurance
  • Competitive benefits and 401(k) with company match
  • Referral Bonus Program - Up to $500 per referral!
  • Paid Time Off including Holiday pay
  • Employee Assistance Program & a Safe and clean work environment

The Must-Haves

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent practical experience)
  • 10+ years of progressive experience in IT and Security
  • At least 3 years in a senior or lead engineering capacity
  • Strong ability to code/script in Python, PowerShell, or Bash to automate repetitive security tasks and integrations
  • Deep understanding of SIEM logic, YARA rules, and EDR configuration to improve detection efficacy
  • Ability to interpret NIST CSF, ISO 27001, or SOC2 and implement the technical controls required to meet them
  • Preferred CISSP, CISM, or hands-on technical certifications like GIAC (GCIA, GCDA) or Offensive Security (OSCP)

Your Mission In Motion

  • SOC + GRC enablement: Design and implement technical solutions that assist the SOC in alert orchestration (SOAR) and provide the GRC team with automated risk monitoring and evidence collection capabilities.
  • Security integration: Lead the integration of security tools (EDR, SIEM, Cloud Security) to ensure a unified and visible security posture.
  • Risk management support: Assist in technical risk assessments by identifying vulnerabilities and recommending/implementing remediation engineering.
  • Architecture & engineering: Develop and maintain security infrastructure across hybrid environments (on‑prem/cloud), applying security by design to new deployments.
  • Incident response escalation: Serve as a Tier 3 escalation point for complex incidents requiring deep forensic and/or architectural expertise.
  • Mentorship: Guide junior engineers and analysts, fostering technical excellence and proactive security practices.

Paving Your Way To Your Success

  • You bring the “generalist” mindset, with proficiency across network security (firewalls, Zero Trust), endpoint protection, and cloud security (AWS/GCP).
  • You communicate exceptionally, explaining deep technical vulnerabilities to non-technical risk stakeholders and translating risk/context back into technical action.
  • You analyze complex issues with multiple variables and apply sound judgment in high-impact situations.
  • You define methods and procedures for new assignments, selecting and adapting advanced techniques to achieve results
  • You deliver innovative and effective solutions to challenging issues.

If you are excited to be part of our team and grow with our OnTrac family, we invite you to apply!

OnTrac is proud to be an Equal Opportunity Employer

Lasership, Inc. dba OnTrac Final Mile with its affiliates, including OnTrac Logistics, Inc. (collectively, "OnTrac" or the "Company") is an equal opportunity employer. We value diversity and welcome applications from individuals of all backgrounds, abilities, and experiences. We do not discriminate based on race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or age. Join us in our commitment to creating a diverse and inclusive workplace. If you are excited to be part of our team and contribute to our talent acquisition efforts, we invite you to apply.

Key skills/competency

  • IT & Cyber Security Engineer
  • Security Architecture
  • Hybrid Environments
  • SOC Enablement
  • GRC
  • SIEM
  • EDR
  • Python
  • Cloud Security
  • Risk Management

Skills & topics

  • IT Security Engineer
  • Cyber Security
  • Security Architecture
  • SIEM
  • EDR
  • SOAR
  • GRC
  • Python
  • Cloud Security
  • NIST CSF
  • Remote
  • Cybersecurity Engineer
  • Information Security

How to get hired

  • Tailor your resume: Highlight your 10+ years of IT and Security experience, focusing on senior engineering roles and specific skills like Python, SIEM, and cloud security.
  • Showcase automation skills: Emphasize your ability to code/script in Python, PowerShell, or Bash for security tasks and integrations.
  • Quantify achievements: Provide examples of how you've improved detection efficacy, implemented technical controls, or led security integrations.
  • Prepare for technical and behavioral questions: Be ready to discuss your experience with NIST CSF, ISO 27001, SOC2, and scenarios requiring problem-solving and communication.
  • Highlight preferred certifications: If you have CISSP, CISM, GIAC, or OSCP certifications, ensure they are prominently featured.

Technical preparation

Master Python, PowerShell, or Bash for automation.,Deepen SIEM logic, YARA rules, and EDR configuration.,Understand NIST CSF, ISO 27001, SOC2 controls.,Practice hybrid (on-prem/cloud) security architecture design.

Behavioral questions

Describe a complex security issue you resolved.,How do you explain technical risks to non-technical audiences?,Give an example of leading a security integration project.,How would you mentor a junior security analyst?

Frequently asked questions

What are the key responsibilities for an IT & Cyber Security Engineer at OnTrac?
As an IT & Cyber Security Engineer at OnTrac, you'll design, build, and maintain security architectures in hybrid environments. Key duties include enabling the SOC with better detection and orchestration, supporting GRC by translating regulations into technical controls, integrating security tools, performing technical risk assessments, and serving as a Tier 3 escalation point for incidents. You'll also mentor junior staff.
What qualifications are essential for the IT & Cyber Security Engineer role at OnTrac?
OnTrac requires a Bachelor's degree in a related field or equivalent practical experience, along with 10+ years of IT and Security experience, including at least 3 years in a senior or lead engineering capacity. Essential technical skills include coding/scripting (Python, PowerShell, Bash), deep understanding of SIEM logic, YARA rules, EDR configuration, and the ability to implement technical controls for NIST CSF, ISO 27001, or SOC2.
Is the IT & Cyber Security Engineer position at OnTrac remote?
Yes, the IT & Cyber Security Engineer position at OnTrac is a remote role. The company prefers candidates located in Washington D.C., Maryland, or Virginia, but it is a remote position.
What kind of benefits does OnTrac offer its employees?
OnTrac offers a comprehensive benefits package including Medical, Dental, and Vision insurance, HSA/FSA options, Life and Disability coverage, and various voluntary insurances (Accident, Critical Illness, Identity & Fraud Protection, etc.). They also provide competitive benefits, a 401(k) with company match, a referral bonus program, paid time off, holiday pay, and an Employee Assistance Program.
What is the salary range for the IT & Cyber Security Engineer position at OnTrac?
The salary range for the IT & Cyber Security Engineer position at OnTrac is between $156,000 and $234,000 annually, with the final salary dependent on the candidate's experience.
Does OnTrac require specific certifications for the IT & Cyber Security Engineer role?
While not strictly required, OnTrac prefers candidates with CISSP, CISM, or hands-on technical certifications like GIAC (GCIA, GCDA) or Offensive Security (OSCP) for the IT & Cyber Security Engineer role. These preferred certifications can significantly strengthen an application.
What programming languages or scripting skills are important for this role at OnTrac?
A strong ability to code or script in Python, PowerShell, or Bash is crucial for the IT & Cyber Security Engineer role at OnTrac. These skills are needed to automate repetitive security tasks and integrations, which is a key aspect of the position.
How does OnTrac support professional growth for its IT & Cyber Security Engineers?
OnTrac emphasizes learning and impact within a dynamic, expanding company. The role involves mentoring junior engineers, fostering technical excellence, and providing opportunities to work on cutting-edge security architectures across hybrid environments. The 'hands-on-keyboard' nature of the role also ensures continuous skill development.