OverviewThis role supports enterprise security operations by supporting and maintaining controls across endpoint, network, identity, cloud, and application environments. The position plays a hands-on role in threat detection, incident response, vulnerability management, and SIEM engineering, while partnering with IT and application teams to embed security into day-to-day operations. The role also supports compliance initiatives and evaluates emerging technologies, including AI, to ensure secure adoption in a regulated, multi-environment organization
Responsibilities- Support and help maintain security controls across endpoint, network, identity, cloud, and application security layers.
- Assist with next-generation firewall policy management, Zero Trust network access controls, secure web gateway configurations, and DNS security.
- Triage security alerts, investigate incidents, and support containment and remediation efforts across the enterprise security tool stack.
- Support incident response activities across all IR phases and maintain response playbooks for threat scenarios relevant to hospitality, gaming, and entertainment verticals.
- Assist with building and tuning detection logic within the enterprise SIEM, support automated response workflows, and participate in threat hunting using endpoint, network, and identity telemetry.
- Support the vulnerability management program including scan coverage, asset tagging, and SLA-based remediation tracking.
- Support cloud identity security controls including conditional access policy, MFA enforcement, and mobile device management for Windows and macOS environments.
- Support email security operations including authentication controls, advanced threat protection tuning, and BEC detection.
- Support application security efforts and assist with the bug bounty and responsible disclosure program, including vulnerability triage and researcher communications.
- Evaluate AI-powered tools and agentic AI platforms from a security perspective, assess adoption risks, and contribute to internal AI use policies and guardrails.
- Support PCI DSS v4.0 compliance and NIST CSF 2.0 control mapping across a multi-environment organization.
- Collaborate with IT infrastructure, network engineering, and application teams to embed security into design and build processes.
QualificationsRequired Qualifications- 2-4 years of experience in information security, with exposure across endpoint, network, cloud, and identity domains.
- Hands-on experience with enterprise endpoint detection and response platforms, including prevention policy tuning, automated response workflows, and live response capabilities.
- Experience with next-generation firewall platforms, including security policy management, application-aware controls, and remote access VPN.
- Experience with cloud-delivered Zero Trust network access and secure web gateway platforms, including policy architecture and data loss prevention.
- Experience with enterprise SIEM platforms, including alert triage and basic detection rule development.
- Practical understanding of cloud identity and access management, including conditional access policies, MFA, and hybrid identity environments.
- Knowledge of vulnerability management platforms, scan design, and SLA-based remediation tracking.
- Working knowledge of PCI DSS v4.0 requirements and AI adoption security risks, including agentic AI systems and shadow AI.
- Ability to automate procedural tasks using Python, PowerShell, or similar scripting languages.
Preferred Qualifications- Experience with Microsoft 365 security, cloud identity platforms, and mobile device management for Windows and macOS fleets.
- Exposure to advanced email threat protection platforms and bug bounty program operations.
- Understanding of infrastructure as code and container security principles.
- Experience working with gaming commission cybersecurity requirements or comparable regulated-industry standards.
- Industry certifications such as Security+, CySA+, GCIH, or equivalent - or actively working toward one.
- Background in hospitality, gaming, retail, or multi-location enterprise environments is a plus.
Must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. The Company will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, STEM OPT, OPT, CPT or any other employment-based visa.)
BenefitsWhat we offer you:- Multiple benefit plans to suit your needs
- Paid Time Off
- 401K
- Opportunities for advancement
- Positive and respectful work environment where diversity is valued
- Generous employee discounts on dining, retail, amusements, and hotels
- Community volunteer opportunities
Disclaimer: The above information is intended as a high-level overview of the responsibilities and qualifications for the position and does not represent the full job description which will include all responsibilities, skills, duties, requirements, and working conditions associated with the job. For more information or to see the full job description, contact the Human Resources department at the location in which you are applying.
3li-EG1