Cybersecurity Engineer I (Contract Talent)
Robert Half · San Ramon, CA · 1 wk ago
RemoteRemoteInformation Technology$33.65–$51.44/hrFull-time
About the Role
Robert Half is hiring a Cybersecurity Engineer I (Contract Talent) to join the Information Security Services department. This role develops and implements enterprise information security architectures and solutions for basic to medium complexity projects, serving as a security expert in application development, database design, network, and platform efforts. The position ensures project teams comply with enterprise and IT security policies, reduces company risk factors, and plays a critical role in incident response activities.
Responsibilities
- Security Product Design, Implementation, and Management
- Design and implement operationally ready, best-practice security solutions (tools and services) for basic to medium complexity projects to mitigate security threats and risks in areas including SIEM, Firewall, WIDS, WAF, DLP, RMS, Web proxy, Vulnerability scanning, and Virus/Malware management.
- Support team and vendors in developing secure solutions to meet business needs and provide security review and certification to ensure best practices and quality delivery of all technical solutions that meet security requirements.
- Execute technology refresh according to product roadmap and industrial best practices.
- Assist with developing and maintaining an effective security analytics platform using tools such as Hadoop and/or Splunk to provide better security intelligence.
- Assist with audits by documenting and demonstrating controls.
- Escalation and Security Incident Response
- Play a critical role in the technical coordination and remediation of incident response activities during each Security Incident Response event.
- Assist with technical assessments and research of computer-related security incidents, including malware analysis, fraud detection, packet-level analysis, and system-level forensic analysis to ensure the continuing development of security protection technology.
- Assist with assessment of severity levels of security threats (e.g., incidents, vulnerabilities, malicious code) and coordinate appropriate notifications or escalations in a timely manner to the Director of Information Security.
- Act as an escalation point to provide technical guidance to Security Operations when processing moderately complex user requests (via ServiceNow).
- Document and implement mitigation strategies for vulnerabilities discovered that may impact the company.
- Articulate vulnerabilities, application defects, technical controls, risks, and other complex security matters with the Business in an easily understood manner.
- Security Policies and Procedures
- Administer and monitor security profiles, review security violation reports, and investigate possible security exceptions, updates; maintain and document security controls.
- Participate in the evaluation of products and/or procedures to enhance productivity and effectiveness.
- Project Support
- Support team and vendors to gather external project requirements as directed.
- Collaborate with development teams to conduct Application Security assessments.
- Support the team in providing consultancy to internal customers on risk assessment, threat modeling, and fixing vulnerabilities.
- Other Duties
- Work overtime as needed.
- Act as an on-call contact outside regular working hours as needed.
- Remain accessible via assigned communication device as needed.
- Travel as needed.
- Work at various locations as needed.
- Work a nonstandard schedule as needed.
- Work evening or night shift hours as needed.
- Provide coverage for other positions, shifts, or functions as needed.
Requirements
- Enrolled in an accredited undergraduate university in a related field or equivalent experience.
- Security+ license or certification is a plus.
- Ability to communicate in-depth business processes to technical resources.
- Ability to create complex process flow diagrams or flowcharts that demonstrate business or system process flow.
- Working knowledge and direct experience managing complex security issues.
- Ability to gather, combine, and document requirements effectively to propose secure solutions.
- Ability to perform fit/gap analysis based on requirements, create detailed and complex test plans, and prioritize job responsibilities.
- Ability to write complex queries and reports.
- Ability to develop and manage project plans, meeting established deliverables and timelines.
- Ability to create thorough and complex documentation, gather information, and present status.
- Ability to use good judgment and think outside the box in addressing unique information security challenges.
- Ability to make sense of large security data sets using creative and out-of-the-box thinking; experience with Data Analytics.
- Ability to think independently and in a team setting to ensure security issues are addressed in a manner consistent with security principles.
- Possess a security mindset.
Skills
- Working knowledge and experience with cloud-based solutions and environments (IaaS, SaaS, PaaS).
- Experience with security-related technologies and solutions (firewalls, IPS, WIDS, WAF, SIEM, DLP, RMS, vulnerability scanner, web proxy, endpoint security, etc.).
- Network Security experience is a plus.
- Working experience and understanding of the SDLC.
Pay
The typical hourly pay rate for this position is $33.65 - $51.44 and is negotiable depending upon experience and location.
Benefits
- Medical, vision, and dental insurance.
- Life and disability insurance.
- Eligibility to enroll in the company 401(k) plan.