Security Engineer

Chesapeake Exploration, L.L.C.
Westbury, NY, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$80,000.0 - $95,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Word Microsoft Excel Active Directory Antivirus Softwares Microsoft Outlook Cyber Security Information Systems Domain Name System (DNS) Identity and Access Management Network Security Microsoft Visio NT File System (NTFS)
+12 more
Microsoft PowerPoint Simple Network Management Protocols Windows Desktop Transport Layer Security Firewalls (Computer Science) Information Technology ISO/IEC 27002 SentinelOne Expertise Wsus Server Operating Systems & Platforms Vulnerability Analysis Vmware

Job description

Position Summary -The Security Engineer is responsible for securing - maintaining and monitoring our enterprise infrastructure and networking security. The role is tasked with detecting vulnerabilities, planning with departments for deployment, and remediating vulnerabilities within the infrastructure. The

Security Information Engineer is also tasked with deploying best practices for securing information as well as platforms in the infrastructure.

Job Responsibilities: This list does not represent all responsibilities for this position. Candidates must be willing and able to assume roles and responsibilities other than these to meet the needs of the organization.

  • Manage IT Security operations
  • Vulnerability detection through scanning platforms (Rapid7)
  • Implementation and planning with business and engineering team of found vulnerabilities
  • Remediation of vulnerabilities through multiple vectors (WSUS, GPO)
  • Antivirus policy creation, reporting, and remediation on malicious files (SentinelOne)
  • Plan for GPO policy upgrades to secure business operations (Active Directory)
  • Audit and remediation of access permissions for NFS/NTFS systems (Shared folders)
  • Adhere to best practices of securing currently used applications and platforms (MFA, Certificate)
  • Coordinate with staff for deployment of remediation’s with urgent vulnerabilities (Emergency Remediation, I.E WannaCry)
  • Participate in internal and external audits (HiTrust)
  • Maintain or create policies, procedures, and other documentation when necessary
  • Find security gaps within the infrastructure
  • Development and Documentation of Security Practices
  • Lead and execute projects for security

Requirements

  • Four-year degree or higher in Information Systems or Security, or related field or equivalent combination of work
  • Very strong Hands-on experience (Required 5+ years) of computer related security experience in a technical role within Information Technology
  • Previous engineering experience preferred
  • Working knowledge of various Identity and Access management systems a plus
  • CISSP, CISM, CISA, CCSP, ITIL, Security + or other related certification preferred
  • Advanced understanding of infrastructure. Active Directory, Exchange, Windows desktop/server OS, VMware, storage systems, DNS, firewalls
  • Advanced understanding of protocols. WMI, SNMP, TLS, SSL, SMB, Cypher Suites
  • Advanced understanding of securing systems and platforms through device/policy hardening
  • Understanding of SSL Certificates
  • Ability to communicate technical information in a clear manner, both written and verbally, to end users
  • Proficient knowledge of MS Outlook, Word, Excel, Visio and PowerPoint
  • Experience with HIPAA, HITRUST, HITECH, PCI, ISO 27001, ISO 27002, URAC regulations and awareness and/or experience with CMS, NIST and other healthcare industry related regulations

Schedule:

  • Availability to work nights and weekends during (un)planned outages and other special circumstances, with 24/7 accountability.
  • Availability to enter on call rotation

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · WWC 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · WWC 2024

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

3:46 min

The history of abstractions and hardware virtualization

Edoardo Dusi · LIVE

Videos

See all

Related articles

See all