Description
Key Skills: Cybersecurity, Network Security, SIEM, EDR, Firewalls, VPN, Intrusion Prevention Systems, Cloud Security, AWS, Azure
Good to Have Skills: NDR, Threat Intelligence, OSINT tools like VirusTotal, AbuseIPDB, IPVoid, Shodan, OpenStack, KVM, HyperV, VMware, Windows, Linux, MacOS systems, GDPR, CCPA, HIPAA regulations, CISSP, GCTI, GCFE, GCIH, GREM, OSCP certifications, NIST CSF, ISO 27001/2, PCI, CIS Top 20, CMMC frameworks.
Roles & Responsibilities:
- Plan, implement, manage, monitor, and upgrade security measures for protection of engineering and corporate labs, applications, endpoints, systems, and networks.
- Identify and address network and system vulnerabilities and data integrity threats across the organization.
- Provide input, coordinate, and participate in testing new security designs, measuring Key Performance Indicators and metrics.
- Monitor comprehensive cybersecurity program including ongoing system patching to address known vulnerabilities and utilizing tools to prevent, detect, and mitigate cyber threats.
- Respond to system and network security breaches in support of the Cyber Security Incident Response Team.
- Collaborate with operational risk, compliance, legal, and audit teams and support privacy-based implementations for business and regulatory requirements.
- Investigate incidents by correlating information from tools such as EDR, NDR, Cloud Security, Threat Intelligence, sandboxes, and live forensics.
- Create and fine-tune monitoring rules in SIEM for onboarded technologies such as Windows, Linux, Firewall, Proxy, O365, and IPS.
- Conduct cyber risk assessments using frameworks or standards such as NIST CSF, ISO 27001/2, PCI, CIS Top 20, CMMC.
- Stay updated on emerging threats and provide strategic guidance for proactive security measures across the organization.
- Automate security processes using scripting and cloud security tools to enhance efficiency and reduce manual workload.
Experience Required: 6+ years of experience in cybersecurity with proven experience in network security, including LAN, WAN, cloud-based environments, and implementing security measures including firewalls, VPNs, and intrusion prevention systems.
Education: Bachelor's Degree or equivalent combination of education and work experience