Sr. Cyber Security Engineer
Role details
Job location
Tech stack
Job description
- Resolve in-depth, complex technical issues regarding service infrastructure and related components
- Determine customer security requirements by evaluating business strategies and expectations; researching information security standards; evaluating architecture/platforms; identifying integration opportunities
- Provide 'tier 3' and 'tier 4' in-depth analysis, incident response, and troubleshooting support for managed security services offering(s)
- Participate in efforts to identify current gaps in service, ultimately improving and streamlining the technical offerings of the service
- Collaborate with key peer stakeholders from other security services verticals, working to align goals and create collaborative capabilities, processes, and workflows
- Participate in projects and efforts focused on developing the technical strategy of the service offering, including maturity efforts to keep service offering competitive in the modern MSSP market
- Participate in cross-functional projects and efforts with other All Covered teams, external partners, peers, and professional organizations
- Advise SOC team on new & emerging security threats, assessing current service offerings to ensure adequate defense
- Participate in the design, deployment, support and maturation of new and existing managed security services
- Develop and manage operational playbooks, procedures and standards
- Perform other duties as required or assigned
Requirements
Sr. Cybersecurity Engineer is expected to possess extensive knowledge of security technology, risk assessment methodologies, policies, systems, and/or network administration practices. This skillset will enable them to work as part of the Security Operations Center (SOC) team to support the infrastructure of the SIEM and MEDR services. They will also have responsibility to provide 'tier 3' and 'tier 4' escalation support in the analysis of security threats. This position works closely with the Security Operations Center manager, analysts, peer engineers, and other teams within the All Covered/Konica Minolta ecosystem to accomplish these goals., * 5-7 years' experience in the Cyber security field
- 5+ years' experience administering & providing operational support in security disciplines (e.g. incident response, threat hunting, investigations, security infrastructure management, or monitoring services)
- Minimum 5 years' experience in content management work (e.g. develop custom detection rules, custom integrations, developing scripts, etc.)
- Current security-relevant certifications from an industry accepted certification body, such as CompTIA, ISC2, ISACA, or SANS
- Bachelor's degree in computer science, Information Security preferred, or equivalent combination of relevant education and experience
- Able to work independently with exceptional organizational and time management skills.
- Excellent verbal and written communication skills to clearly communicate business-critical problems and solutions to customers
- SME in a diverse range of cybersecurity concepts and controls that provides the ability to discuss, consult on, and drive solutions for customers
- Ability to exhibit leadership skills in a cross-functional team
- Experience in delivering on-time projects related to security technology implementation
- Experience within a Managed Security Service Provider (MSSP) environment
- Experience with a SOAR platform, including playbook/runbook creation as well as development of Python code that drives the automation of repeatable response processes
- Proficiency in operating systems including Microsoft Windows, RHES, CentOS, Ubuntu Linux, and MacOS
- Strong business acumen and a drive toward business growth