Position Summary
The Security Engineer will contribute to the implementation and maintenance of the information security program that utilizes a Managed Security Service Provider (MSSP). Focus on operationalizing security controls, collaborating with the MSSP, and ensuring the effectiveness of security tools and technologies. This role will focus on securing a cloud-forward architecture, AI-driven solutions, and end-user devices across a global enterprise.
Responsibilities
Key Responsibilities
- MSSP Collaboration: Work closely with the MSSP to ensure effective security monitoring, incident response, and vulnerability management. Monitor technical escalations
- Vulnerability Management: Contribute to regular vulnerability assessments, analyze findings, and coordinate remediation efforts with internal teams and the MSSP
- Security Incident Response: Participate in security incident response activities, including investigation, containment, and remediation
- Security Architecture Support: Contribute to the development and maintenance of security architecture, standards, and guidelines
- Documentation & Reporting: Coordinate accurate documentation of security systems and processes. Prepare reports on security metrics and performance indicators
- Ensure compliance with regulatory requirements across all regions
- Assist with creation of policies and procedures for data protection, user access management, and incident response
- Assist with cloud security initiatives and ensure AI-enabled systems comply with best practices
- Collaborate with senior team members on threat intelligence, vulnerability management, and incident response
- Coordinate cybersecurity training programs and foster a culture of security awareness.
- Assist in the development of a security awareness program that measurably reduces incidents caused by human error (e.g., phishing, social engineering)
Qualifications
Basic Qualifications:
- Bachelor's Degree or equivalent in Computer Science, Engineering, Information Security or related field
- 2+ years full-time work experience in security engineering, with a strong focus on security defense and incident response
- Technical expertise in multiple security domains, such as network security, endpoint security, Azure cloud security and identity and access management
- Excellent analytical and problem-solving skills, with the ability to diagnose and resolve complex security issues
- A proactive and results-oriented mindset with a passion for staying ahead of the evolving threat landscape
- Excellent communication, collaboration, and interpersonal skills, with the ability to effectively communicate technical information to diverse audiences
Preferred Qualifications:
- Understanding of security tools and technologies, including SIEM platforms (e.g., Splunk, Chronicle), EDR solutions (e.g., CrowdStrike), vulnerability scanners (e.g., Qualys), and penetration testing tools
- Knowledge of security frameworks and standards (e.g., NIST CSF, ISO 27001, SOC 2)
- Familiarity with the development of production services on public cloud providers (GCP, OCI, Azure or AWS)
- Experience with AI technologies and frameworks and incorporating them
- Scripting and automation skills (e.g., Python, PowerShell, Bash, Golang) are highly desirable