{"id":2043209,"url":"https://alion.io/job/lennar-ltg-security-engineer-ii","title":"LTG - Security Engineer II","company":{"id":8113,"name":"Lennar","domain":"lennar.com","url":"https://alion.io/company/lennar","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Workday","truth_index":{"grade":"B","score":83,"open_postings":20,"ghost_share":0,"stale_share":0.9,"repost_share":0,"time_to_fill_p50_days":18,"computed_at":"2026-10-09T06:01:00Z"}},"role":"Security","role_family":"Security","seniority":"middle","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Irving, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":61000,"max_usd":120000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":318},"experience_years_min":1,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"CIS Benchmarks","optional":false},{"name":"Commander.js","optional":false},{"name":"DNS","optional":false},{"name":"PowerShell","optional":false},{"name":"Python","optional":false},{"name":"SIEM","optional":false},{"name":"TCP/IP","optional":false},{"name":"VPN","optional":false},{"name":"JavaScript","optional":true},{"name":"Node JS","optional":true}],"status":"live","first_seen_at":"2026-10-07T18:37:50Z","employer_posted_date":"2026-10-07","last_verified_at":"2026-10-10T00:13:24Z","board_verified":true,"closed_at":null,"days_open":2,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":2},"description":"The Security Engineer II implements and operates the security controls that protect the organization's technology environment. The role works across the security products the Enterprise Security Office runs, with the heaviest day-to-day work in cloud and network environments.\nThis is a hands-on role. The Security Engineer II builds what senior and staff engineers design, handles day-to-day configuration, tuning, and troubleshooting of assigned security products, works requests from IT and business teams, and takes part in an on-call rotation. The role is a place to build depth across the security toolset with senior engineers close by.\nPrincipal Duties and Responsibilities:\nEngineering and Implementation:\nImplement and maintain security controls across cloud and on-premises environments, including identity and access configuration, network segmentation, firewall and platform policy, logging, and key and secret management. \nBuild and configure what senior and staff engineers design, then test and validate the change before it reaches production. \nSupport deployments, upgrades, and migrations of security platforms, including version updates, failover testing, license renewals, and configuration backups. \nOnboard log sources into the SIEM and confirm they keep reporting. \nWrite small scripts to automate repetitive configuration, validation, and reporting work. \nReview system and resource configurations against the organization's security baselines and report drift to the owner. \nOperations and Support:\nHandle day-to-day configuration, tuning, and troubleshooting of assigned security products. \nRespond to security service requests and tickets within the team's service levels. \nTriage alerts and findings, separate false positives from real issues, and work with system owners through remediation. \nTroubleshoot problems that involve a security control, working with infrastructure and application teams to separate a policy issue from a routing or application issue. \nParticipate in a rotating on-call schedule for security platform issues and security incidents, including nights, weekends, and holidays. \nSupport the Security Incident Response Team during investigations with log retrieval, evidence collection, and containment actions under the direction of a senior engineer or incident commander. \nEscalate early when a problem is outside the scope of the role or carries risk beyond a routine change. \nCollaboration and Documentation:\nFollow change management: document the change, test it, and get approval before it goes to production. \nWrite and update product documentation, including configuration notes, runbooks, access instructions, and change records. \nExplain a control or a finding to a system owner who does not work in security, and say what the owner needs to do next. \nTake part in design and peer reviews, and bring questions and observations from day-to-day operations. \nSupport security reviews of new services and tools before they are approved for use. \nEducation and Experience Requirements:\nEducation: Bachelor's degree in Computer Science, Cybersecurity, Engineering, or related field, or equivalent practical experience. \n Experience: \n1 - 3 years of experience in security engineering, network engineering, systems administration, or security operations. \n1+ years of hands-on work in a public cloud environment (AWS, Microsoft Azure, Oracle OCI), including core identity, network, and logging services. \n1+ years supporting enterprise firewalls or remote access VPN preferred. \nWorking knowledge of TCP/IP, DNS, routing, NAT, VPN, and TLS, and the ability to trace a connection through them. \nExperience with at least one scripting language (Python, PowerShell, Bash) for automation and reporting. \nExposure to enterprise security platforms in a production environment, such as SIEM, endpoint protection, vulnerability scanning, or firewall management. \nAdditional Skills, Knowledge, and Experience:\nWorking knowledge of cloud identity and access controls, including federation between on-premises identities and cloud platforms. \nWorking knowledge of network security fundamentals, including segmentation, VNET and VPC design, firewall policy design, remote access, and TLS inspection. \nAbility to read logs, packet captures, and configuration files and reach a conclusion that holds up to review. \nAbility to document work clearly, including configuration notes, network and data flow diagrams (Visio, Lucid), and change records. \nFamiliarity with security standards, frameworks, and baselines (NIST, CIS, ISO), including CIS benchmarks for operating systems and cloud services. \nAbility to explain a control or a finding to a system owner who does not work in security, and to say what the owner needs to do next. \nAbility to manage several open tickets and small projects at once and give an accurate status on each. \nComfortable asking for help early and escalating rather than guessing on production systems. \nPersonal Attributes:\nTeam Player: Ability to work collaboratively with senior engineers, IT teams, and other stakeholders to reach shared goals. \nOwnership: Follows an issue to closure, including the documentation and the follow-up with the requester. \nCoachability: Takes feedback on designs and changes, and asks for review before making a change with broad impact. \nCommunication: Effective written and verbal communication, with a strong commitment to customer service. \nDetail-Oriented: Strong attention to detail, particularly in firewall policy, cloud permissions, and anything with production impact. \nAdaptability: Ability to balance planned project work against tickets and incidents in a fast-paced environment. \nAdditional Requirements:\nOn-Call: Participation in a rotating on-call schedule, including nights, weekends, and holidays, and availability for scheduled after-hours change windows. \nContinuous Learning: Commitment to staying current with industry trends and to building skills through hands-on work and training. \nTravel: Willingness to travel occasionally to support security deployments or upgrades at remote locations. \nThis role is for an engineer with a few years of experience who wants hands-on work from the first week: configuration changes, tuning, findings, and the tickets and incidents that come with running security products for a large organization. If you are passionate about cybersecurity and eager to grow in a fast-paced, collaborative environment, we encourage you to apply.\nPhysical Requirements:\nThis is primarily a sedentary office position which requires the incumbent to have the ability to operate computer equipment, speak, hear, bend, stoop, reach, lift, and move and carry up to 25 lbs. Finger dexterity is necessary. 10-20% of travel is required.\nThis description outlines the basic responsibilities and requirements for the position noted. This is not a comprehensive listing of all job duties of the Associates. Duties, responsibilities and activities may change at any time with or without notice.\nLife at Lennar\nAt Lennar, we are committed to fostering a supportive and enriching environment for our Associates, offering a comprehensive array of benefits designed to enhance their well-being and professional growth. Our Associates have access to robust health insurance plans, including Medical, Dental, and Vision coverage, ensuring their health needs are well taken care of. Our 401(k) Retirement Plan, complete with a $1 for $1 Company Match up to 5%, helps secure their financial future, while Paid Parental Leave and an Associate Assistance Plan provide essential support during life's critical moments. To further support our Associates, we provide an Education Assistance Program and up to $30,000 in Adoption Assistance, underscoring our commitment to their diverse needs and aspirations. From the moment of hire, they can enjoy up to three weeks of vacation annually, alongside generous Holiday, Sick Leave, and Personal Day policies. Additionally, we offer a New Hire Referral Bonus Program, significant Home Purchase Discounts, and unique opportunities such as the Everyone’s Included Day. At Lennar, we believe in investing in our Associates, empowering them to thrive both personally and professionally. Lennar Associates will have access to these benefits as outlined by Lennar’s policies and applicable plan terms. Visit Lennartotalrewards.comto view our suite of benefits.\nJoin the fun and follow us on social media to see what's happening at our company, and don't forget to connect with us on Lennar: Overview | LinkedIn for the latest job opportunities.\nLennar is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws.","description_format":"text","description_chars":8737,"description_truncated":false,"requirements":{"experience_years_min":1,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":false},"security_clearance":false,"languages":[]},"benefits":["Continuous learning","Education assistance","Health insurance","Parental leave","Retirement plans"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Real Estate","Property Development","Residential Real Estate"],"lifecycle":[{"event":"open","at":"2026-10-07T18:37:50Z"}],"visa":[{"country":"US","licensed_sponsor":true,"evidence":"H-1B filings in 12 months: 19 · green card filings: 1","filings_12m":19,"filings_prev_12m":19,"green_card_filings_12m":1,"median_offered_wage_usd":162500,"route":null,"cap_exempt":false,"checked_at":"2026-10-03T21:08:04+00:00","sources":["US Department of Labor: LCA disclosure data (H-1B, H-1B1, E-3)","US Department of Labor: PERM disclosure data (green cards)"],"filings_for_role_12m":1}],"liveness":{"score":63,"band":"ok","label":"Likely open","p_open":1,"p_active":0.632,"p_room":1,"age_days":1,"expected_fill_days":18,"reasons":["conf:1","stale_co","velocity","win:early","comp:brand"],"computed_at":"2026-10-09T06:01:00Z"},"pay":null,"html_url":"https://alion.io/job/lennar-ltg-security-engineer-ii","json_url":"https://alion.io/job/lennar-ltg-security-engineer-ii.json","meta":{"generated_at":"2026-10-10T00:16:45Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":388,"day_limit":5000,"remaining_today":4612,"minute_limit":60,"resets_at":"2026-10-11T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":8113},"rest":"https://alion.io/mcp/rest/get_company?id=8113"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Flennar-ltg-security-engineer-ii"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Flennar-ltg-security-engineer-ii"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Flennar-ltg-security-engineer-ii"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/lennar-ltg-security-engineer-ii\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Flennar-ltg-security-engineer-ii"}]}