Cyber Security Engineer

Westborough Operations Center
United States
26 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Network Operating System (NOS) Cyber Security Information Systems Linux Domain Name System (DNS) Intrusion Detection Systems Information Systems Security Architecture Professional Microsoft Software Network Architecture Remote Access Technology Software Vulnerability Management Enterprise Software Applications
+5 more
Software Security Firewalls (Computer Science) Information Technology Patch Management Vulnerability Analysis

Job description

  • Implementation, secure configuration, and ongoing management of the Bank’s security environments and applications. Examples of systems/functions a Cyber Security Engineer may be responsible for are firewall management, IDS/IPS, perimeter security, protective DNS, vulnerability detection/response, secure email and spam protection, application whitelisting, remote access, etc.).\n
  • Server ownership - building, hardening, securing, and ongoing management of assigned server assets.\n \n

  • Identifying and mitigating vulnerabilities on assigned assets.\n
  • Ensures assigned systems and required data is backed up successfully.\n
  • Ensures adherence to IT security control requirements.\n \n

  • Security Application ownership\n \n

  • Effective configuration of application functionality, detection, and mitigation abilities.\n
  • Identifying and mitigating vulnerabilities on assigned applications.\n
  • Review system, application, and security logs across assigned systems to ensure that all are functional and secure.\n \n

  • Manages and leverages third party vendor relationships as required.\n
  • Participates in the planning and execution of the Business Continuity and Disaster Recovery Plan.\n
  • Ensures assigned systems and applications are prepared for planned or unplanned DR failover.\n
  • Manages and communicates system and applications changes using the change management process.\n
  • Track and understand emerging security practices and threats. Leverage this knowledge to improve security configurations across the enterprise and hunt for potential or active threats.\n

Requirements

n

  • Bachelor’s Degree in computer science, information systems or equivalent work experience is required \n

Work Experience\n \n

  • Experience managing and securing Microsoft Windows or Linux is is required \n
  • 5+ years experience supporting security components and applying security best practices across an enterprise application/network infrastructure is required \n

Knowledge, Skills, and Abilities\n \n

  • Working knowledge of IT security controls and how to manage their effectiveness.\n
  • Strong understanding of cybersecurity protocols, including intrusion detection systems, firewalls, patch management, and vulnerability management.\n
  • Formal technical training on Microsoft technologies, Network Operating Systems and Internet perimeter components required.\n
  • Working knowledge of CIS Top 18 Controls or alternative security frameworks.\n
  • Certified Information Systems Security Professional (CISSP) desired but not required.\n
  • An ability to perform independent analysis of complex problems and distill relevant findings and root causes\n
  • Must possess excellent analytical, organizational and documentation skills.\n
  • Experience analyzing and interpreting alert notifications from organizations such as FS-ISAC and CERN\n, * Industry standard certification required in a technical discipline to include one of the following Network Operating System (Microsoft), or Network infrastructure, or Information Security. Required \n

Benefits & conditions

  • Monitor security alerts and dashboards (SIEM, Vulnerability Management, , etc.) for suspicious activity.\n \n

  • Triage and respond to security incidents. Escalate to senior analysts or the incident response team when necessary.\n
  • Investigate and document security observations/incidents, ensuring resolution.\n
  • Analyze logs, network traffic, and endpoint activity for signs for malicious behavior.\n
  • Perform regular vulnerability assessments and prioritize risk within the network, system, and applications.\n \n

  • Create formal incidents and support the investigation of such incidents.\n
  • Conduct Security Assessments: Perform regular security audits, vulnerability assessments, and penetration testing to identify and mitigate potential risks.\n
  • Correlate telemetry data from security systems to identity cyber threats, risk patterns, and control weaknesses.\n

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.military.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

2:01 min

The necessity of developer intelligence amidst automated attack generation

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

5:03 min

Navigating new cybersecurity compliance frameworks and laws

Kurt Eder · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all