Security Engineer
Apex Systems · Denver, CO · 1 wk ago
Information TechnologyContract
Location: Denver, CO / Addison, TX / Charlotte, NC (Onsite)
Duration: 12 months
About the role
We are seeking an IT Security Specialist to join an enterprise network application layer intrusion, detection, prevention, and response team. This role involves developing and implementing custom alerts and monitoring controls to detect and mitigate threats. The specialist will provide leadership in assessing new threat vectors, design effective controls, and leverage advanced investigative skills for data correlation and log analysis. This position partners with senior leaders to triage security events and report on security initiatives.
Responsibilities
- Develop and implement custom alerts and monitoring controls to detect and mitigate threats.
- Assess new threat vectors and design and implement effective controls.
- Leverage advanced investigative skills using data correlation and log analysis tools.
- Partner with senior leaders from business organizations to triage security events.
- Report on impacting security initiatives.
- Develop and implement processes or controls in support of audit and risk requirements.
- Use new intelligence to update existing controls to detect new threats.
- Handle active security events and current threats, which may include on-call and after-hours work on a rotational basis.
Requirements
- A minimum of one year of experience with Web Applications is required.
- Strong intrusion analysis background and ability to identify and interpret web and application logs from a security perspective.
- Strong Splunk skill set, including the ability to create macros, alerts, and dashboards.
- Knowledgeable of current exploits and able to identify them from web and event logs.
- Working knowledge of Linux, Windows, and MacOS operating systems.
- Comfortable with scripting languages and regular expressions.
- Strong knowledge of common network protocols.
- Working knowledge of enterprise Client/Server architecture.
Preferred Qualifications
- Ability to interpret Apache web logs, IIS, Active Directory, and other security logs.
- Full understanding of modern web site deployments and technology.
- Familiarity with web application attacks including SQL injection, cross-site scripting, and remote file inclusion.
- Understanding of stateful firewalls and ability to interpret firewall rules.
- Experience with tools to detect anomalous or malicious data transmissions on the network.
- Experience with advanced analytics or security tools to detect anomalous events on the network.
Benefits
- Supplemental benefits including medical, dental, vision, life, and disability insurance plans.
- Employee Stock Purchase Program (ESPP) and 401K program with company match after 12 months of tenure.
- Health Savings Account (HSA) on the HDHP plan.
- SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions.
- Corporate discount savings program and other discounts.
- On-demand training program and access to certification prep, technical and leadership courses/books/seminars after 6+ months of tenure.
- Certification discounts and perks to associations including CompTIA and IIBA.
- Dedicated customer service team and a certified Career Coach.