Security Engineer
Role details
Job location
Tech stack
Job description
- Lead key security operations projects and initiatives.
- Maintain network visibility hardware and software configurations.
- Maintain and configure the Endpoint Detection and Response (EDR) platform.
- Develop new and maintain existing programs and scripts, primarily in Python.
- Enhance security automation by developing and updating integrations between systems.
- Evaluate and recommend improvements to existing security operations based on industry best practices and long-term strategic goals.
- Act as a senior member of the team for security related concepts and technologies.
- Analyze complex security threats and automate or streamline response processes.
- Analyze, identify, and respond to security related events.
- Perform security operations functions using SIEM and other detection methods.
- Advise and assist IT professionals with security mitigation practices.
- Participate in incident response activities as needed.
- Keep current on information security technologies and the threat environment.
- Other duties as assigned.
Please note, we are not offering H-1B or Green Card sponsorship for this position.
The University of Minnesota is committed to fostering local talent through employment opportunities. While this position utilizes a hybrid modality, prospective applicants must be located either in the state of Minnesota or near the Wisconsin border or otherwise open to relocation.
Requirements
The ideal candidate will be a self starter capable of leading various security operations projects from inception to completion. This role will have the capability to analyze complex technical problems and devise integrative solutions that address University-wide security priorities. Experience with network taps, network packet brokers, firewalls, programming (including REST API interaction), automation, process and procedure creation, and technical security concepts will be key to success in this role. This role will also participate in routine log analysis, security detection monitoring (IDS/IPS/EDR), and incident response related activities., * BA/BS plus at least four years of relevant experience, or master's degree plus at least two years of experience.
- Experience with networking concepts, protocols, and services.
- Experience with log analysis and monitoring.
- Ability to maintain confidentiality when dealing with sensitive information.
- Strong written and verbal communication skills.
- Ability to work independently and as part of a team., * Experience leading projects from inception to completion.
- Experience leading incident response activities.
- Experience with packet broker technologies such as Arista, Gigamon, Keysight, etc.
- Experience with Splunk and the SPL query language or other SIEM technology.
- Proficiency programming in one or more languages.
- Must be technically curious and self-motivated.
Benefits & conditions
The University offers a comprehensive benefits package that includes:
- Competitive wages, paid holidays, and generous time off
- Continuous learning opportunities through professional training and degree-seeking programs supported by the Regents Tuition Benefit Program
- Low-cost medical, dental, and pharmacy plans
- Healthcare and dependent care flexible spending accounts
- University HSA contributions
- Disability and employer-paid life insurance
- Employee wellbeing program
- Excellent retirement plans with employer contribution
- Public Service Loan Forgiveness (PSLF) opportunity
- Financial counseling services
- Employee Assistance Program with eight sessions of counseling at no cost
- Employee Transit Pass with free or reduced rates in the Twin Cities metro area