Sr Info Security Engineer - Information Security
About the role
We are seeking a Senior Information Security Engineer to join our team. This role involves implementing and configuring security tools, enabling alert use cases, evaluating detection effectiveness, and evolving security controls based on real-world attack strategies. Additionally, the role includes incident response, cloud security implementation, automation, and communications.
Responsibilities
- Implement and configure security tools such as EDR, Email security, SOAR, and SIEM
- Enable alert use cases in accordance with MITRE attack framework
- Evaluate detection use cases for effectiveness and make changes accordingly
- Evaluate control gaps and recommend technologies to fill them
- Evolve security controls based on real world attack strategies
- Monitor environments and respond to security detections
- Work with security analysts to enrich detection data and confirm validity of incident
- Prepare post incident reviews and brief security leadership on response actions
- Implement and maintain cloud visibility and scanning tools
- Build and implement cloud environment scanning and detection methodology
- Prioritize findings for remediation
- Identify repetitive tasks and automate for efficiency
- Use scripting tools to aid in security tool implementation
- Leverage API integrations to aid in pulling in tool data
- Collaborate with peers across IT and security to plan remediation activities
- Communicate program status to security leadership
- Help foster a strong security culture where security is viewed as an enabler and not a blocker
Requirements
- Bachelor’s degree in computer science or related field; or equivalent post-high school education and/or work-related experience
- Preferred Certifications – CISSP, CCSP, AWS certified security, Azure Security Engineer
- At least 3 years of experience in a security engineer role
- At least 3 years of experience with implementing SIEM and EDR
- Experience with tools such as Tenable, Qualys, Rapid 7, Carbon Black, CrowdStrike, Splunk, Torq, Darktrace, Abnormal, Proofpoint or Mimecast
- Background in vulnerability management including remediation prioritization
- Scripting experience with Bash, Python or PowerShell
- Experience securing a regulated environment, PCI, GDPR, etc.
- Strong bias toward AI-driven automation and scalable security solutions
- Experience with one or many of the following areas of security technologies: Vulnerability management tooling, EDR tooling, Email Security tooling, DLP technologies, Edge detection technologies, Cloud native security technologies, SOAR and or hyper automation, SIEM technologies and use case enablement
- Solid knowledge of security risks/threats to large organization systems and networks, and ability to address those threats
- Experience with scripting, programming, and AI-driven, automation technologies
- Experience with designing controls to meet regulatory compliance such as PCI, SOC, and SOX
- Strong problem-solving skills and ability to analyze and resolve problems
- Able to translate complex technical information across all levels of the organization
- Strong relationship-building skills with business stakeholders
- Excellent interpersonal, communication, and presentation skills
Qualifications
- Bachelor’s degree in computer science or related field; or equivalent post-high school education and/or work-related experience
- Preferred Certifications – CISSP, CCSP, AWS certified security, Azure Security Engineer
- At least 3 years of experience in a security engineer role
- At least 3 years of experience with implementing SIEM and EDR
- Experience with tools such as Tenable, Qualys, Rapid 7, Carbon Black, CrowdStrike, Splunk, Torq, Darktrace, Abnormal, Proofpoint or Mimecast
- Background in vulnerability management including remediation prioritization
- Scripting experience with Bash, Python or PowerShell
- Experience securing a regulated environment, PCI, GDPR, etc.
- Strong bias toward AI-driven automation and scalable security solutions
- Experience with one or many of the following areas of security technologies: Vulnerability management tooling, EDR tooling, Email Security tooling, DLP technologies, Edge detection technologies, Cloud native security technologies, SOAR and or hyper automation, SIEM technologies and use case enablement
- Solid knowledge of security risks/threats to large organization systems and networks, and ability to address those threats
- Experience with scripting, programming, and AI-driven, automation technologies
- Experience with designing controls to meet regulatory compliance such as PCI, SOC, and SOX
- Strong problem-solving skills and ability to analyze and resolve problems
- Able to translate complex technical information across all levels of the organization
- Strong relationship-building skills with business stakeholders
- Excellent interpersonal, communication, and presentation skills
Skills
- Deep technical security expertise
- Knowledge of common security tools and technologies such as EDR, SIEM, cloud security tools in AWS and GCP, and vulnerability management tooling
Benefits
- Remote first flexibility
- Generous PTO
- 13 Paid Holidays
- Medical / Dental / Vision Insurance
- Life, Disability, and other benefits
- 401k with competitive Employer Match
- Community Service Days
- Generous Parental Leave
Pay
The salary/pay rate listed below is a good faith determination that may be offered to a successful applicant for this position at the time of this job advertisement based on the company hiring process and budget for this role and may be modified in the future. Actual compensation may vary from posting based on geographic location, work experience, and/or skill level.
Schedule
Full-time