Cybersecurity Engineer

The Rockridge Group
New York, NY, United States
10 days ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Working hours
Regular working hours
Job source

Tech stack

Data Analysis Software System Penetration Testing Software as a Service Cyber Security Information Systems Information Leak Prevention Dynamic Multipoint Virtual Private Networks Monitoring of Systems Infrastructure as a Service (IaaS) Identity and Access Management Internet Protocol Security (IP SEC) Network Security
+13 more
Platform as a Service (PAAS) Remote Access Technology Anti-Phishing Security Information and Event Management Software Vulnerability Management Enterprise Software Applications Cloud Platform System Malware Information Technology Cybercrime Splunk Cisco Security Orchestration, Automation & Response

Job description

The Senior Cybersecurity Engineer is responsible for keeping information systems secure, determining access requirements, and planning and implementing information security programs, to help protect against cybercrime threats, including malware, phishing, viruses, denial-of-service attacks, information warfare and hacking. The position reports to the Director, Network & Security. The position also interfaces with varying levels of management, as well as functional counterparts at Company X Essential Duties:

  • Incident prevention, detection, containment, and recovery across IT systems, including process development, incident response and reporting:
  • Administration and management of security technologies and products: Security Information and Event Management (SIEM), security automation, Data Loss Prevention (DLP), endpoint security (EDR), sandboxing, threat intelligence, pen testing & vulnerability management, identity management
  • Experience with incident response, troubleshooting, and forensic analysis of malware events and vulnerability issues
  • Regular security monitoring and identification of possible intrusion or breach
  • Ability to use all available tools to conduct in-depth active and passive threat analysis and incident investigation, in order to identify security vulnerabilities or malicious activity
  • Monitor and evaluate the effectiveness of security controls and alignment with security frameworks
  • Participate in the creation and maintenance of security-related policies and procedures
  • Collaborate with internal and external stakeholders to proactively prepare, recognize and respond to various attack patterns.
  • Stay up to date with current security issues and regulations in the industry including researching latest findings, industry trends, and vendor-specific issues and resolutions; research and test new security tools
  • Mentor and train junior resources.

Requirements

  • Experience with network security monitoring systems for in-depth analysis of data and trends, including Splunk/Splunk ES (3+ years), Cisco AMP (1-2 years), Varonis (1-2 years)
  • Practical expertise using Splunk SPL to extract actionable insights from security analytics, including the ability to manage and configure input from various data sources, run complex searches, generate reports, create alerts and dashboards, fine tune Splunk ES correlation searches, etc.
  • Application of security architecture principles, standards, and controls to enterprise systems and system designs, including cloud environments (SaaS, PaaS, IaaS)
  • Creating and testing security event procedures for alert management and incident response
  • Knowledge of firewall/IPS devices and understanding of encryption and VPN technologies (IPSEC, SSL/TLS, GRE, DMVPN, etc.)
  • Good verbal/written communication skills and the ability to manage critical situations and maintain positive relationships with colleagues and clients.
  • Bachelor’s degree or equivalent in IT or related fields; industry accepted security certifications (CCNA Security, SANS, CISSP, etc.) a plus

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all