
Enterprise Security Engineer at Globus family of brands. Location Information: Remote, US. . This is a Contract to hire position. Position Close date: 6/10/25. . . . ABOUT GLOBUS FAMILY OF BRANDS. With 95+ years in travel, the award-winning Globus family of brands – consisting of Globus, Cosmos, and Avalon Waterways – creates vacations that offer travelers culture-rich experiences featuring must-see sights, the stories behind the scenes and countless joy-filled memories in more than 70 countries on six continents across the globe. With equal measures vision and hard work; team collaboration and commitment; adaptability, honesty, and integrity as well as a genuine love for all-things-travel, the Globus family of brands – a leader in international travel – now offers unparalleled, perfectly planned tours; inventive, inspiring cruises and modern, independent vacation packages to millions of travelers. . . Travel and/or in-office presence may be required at times. Generous benefit package including travel benefits and retirement.. . THE POSITION. The Enterprise Security Engineer will collaborate with IT professionals, business leaders, and other Information Security team members to establish and manage effective security controls for the organization. They are responsible for the following results:. . Collaborate with cross-functional teams to promote enterprise security initiatives and strengthen the organization’s security posture against evolving threats.. Execute security processes that enhance resistance to cyberattacks.. Serve as a subject matter expert to assess security gaps and recommend effective corrective actions. . Support the continuous monitoring and improvement of security controls, guiding teams toward higher levels of security maturity.. Proactively identify potential security risks and future needs, develop strategic mitigation plans, and lead the implementation of robust security solutions.. Support regular security assessments and audits to identify and mitigate risks.. Assist in evaluating, comparing, and selecting security tools based on cost, effectiveness, and vendor capabilities.. Clearly communicate risks related to security vulnerabilities and data protection issues.. Participate in compliance efforts related to SOX, PCI, and other applicable regulatory frameworks.. . EDUCATION. The preferred candidate will hold a Bachelor’s degree in computer science, Information Technology, Management Information Systems, Business or 4 years of any combination of education, training and experience. . . EXPERIENCE REQUIRED. . Solid understanding of core information security principles across key domains, including risk management, access control, network security, firewall architecture, and endpoint protection (e.g., MDM solutions).. Experience with public cloud platforms (e.g., AWS, Azure, GCP), with a strong emphasis on security best practices.. Excellent verbal, written, and interpersonal communication skills. Strong team player with a positive attitude and the ability to work effectively with cross-functional teams.. Self-motivated and resourceful problem solver with a track record of resolving complex technical challenges.. Exceptional organizational skills with the ability to manage multiple priorities and deliver results in a fast-paced environment.. . EXPERIENCE PREFERRED. . Experience in the design, implementation, and management of information systems, with a background in security engineering roles.. Scripting/development skills (e.g. Python, Ruby, or PowerShell). Experience managing Endpoint Detection and Response (EDR) or Managed Detection and Response (MDR) solutions in large-scale environments.. Systems Management experience and monitoring across complex environments composed of physical data centers, cloud environments and SaaS applications. Computer Security . Incident Response. (CSIRT) experience . Industry-recognized certifications in public cloud platforms such as AWS (e.g., AWS Certified Security – Specialty) or Microsoft Azure (e.g., Azure Security Engineer Associate).. Professional certifications from recognized organizations such as ISC2 (e.g., CISSP), ISACA (e.g., CISM, CISA), or SANS Institute (e.g., GSEC, GCIH).. . THE DEPARTMENT. The following teams make up the Technology department: Business Analysis and Quality Assurance, Applications Development, Applications Support, and Engineering. The group is responsible for developing, maintaining and optimizing the company’s technology platforms, while ensuring seamless operations across global regions (US, UK, AUS and Europe). The team drives software development, integrations, automation while also supporting localized IT needs, service delivery, business continuity, and compliance. This team plays a critical role in ensuring technology innovation is aligned with business strategy, delivering seamless IT experiences while supporting global operations. . . The Information Security team provides strategic oversight and guidance for cybersecurity and data protection across the organization. In collaboration with IT, the team defines and enforces security controls—detective, protective, and administrative—to safeguard systems, data, and operations from unauthorized access, theft, or destruction. . . EOE. While performing this job, it will require: Eight (8) hours or more a day of sitting; walking; standing; bending; answering the telephone; entering data into the computer; retrieving data from the computer or analyzing data from reports.. .