Cybersecurity Engineer

King's Hawaiian

$95K — $115K *
US-AnywhereRemote in Colorado, US
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in IT or equivalent experience required
  • CISA, CISM, GSEC, CISSP, or other relevant certifications preferred
  • Strong knowledge of Azure AD security and IAM
  • Expert level knowledge of Active Directory Services
  • Strong understanding of SIEM management
  • Proficient in PowerShell and knowledge of Windows and Linux OS
  • Experienced in risk assessment and compliance standards

Responsibilities

  • Research and evaluate emerging cybersecurity threats
  • Translate raw SIEM data into actionable security improvements
  • Onboard and manage vendor relationships in the GRC tool
  • Review SOC2 reports and maintain vendor security compliance
  • Assist in maintaining PCI DSS 4.0 compliance
  • Identify and remediate internal and external security vulnerabilities
  • Audit systems to ensure secure configurations

Benefits

  • Professional development opportunities
  • Collaborative team environment
  • Access to cutting-edge cybersecurity research tools
  • Flexible work arrangements
  • Comprehensive health and wellness plans
  • Performance-based recognition and rewards
Full Job Description
The Cybersecurity Engineer is responsible for supporting the cybersecurity program and strategy at a tactical and operational level (network, infrastructure, applications, and databases) to ensure that security controls are functioning efficiently and effectively. The Cybersecurity Engineer will assist with security logging, monitoring, alert management, GRC system administration, incident handling, vulnerability remediations, and configuration management. Furthermore, this position also supports the Information Technology team in doing security research and development, product evaluations, consulting, project support, and any other operational tasks needed to support the overall requirements of the program and strategy.

ESSENTIAL JOB DUTIES AND RESPONSIBILITIES
  • Research and evaluate emerging cyber security threats and ways to manage them.
  • Translate raw SIEM data into actionable items for the environment.
  • Onboard and manage vendor relationships in our GRC tool.
  • Review SOC2 reports and interface with vendors to ensure they are maintaining adequate security posture based on risk to the organization.
  • Assist with maintaining PCI DSS 4.0 compliance as needed.
  • Proactively identify security flaws and vulnerabilities; both internal and external.
  • Audit systems for secure configuration.
  • Plan, implement, and upgrade security measures and controls.
  • Define, implement, and maintain corporate security policies.
  • Track common vulnerabilities and exposures (CVE) based security threats and map to internal controls and remediation plans.
  • Map security practices to regulatory controls (HIPAA, CIS, PCI DSS).
  • Monitor networks for security breaches and conduct root cause analysis (RCA) post breach.
  • Conduct penetration testing individually, with the security team, or consultants.
  • Perform security audits, risk assessments, and analysis.
  • Make recommendations for enhancing systems security.
  • Analyze corporate environment to identify potential intrusion points, leaks, and breaches. Research attempted breaches in security and rectify security weaknesses.
  • Provide additional information security assistance as required.


BASIC AND PREFERRED QUALIFICATIONS (EDUCATION and/or EXPERIENCE)
  • Bachelor's degree in related field (IT) or equivalent experience required.
  • CISA, CISM, GSEC, CISSP, or other relevant certifications preferred.


ADDITIONAL QUALIFICATIONS (JOB SKILLS, ABILITIES, KNOWLEDGE)
  • Strong knowledge of Azure AD and related security.
  • Strong understanding of Identity Access and Management Systems (IAM).
  • Expert level knowledge of Active Directory Services.
  • Strong knowledge of Security Incident and Event Monitoring and management (SIEM).
  • Strong knowledge of perimeter security methodologies.
  • Knowledge of physical and logical security standards.
  • Strong risk-assessment and measurement skills.
  • Strategic thinking, planning, solution assessment, and validation skills.
  • Strong collaboration, partnering, and teamwork skills.
  • Expert level knowledge of PowerShell.
  • Knowledge of SDLC methodologies.
  • Knowledge of ITIL and ITSM methodologies.
  • Windows Expert and working knowledge of Linux Operating Systems.


ESSENTIAL JOB DUTIES AND RESPONSIBILITIES
  • Research and evaluate emerging cyber security threats and ways to manage them.
  • Translate raw SIEM data into actionable items for the environment.
  • Onboard and manage vendor relationships in our GRC tool.
  • Review SOC2 reports and interface with vendors to ensure they are maintaining adequate security posture based on risk to the organization.
  • Assist with maintaining PCI DSS 4.0 compliance as needed.
  • Proactively identify security flaws and vulnerabilities; both internal and external.
  • Audit systems for secure configuration.
  • Plan, implement, and upgrade security measures and controls.
  • Define, implement, and maintain corporate security policies.
  • Track common vulnerabilities and exposures (CVE) based security threats and map to internal controls and remediation plans.
  • Map security practices to regulatory controls (HIPAA, CIS, PCI DSS).
  • Monitor networks for security breaches and conduct root cause analysis (RCA) post breach.
  • Conduct penetration testing individually, with the security team, or consultants.
  • Perform security audits, risk assessments, and analysis.
  • Make recommendations for enhancing systems security.
  • Analyze corporate environment to identify potential intrusion points, leaks, and breaches. Research attempted breaches in security and rectify security weaknesses.
  • Provide additional information security assistance as required.


BASIC AND PREFERRED QUALIFICATIONS (EDUCATION and/or EXPERIENCE)
  • Bachelor's degree in related field (IT) or equivalent experience required.
  • CISA, CISM, GSEC, CISSP, or other relevant certifications preferred.


ADDITIONAL QUALIFICATIONS (JOB SKILLS, ABILITIES, KNOWLEDGE)
  • Strong knowledge of Azure AD and related security.
  • Strong understanding of Identity Access and Management Systems (IAM).
  • Expert level knowledge of Active Directory Services.
  • Strong knowledge of Security Incident and Event Monitoring and management (SIEM).
  • Strong knowledge of perimeter security methodologies.
  • Knowledge of physical and logical security standards.
  • Strong risk-assessment and measurement skills.
  • Strategic thinking, planning, solution assessment, and validation skills.
  • Strong collaboration, partnering, and teamwork skills.
  • Expert level knowledge of PowerShell.
  • Knowledge of SDLC methodologies.
  • Knowledge of ITIL and ITSM methodologies.
  • Windows Expert and working knowledge of Linux Operating Systems.


Similar Jobs

  • State Street Corporation
    PKI Engineer
    $90K — $157K *
    State Street Corporation
    Berwyn, PA 19312 (Chester County)
  • State Street Corporation
    PKI Engineer
    $90K — $157K *
    State Street Corporation
    Clifton, NJ 07011 (Passaic County)
  • State Street Corporation
    PKI Engineer
    $90K — $157K *
    State Street Corporation
    Austin, TX 78745 (Travis County)
  • State Street Corporation
    PKI Engineer
    $90K — $157K *
    State Street Corporation
    Princeton, NJ 08540 (Mercer County)
  • State Street Corporation
    PKI Engineer
    $90K — $157K *
    State Street Corporation
    Quincy, MA 02169 (Norfolk County)
  • Tata Consultancy Services
    Software Developer
    $100K — $125K *
    Tata Consultancy Services
    Tampa, FL 33647 (Hillsborough County)

More Jobs at King's Hawaiian

More Information Technology Jobs

Find similar Cybersecurity Engineer jobs: