Назад
Company hidden
3 часа Π½Π°Π·Π°Π΄

IT Security Engineer

Π€ΠΎΡ€ΠΌΠ°Ρ‚ Ρ€Π°Π±ΠΎΡ‚Ρ‹
onsite
Π’ΠΈΠΏ Ρ€Π°Π±ΠΎΡ‚Ρ‹
fulltime
Π“Ρ€Π΅ΠΉΠ΄
senior
Английский
b2
Π‘Ρ‚Ρ€Π°Π½Π°
US
Вакансия ΠΈΠ· списка Hirify.GlobalВакансия ΠΈΠ· Hirify Global, списка ΠΌΠ΅ΠΆΠ΄ΡƒΠ½Π°Ρ€ΠΎΠ΄Π½Ρ‹Ρ… tech-ΠΊΠΎΠΌΠΏΠ°Π½ΠΈΠΉ
Для мэтча ΠΈ ΠΎΡ‚ΠΊΠ»ΠΈΠΊΠ° Π½ΡƒΠΆΠ΅Π½ Plus

ΠœΡΡ‚Ρ‡ & Π‘ΠΎΠΏΡ€ΠΎΠ²ΠΎΠ΄

Для мэтча с этой вакансиСй Π½ΡƒΠΆΠ΅Π½ Plus

ОписаниС вакансии

ВСкст:
/
TL;DR
IT Security Engineer (SIEM/Cybersecurity): Managing SIEM operations and investigating security incidents across network traffic, logs, and security controls with an accent on incident triage, threat detection, and vulnerability monitoring. Focus on automating security investigations with Python and shell scripting, analyzing PCAP and forensic data, and reducing false positives through reporting and SIEM tuning.

Location: Dallas, Texas, United States; office environment

Company

hirify.global Corporation operates in the energy and utility sector.

What you will do

  • Manage the SIEM environment, including agent installation, alert and rule configuration, reporting, and system health.
  • Analyze network traffic, logs, and incidents from multiple sources to assess severity and risk.
  • Identify, investigate, report, and resolve security incidents while coordinating the required response resources.
  • Deploy and maintain network security controls, compose security alerts, and advise incident responders.
  • Develop incident metrics, trend analyses, and tuning initiatives to reduce false positives.
  • Write scripts and programs to automate security triage and support coordination between users, IT engineering, and security operations.

Requirements

  • Bachelor’s degree in Computer Science or a closely related field and four years of related information security experience, or equivalent.
  • Experience with CIRT, CERT, CSIRC, or SOC operations and security incident response.
  • Experience with SIEM, antivirus, intrusion detection and prevention, firewalls, vulnerability assessment, vulnerability management, and log monitoring tools.
  • Shell scripting with Unix tools and Python; familiarity with operating systems, networking, TCP/IP, LDAP, 802.1x, SNMP, SSL, TLS, and IPSEC.
  • Knowledge of PCAP analysis, digital forensics, forensic tools such as Volatility or EnCase, the Lockheed kill chain, and NIST.
  • Availability to respond to emergency security incidents outside normal business hours.

Nice to have

  • Professional security certification such as CEH, CISSP, SSCP, or GIAC.
  • Experience with PCI compliance, government agencies, digital media analysis, or computer forensics.
  • Knowledge of LogRhythm or comparable SIEM technologies and scripting with PowerShell or Bash.

Culture & Benefits

  • Office-based work environment.
  • Regular communication with internal and external customers and senior management on technical and complex security matters.
  • Opportunity to participate in contracted security monitoring and analytical services with external vendors.

Π‘ΡƒΠ΄ΡŒΡ‚Π΅ остороТны: Ссли Ρ€Π°Π±ΠΎΡ‚ΠΎΠ΄Π°Ρ‚Π΅Π»ΡŒ просит Π²ΠΎΠΉΡ‚ΠΈ Π² ΠΈΡ… систСму, ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΡƒΡ iCloud/Google, ΠΏΡ€ΠΈΡΠ»Π°Ρ‚ΡŒ ΠΊΠΎΠ΄/ΠΏΠ°Ρ€ΠΎΠ»ΡŒ, Π·Π°ΠΏΡƒΡΡ‚ΠΈΡ‚ΡŒ ΠΊΠΎΠ΄/ПО, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡ‚Π΅ этого - это мошСнники. ΠžΠ±ΡΠ·Π°Ρ‚Π΅Π»ΡŒΠ½ΠΎ ΠΆΠΌΠΈΡ‚Π΅ "ΠŸΠΎΠΆΠ°Π»ΠΎΠ²Π°Ρ‚ΡŒΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡˆΠΈΡ‚Π΅ Π² ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΡƒ. ΠŸΠΎΠ΄Ρ€ΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β†’