Configure, administer, and maintain enterprise security tools, controls, and policies.
Manage and support endpoint security solutions such as CrowdStrike, Symantec, Palo Alto, or similar technologies.
Implement and maintain Access Management and Privileged Access Management (PAM) solutions.
Support security telemetry, log collection, monitoring, and SIEM operations.
Secure Windows, Linux, and macOS environments across enterprise infrastructure.
Secure cloud and containerized environments, including developer workstations and Dev Containers.
Participate in security governance, policy management, architecture reviews, and stakeholder meetings.
Lead or support migrations of users, devices, and security platforms between environments.
Develop security automation and operational efficiencies using Python or other scripting languages.
Analyze security events, perform investigations, and leverage SQL queries for reporting and analysis.
Basic Qualifications
High School Diploma, GED, or equivalent certification.
4+ years of experience in Cybersecurity or Information Technology.
4+ years of hands-on Endpoint Security experience.
2+ years of experience with Cloud and Container Security technologies.
2+ years securing Windows, Linux, and macOS environments.
2+ years securing developer environments.
Experience configuring, administering, and maintaining enterprise security tools and policies.
Experience with Access Management, PAM, security telemetry, and logging solutions.
Strong knowledge of SIEM platforms, log analysis, and SQL querying.
Excellent verbal and written communication skills.
Preferred Qualifications
8+ years of experience with security technologies including EDR/AV, Application Control, DLP, Firewalls, Log Management, PAM, System Hardening, Threat Detection, Incident Response, and Vulnerability Management.
4+ years of experience with security configuration and incident management.
4+ years of AWS experience, including EC2, Lambda, RDS, and Route53.
3+ years of experience in Threat Hunting, Threat Intelligence, Red Team activities, and Vulnerability Management.
Strong knowledge of MITRE ATT&CK, NIST, OWASP, and other cybersecurity frameworks.
Experience securing application code and software development environments.
Experience migrating users, devices, and security technology stacks between environments.
Experience with Python, Go, or similar scripting/programming languages.
Advanced understanding of networking, infrastructure, and operating systems.
Ability to work independently and effectively within large distributed teams