Security Engineer
McNees Wallace & Nurick LLC
| Company | McNees Wallace & Nurick LLC |
| Category | Engineering |
| Location | Remote - PA |
| Remote | Remote |
| Employment | Not stated |
| Level | Not stated |
| Salary | Not stated by the employer |
| Posted | 4 Aug 2026 |
| Last verified | 12 Aug 2026 |
| Source | Employer ATS (greenhouse) |
Description
Joining McNees Wallace & Nurick LLC means becoming part of a team that values your voice, your growth, and your impact on clients, colleagues, and the communities we serve. Since 1935, McNees has been a trusted, client-focused law firm delivering practical, results-driven legal solutions with integrity and a client-first philosophy. We are a full-service firm with more than 170 attorneys and 350 professionals, committed to excellence across a wide range of practice areas and industries.
At McNees, we are guided by our core values of authentic relationships, excellence, growth, and balance to foster collaboration and innovation. We support your success through mentorship, leadership development, and continuous learning opportunities. Our commitment to community runs deep, with a strong tradition of stewardship through pro bono work, charitable initiatives, and civic engagement. We also prioritize flexibility and well-being with a family-focused culture, reasonable revenue hour expectations, and technology that drives efficiency.
If you’re looking for an opportunity to do meaningful work with people who value integrity and collaboration, you’ll feel at home at McNees. McNees, Wallace & Nurick is actively seeking a Security Engineer to join our Information Technology department. At McNees, we believe our people are our greatest asset. We foster a culture of integrity, innovation, and collaboration - where your ideas matter, and your contributions make a real impact.
You will lead the design, implementation, and continuous improvement of the firm's cybersecurity program. This is a high-impact role for a security professional who thrives on solving complex challenges, strengthening organizational resilience, and partnering across teams to embed security into every aspect of technology operations. Reporting to the Chief Information Officer, the Security Engineer will serve as the firm's primary security expert, driving security strategy, incident response, risk management, and security architecture initiatives while helping to advance the overall capabilities of our IT team.
Responsibilities
Design, implement, and maintain enterprise security infrastructure, including firewalls, intrusion detection and prevention systems (IDS/IPS), endpoint protection platforms, SIEM solutions, and application control technologies.
Lead the execution of the firm's cybersecurity strategy and roadmap, aligning security initiatives with business objectives and risk management priorities.
Monitor security systems, investigate alerts, and coordinate responses to security incidents, including high-severity events and forensic investigations.
Conduct vulnerability assessments and penetration testing activities while partnering with system owners to remediate identified risks.
Develop, maintain, and enforce security policies, standards, and procedures aligned with industry frameworks such as NIST CSF, CIS Controls, and ISO 27001.
Manage identity and access management solutions, including multi-factor authentication, single sign-on, privileged access management, and periodic access reviews.
Support security and privacy compliance initiatives, audits, risk assessments, and third-party vendor security reviews.
Administer and optimize security tools, including email security gateways, web filtering solutions, and cloud security technologies.
Lead incident response, business continuity, disaster recovery, and major security-focused projects such as platform migrations and zero-trust initiatives.
Collaborate with infrastructure, cloud, and business teams to integrate security requirements into new and existing technologies and processes.
Advise firm leadership on cybersecurity risks, security architecture, and strategic technology investments.
Track emerging threats and security trends, and prepare metrics, dashboards, and reports demo