Security Engineer / Incident Response

THE JUDGE GROUP, INC.
Cincinnati, OH, United States
9 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$124,800.0 - $145,600.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Cyber Security Intrusion Detection and Prevention Runbook Security Information and Event Management Data Logging Google Cloud Cloud Platform System Mitre Att&ck Security Orchestration, Automation & Response

Job description

  • Lead containment, eradication, and recovery efforts for endpoint, cloud, identity, and other security incidents
  • Serve as an escalation point for complex security events and incidents
  • Investigate security events and determine appropriate response actions
  • Contribute to the development and improvement of security playbooks and runbooks
  • Provide feedback to the Detection team to improve the quality of detections, enrichment, and automated response
  • Collaborate with cross-functional teams to improve logging visibility and response readiness
  • Contribute to operational maturity through playbooks, mentoring, tabletop exercises, detections, and audits
  • Mentor junior team members and help build their Security Operations capabilities
  • Communicate technical information effectively to both technical and non-technical stakeholders

Requirements

  • Strong experience in Security Operations, security investigations, and incident response
  • Hands-on experience investigating and responding to security events and incidents
  • Experience supporting containment, eradication, and recovery activities
  • Experience with security alerts and detections
  • Experience developing or maintaining security playbooks and/or runbooks
  • Understanding of Security Operations tooling such as SIEM/SOAR, EDR, email security gateways, and firewalls
  • Strong critical-thinking and problem-solving skills
  • Ability to break down complex technical topics and communicate them clearly to technical and non-technical audiences
  • Strong written and verbal communication skills
  • Demonstrated leadership within an individual contributor role
  • Experience mentoring junior team members

Nice-to-Haves:

  • Experience with detection engineering
  • Experience with rule or alert tuning
  • Familiarity with the MITRE ATT&CK framework, including mapping security activity or detections to relevant tactics and techniques
  • Experience with cloud environments such as Azure, Google Cloud Platform, or AWS
  • Familiarity with Google Security Operations
  • Experience contributing to tabletop exercises or security audits

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

6:10 min

Unlocking free learning credits via Google Cloud Innovators

Asrar Asrar · World Congress 2024

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:42 min

Container hosting options available on Google Cloud Platform

Federico Fregosi · World Congress 2022

Videos

See all

Related articles

See all