Comcast
Comcast Cybersecurity: Security Systems Engineer
Company
Comcast
Role
Comcast Cybersecurity: Security Systems Engineer
Location
United States of America
Job type
Full time
Posted
2 hours ago
Salary
Job description
Job Summary
In this role, the ideal candidate will have direct experience in establishing technical minimum-security baseline secure configurations across multiple technology platforms. The candidate should be a great communicator with excellent interpersonal, organizational, and documentation skills. We are looking for a self-motivated and inquisitive Secure Configuration Engineer, who enjoys cyber security work and possesses both deep and wide expertise in the security space keeping systems and network devices hardened to minimize risks to the business. The ideal candidate will be part of a cyber security technical governance team working collaboratively with various technical teams in establishing and/or reviewing technical security controls. The candidate must think innovatively in how we can best report on compliance using automation for verification and aggregating results to a central executive level dashboard. The candidate will have experience with compliance tools spanning variant technology platforms.Job Description
Core Responsibilities
- Define, document, own, and maintain minimum security baseline configurations for network devices (with an emphasis on Comcast Business technologies), operating systems (Linux and Windows), Active Directory, databases, hypervisors, and cloud platforms including containers, orchestration tools, and supporting services
- Translate security principles and industry standards such as CIS, NIST, OpenSCAP, and PCI‑DSS into actionable, platform‑specific technical controls
- Review vendor security recommendations, threat intelligence, and emerging risks to continuously refine and improve secure configuration baselines
- Participate in technical security governance reviews for new platforms or services, major system upgrades, and significant architectural changes
- Evaluate existing system and platform configurations against approved security baselines and identify gaps or deviations
- Provide prescriptive, risk‑based security guidance to engineering teams while balancing security requirements, operational feasibility, and platform constraints
- Use, maintain, and optimize secure configuration and compliance validation tools across a diverse set of infrastructure and platform technologies
- Execute, analyze, and review secure configuration and compliance scans across on‑prem and cloud environments
- Validate scan findings for accuracy, risk severity, and business impact prior to escalation or remediation planning
- Partner with system, network, and platform engineers to validate remediation actions and ensure security controls are implemented effectively
- Identify configuration drift, recurring misconfigurations, and systemic control gaps across the environment
- Collaborate with infrastructure and platform teams to correct deviations, reduce operational risk, and limit repeat findings
- Recommend sustainable design changes, automation, or guardrails to prevent configuration drift and improve long‑term security posture
- Regular, consistent and punctual attendance. Must be able to work nights and weekends, variable schedule(s) as necessary.
- Other duties and responsibilities as assigned.
Requirements:Â
- 5+ years of technical systems engineering experience with an emphasis on cyber security and/or IT AuditÂ
- Detailed technical and security knowledge of various technology platforms including network devices, databases, operating systems (Linux, Windows), Active Directory, hypervisors, and cloud computing (Containers, orchestration tools, etc.)Â
- Thorough understanding of the latest security principles, techniques, and protocolsÂ
- Ability to work in a matrix team environment as well as independently, demonstrate excellent problem-solving abilities, be well organized, flexible, and self-motivatedÂ
- Ability to communicate effectively with systems engineers, network engineers and software developersÂ
- A strong passion to continuously learn, adapt to new technologies, and share knowledge in the cybersecurity domain.Â
- Ability to think critically and independentlyÂ
Additional Preferred Skills:Â
- Experience with network layer devices as a system administratorÂ
- Knowledge of security or compliance standards such as OpenSCAP, PCI-DSS, CIS Benchmark, NIST Framework, etc.Â
- Experience with configuration management tools such as Ansible, Puppet, Chef, etc.Â
- Thorough understanding of the latest security principles, techniques, and protocolsÂ
- Experience with reporting cyber security compliance across technology platforms and/or previous background in executive metric reportingÂ
- Experience with python, GO, bashÂ
Soft Skill requirements (team fit/personality requirements):Â
- Proven experience working in a matrix team collaborative environmentÂ
- Ability to work remote with minimal supervisionÂ
- Good verbal and written skillsÂ
Cyber Security Certifications, a plus:Â
- CISSP, CISM, CISA, GSEC, SSCP, CCSPÂ
Employees at all levels are expected to:
- Understand our Operating Principles; make them the guidelines for how you do your job.
- Own the customer experience - think and act in ways that put our customers first, give them seamless digital options at every touchpoint, and make them promoters of our products and services.
- Know your stuff - be enthusiastic learners, users and advocates of our game-changing technology, products and services, especially our digital tools and experiences.
- Win as a team - make big things happen by working together and being open to new ideas.
- Be an active part of the Net Promoter System - a way of working that brings more employee and customer feedback into the company - by joining huddles, making call backs and helping us elevate opportunities to do better for our customers.
- Drive results and growth.
- Support a culture of inclusion in how you work and lead.
- Do what's right for each other, our customers, investors and our communities.
Disclaimer:
This information has been designed to indicate the general nature and level of work performed by employees in this role. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications.
Skills
Communication, Network Security, Systems EngineeringWe believe that benefits should connect you to the support you need when it matters most, and should help you care for those who matter most. That's why we provide an array of options, expert guidance and always-on tools that are personalized to meet the needs of your reality—to help support you physically, financially and emotionally through the big milestones and in your everyday life.
Please visit the benefits summary on our careers site for more details.
Education
Bachelor's DegreeWhile possessing the stated degree is preferred, Comcast also may consider applicants who hold some combination of coursework and experience, or who have extensive related professional experience.Certifications (if applicable)
Relevant Work Experience
5-7 YearsComcast is an equal opportunity workplace. We will consider all qualified applicants for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, disability, veteran status, genetic information, or any other basis protected by applicable law.Similar jobs
Senior Application Security Engineer (SCA/SAST)
Trimble
Senior Cyber Security Engineer
SanDisk
Security Engineer, Governance and Trust
Chainguard
Product Security Engineer
Chainguard
Product Security Engineer
Chainguard
Staff Product Security Engineer
Digitalocean98