5 дней назад
Security Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Engineer (Cybersecurity): Implementing and maintaining security controls across hybrid infrastructure, cloud, endpoint, network, and mobile environments with an accent on incident response, vulnerability management, and security monitoring. Focus on configuring SIEM and EDR technologies, developing detection rules, investigating threats, strengthening access controls, and automating security workflows with Python or PowerShell.
Location: Hybrid role requiring candidates to be located in Saint Paul, Minnesota, United States
Company
provides a diverse IT environment supporting desktop services, on-site servers and applications, cloud-hosted solutions, and mobile solutions.
What you will do
- Implement, configure, maintain, and troubleshoot SIEM, EDR, firewalls, IDS/IPS, data loss prevention, mobile device management, DNS, and web security technologies.
- Monitor and triage alerts, correlate logs, investigate phishing, malware, and unauthorized-access incidents, and coordinate containment and recovery activities.
- Develop and tune detection rules, perform vulnerability assessments, prioritize remediation, and verify the effectiveness of security fixes.
- Maintain secure configuration baselines for endpoints, servers, network devices, cloud resources, and identity and access management controls.
- Use PowerShell, Python, or similar tools to automate security tasks, investigations, reporting, and remediation workflows.
- Support security reviews, audits, compliance activities, documentation, operational reporting, and collaboration with Shared Service IT colleagues.
Requirements
- Must be located in Saint Paul, Minnesota, United States; the position is hybrid.
- Four years of relevant cybersecurity experience and a bachelor’s degree or equivalent work experience as a Security Engineer.
- Hands-on experience with SIEM, EDR, firewalls, ACLs, IDS/IPS, data loss prevention, mobile device management, and endpoint protection.
- Experience with incident investigation, vulnerability management, cloud security in Azure or AWS, identity and access management, and secure configuration baselines.
- Knowledge of network access control, segmentation, microsegmentation, Cisco ISE, Cisco Umbrella, encryption, data masking, and secure data handling.
- Working knowledge of NIST, CIS, or ISO 27001 frameworks, technical documentation, audit evidence, threat modeling, and security reporting.
Nice to have
- CISSP, CISM, CompTIA Security+, or CompTIA CySA+ certification.
Culture & Benefits
- Collaboration with security and Shared Service IT colleagues across the US/EU security environment.
- Work on security projects spanning on-site infrastructure, cloud services, endpoints, networks, and mobile solutions.
- Equal employment opportunity for all qualified applicants.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
11 дней назад
EDR Engineer / Senior EDR Engineer (Cybersecurity)
78 500 - 117 500$
8 дней назад
Threat Hunter (Cybersecurity)
5 дней назад
Junior SOC Analyst (Cybersecurity)
28 - 35$
5 дней назад
Senior SOC Analyst
100 000 - 125 000$
10 дней назад
Security Engineer (Cloud Security)
6 дней назад