10 часов назад
Associate Principal, Cyber Defense (Cybersecurity)
112 700 - 186 900$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Associate Principal, Cyber Defense (SIEM/SOAR): Analyzing and responding to escalated cybersecurity incidents across logs, network traffic, endpoints, and security tools with an accent on threat detection, containment, eradication, and recovery. Focus on developing incident response and SOAR playbooks, improving SOC processes, integrating security monitoring systems through APIs, and supporting 24x7 on-call response.
Location: Chicago, United States; hybrid work with up to 2 days per week of remote work
Salary: $112,700–$186,900 per year; annual discretionary incentive target of 8%–15%
Company
is a systemically important financial market utility providing clearing and settlement services for options, futures, and securities lending transactions.
What you will do
- Monitor security alerts and perform advanced analysis of logs, network traffic, endpoint data, and other security events.
- Investigate Tier 1 escalations, determine incident scope and impact, and implement containment, eradication, and recovery measures.
- Document incident findings, response actions, lessons learned, and remediation activities.
- Collaborate with threat intelligence, security, IT, vendors, consultants, and stakeholders to improve detection and response.
- Guide Tier 1 analysts on complex security issues and contribute to SOC processes, procedures, and post-incident reviews.
- Participate in shift work and provide 24x7 on-call incident response support.
Requirements
- At least four years of information security experience, preferably in financial services.
- Hands-on security operations experience across at least three areas, including threat analysis, incident response, application security, operating systems security, cloud engineering, networking, programming, or AI prompt engineering.
- Proficiency with SIEM platforms such as Splunk, IBM QRadar, or LogRhythm; SOAR playbook development experience is beneficial.
- Experience with endpoint detection and response, IDS/IPS, firewalls, proxy servers, vulnerability assessment, directory services, operating system hardening, web application firewalls, and cloud security tools.
- Strong analytical, communication, consultation, teamwork, leadership, and project management skills.
- This position is not eligible for visa sponsorship.
Nice to have
- Knowledge of controls based on the NIST Cybersecurity Framework.
- Certifications such as CISSP, GCIA, GCIH, CHFI, GCFA, or CASP+.
- Experience with SOAR playbook development and previous project management experience.
Culture & Benefits
- Collaborative and supportive work environment focused on work-life balance and employee wellness.
- Tuition reimbursement and student loan repayment assistance.
- Technology stipend for remote work.
- Generous paid time off and parental leave.
- 401(k) employer match and medical, dental, and vision benefits.
Hiring process
- Submit an application and resume through the careers site.
- Receive email confirmation after the application is submitted.
- If selected for an interview, an representative will arrange the date, time, and location.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 дня назад
Principal Cybersecurity Engineer (AI)
184 800 - 277 200$
3 дня назад
Principal Security Engineer
147 050 - 198 950$
4 дня назад
Cyber Defense Response Analyst II (Cybersecurity)
93 900 - 156 500$
4 дня назад
Cybersecurity Engineer - US Federal
130 200 - 195 400$
4 дня назад
Senior Cybersecurity Engineer (US Federal)
159 600 - 239 400$
4 дня назад
Principal Cybersecurity Engineer (US Federal)
184 800 - 277 200$