Engineer - Cyber Security
Las Vegas Sands Corp. · Las Vegas, NV · 4 days ago
Information TechnologyFull-time
Essential Duties & Responsibilities
- Configure, implement, maintain, and troubleshoot cyber security devices, tools, and solutions including Azure and Microsoft security products across the enterprise environment
- Monitor the health and performance of cyber security tools; tune configurations to optimize detection fidelity, reduce alert fatigue, and align monitoring to business-critical assets
- Conduct capacity planning for cyber security infrastructure, including compute, storage, and licensing requirements
- Lead and participate in the triage, containment, investigation, and documentation of security events and incidents
- Design and participate in cyber security exercises, including tabletop scenarios, incident response simulations, and red/blue team drills
- Identify and define system security requirements for on-premises and cloud-hosted systems
- Develop and maintain cyber security documentation, standard operating procedures, and protocols
- Collaborate with IT and business teams to investigate and resolve cyber security-related system issues
- Manage operational workflows including ticket submission and tracking, change management documentation, and participation in Change Approval Board (CAB) meetings
- Develop and maintain security metrics, dashboards, and reports; present findings to technical teams, leadership, and other stakeholders as appropriate
- Stay current on emerging threats, adversary TTPs, malware trends, forensic techniques, and the evolving threat landscape
- Perform job duties in a safe manner
- Attend work as scheduled on a consistent and regular basis
- Perform other related duties as assigned
Minimum Qualifications
- At least 21 years of age
- Proof of authorization to work in the United States
- Bachelor's degree in Computer Science or related field, or 3 years of hands-on experience in a relevant technical discipline
- Must be able to obtain and maintain any certification or license, as required by law or policy
- Experience in at least 4 of the following:
- SIEM installation, implementation and maintenance
- Microsoft native security platforms (Azure and various Microsoft security products)
- System Administration
- Network Administration
- Capacity planning
- Network architecture
- Cyber forensics
- Data Loss Prevention
- Firewall administration
- ID/SIP installation, implementation and maintenance
- Vulnerability and security configuration scanning
- Vulnerability management and penetration testing tools
- Endpoint protection and anti-malware solutions
- Cyber incident response
- Secure configuration management
- Threat intelligence
- Security metrics and reporting
- Ability to think clearly, prioritize, and perform under pressure in a fast-paced, high-stakes environment
- Must be self-motivated and a team player collaborating with a team that spans the globe
- Demonstrates responsibility and accountability
- Must be able to communicate effectively with team members, management, senior management and consultants both verbally and in writing
- Must be able to read, interpret, and maintain network and system diagrams
- Must be able to produce clear, accurate technical documentation and procedures for varied audiences
- Must be able to respond to calls as needed (24/7)
- Must be able to evaluate, implement, and integrate cyber infrastructure solutions within the existing environment
- Working knowledge of TCP/IP, network protocols, routing and switching, and network segmentation principles