via Dayforce
$90K - 130K a year
Design, implement, and automate enterprise security infrastructure including PKI, firewalls, and web proxy services, and lead strategic security initiatives.
Bachelor's degree and 7+ years in Information or Network Security with proficiency in Linux, network protocols, automation scripting, and enterprise security platforms.
For more than 170 years, The Hanover has been committed to delivering on our promises and being there when it matters the most. We live our values every day, demonstrating we CARE through our values, Sustainability initiatives and inclusive corporate culture. We are seeking a highly skilled Senior Information Security Engineer to join our IT Security organization in Worcester, MA or in a remote capacity. POSITION SUMMARY: The Senior Security Engineer is a technical leader responsible for the design, implementation, operation, automation, and continuous improvement of enterprise security infrastructure services. This role serves as the subject matter expert for Public Key Infrastructure (PKI), certificate lifecycle management, firewalls, web proxy services, Linux-based security platforms, and network security operations. The individual will lead strategic initiatives, provide advanced troubleshooting support, develop automation solutions, and partner with infrastructure, networking, cloud, and application teams to ensure secure and resilient enterprise services. This is a full-time, exempt position. IN THIS ROLE, YOU WILL: Lead the design, implementation, administration, and optimization of enterprise PKI and certificate management services, ensuring availability, scalability, and compliance with security standards. Own the certificate lifecycle management process, including issuance, renewal, revocation, discovery, monitoring, and remediation of expiring certificates across on-premises and cloud environments. Serve as the technical lead for Firewall services, including architecture, policy management, rule reviews, segmentation strategies, and security hardening. Manage and support enterprise Web Proxy solutions, including policy development, URL filtering, SSL/TLS inspection, access controls, and threat protection capabilities. Provide advanced network and security troubleshooting expertise, identifying and resolving complex connectivity, authentication, routing, DNS, TLS, and application communication issues. Partner with Network Engineering teams to design secure network architectures and implement security controls that align with business and regulatory requirements. Develop and maintain automation solutions using scripting and programming languages such as Python, Bash, PowerShell, or similar technologies to improve operational efficiency and reduce manual processes. Create automated monitoring, alerting, and remediation workflows for security infrastructure platforms and services. Administer and support Linux-based security platforms, ensuring system performance, hardening, patching, vulnerability remediation, and operational stability. Lead security infrastructure projects from planning through implementation, coordinating activities across multiple technical teams and stakeholders. Perform security assessments and configuration reviews to identify risks, vulnerabilities, and opportunities for service improvement. Develop and maintain technical standards, operational procedures, and architecture documentation for PKI, firewalls, proxy services, and Linux environments. Support incident response activities by providing deep technical expertise during security investigations, service outages, and cyber events. Evaluate emerging technologies and security solutions, making recommendations to improve the organization's security posture and operational effectiveness. Implement and maintain security controls supporting regulatory, audit, and compliance requirements. Provide technical leadership and mentorship to junior engineers and operations personnel, promoting best practices and knowledge sharing. Collaborate with cloud, infrastructure, and application teams to integrate security services into enterprise and cloud-native environments. Participate in on-call rotations and escalation support, serving as a senior resource for critical security and infrastructure incidents. WHAT YOU NEED TO APPLY: Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Engineering, or equivalent experience. 7+ years of experience in Information Security, Network Security, or Infrastructure Engineering roles. Demonstrated expertise in PKI, Certificate Authorities (CA), certificate lifecycle management, and TLS/SSL technologies. Extensive hands-on experience managing enterprise firewall platforms (e.g., Palo Alto, Check Point, Cisco Firepower, Fortinet, or similar). Strong experience supporting Web Proxy technologies such as Zscaler, Blue Coat/Symantec ProxySG, Netskope, or similar platforms. Advanced knowledge of TCP/IP networking, routing, switching, DNS, DHCP, VPNs, load balancing, and network security architecture. Strong expertise with Linux operating systems, including system administration, troubleshooting, performance tuning, and security hardening. Demonstrated experience developing automation using Python, Bash, PowerShell, Ansible, Terraform, or similar technologies. Experience with security monitoring, logging, and event analysis tools. Strong understanding of authentication and authorization technologies including LDAP, Active Directory, Kerberos, SAML, OAuth, and certificate-based authentication. Proven ability to troubleshoot complex, multi-tier application and network issues. Excellent written, verbal, and interpersonal communication skills. Authorization to work in the United States without current or future sponsorship (U.S. citizen or lawful permanent resident). BONUS POINTS FOR: Industry certifications such as CISSP, GIAC, Security+, CCNP Security, PCNSE, AWS Security Specialty, or equivalent. Experience with cloud security platforms including Microsoft Azure, AWS, and Google Cloud. Knowledge of Infrastructure as Code (IaC) and DevSecOps practices. Experience with enterprise vulnerability management and security compliance programs. Familiarity with container technologies, Kubernetes, and cloud-native security architectures. CAREER DEVELOPMENT: It’s not just a job, it’s a career, and we are here to support you every step of the way. We want you to be successful and fulfilled. Through on-the-job experiences, personalized coaching and our robust learning and development programs, we encourage you – at every level – to grow and develop. BENEFITS: We offer comprehensive benefits to help you be healthy, build financial security, and balance work and home life. At The Hanover, you’ll enjoy what you do and have the support you need to succeed. Benefits include: Medical, dental, vision, life, and disability insurance 401K with a company match Tuition reimbursement PTO Company paid holidays Flexible work arrangements Cultural Awareness Day in support of IDE On-site medical/wellness center (Worcester only) Click here for the full list of Benefits EEO statement: The Hanover values diversity in the workplace and among our customers. The company provides equal opportunity for employment and promotion to all qualified employees and applicants on the basis of experience, training, education, and ability to do the available work without regard to race, religion, color, age, sex/gender, sexual orientation, national origin, gender identity, disability, marital status, veteran status, genetic information, ancestry or any other status protected by law. Furthermore, The Hanover Insurance Group is committed to providing an equal opportunity workplace that is free of discrimination and harassment based on national origin, race, color, religion, gender, ancestry, age, sexual orientation, gender identity, disability, marital status, veteran status, genetic information or any other status protected by law.” As an equal opportunity employer, Hanover does not discriminate against qualified individuals with disabilities. Individuals with disabilities who wish to request a reasonable accommodation to participate in the job application or interview process, or to perform essential job functions, should contact us at:HRServices@hanover.com and include the link of the job posting in which you are interested. Privacy Policy: To view our privacy policy and online privacy statement, click here. Applicants who are California residents: To see the types of information we may collect from applicants and employees and how we use it, please click here. Compensation: The target hiring range for this role may vary based on geographic location and other factors, including merit or performance, demonstrated proficiency, skills for the role, education, travel requirements, and experience. Additional compensation may include an annual bonus (which could take the form of a general bonus, sales incentive, or short-term incentive), long-term incentive or spot recognition awards. The posted range reflects our ability to hire at different position titles and levels depending on background and experience.
This job posting was last updated on 8/21/2026