Security Engineer

The Weather Channel

$90K — $120K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience in Security Operations or a similar position
  • Hands-on expertise with Endpoint Detection and Response (EDR) tools
  • Proficiency in CrowdStrike's Falcon Complete suite for incident handling
  • Familiarity with Security Information and Event Management (SIEM) and eXtended Detection and Response (XDR) systems
  • Experience with vulnerability assessment and patch management tools
  • Understanding of NIST Cybersecurity Framework and CIS Critical Security Controls

Responsibilities

  • Execute incident response procedures and support the IR process
  • Participate in handling security incidents and perform initial triage
  • Collaborate with MSSP and SOC for threat analysis and alert investigation
  • Utilize EDR tools to investigate and mitigate threats on endpoints
  • Maintain operational runbooks and incident response documentation
  • Conduct ongoing security assessments to identify vulnerabilities
  • Manage critical OS and firmware patching according to SLAs

Benefits

  • Opportunity to work in a dynamic and collaborative Cybersecurity team
  • Access to advanced security tools and technology
  • Engagement with top-tier managed security partners
  • Focus on continuous improvement in detection and response processes
  • Supportive environment for professional growth and development
Full Job Description
Security Engineer - SOC/Incident Response and Vulnerability Management

Summary

The Security Engineer will be a key contributor to the organization's Cybersecurity Program, focusing on maintaining the confidentiality, integrity, and availability of information assets. This role requires expertise in security operations, incident handling, and vulnerability management, with a hands-on approach to protecting the enterprise and executing documented security procedures.

Key Responsibilities

Security Operations & Incident Response (IR)
  • Execute and support documented procedures for the Incident Response (IR) process.
  • Participate in security incident handling, including initial triage, analysis, and basic remediation steps.
  • Work closely with the Managed Security Service Provider (MSSP) and the Security Operations Center (SOC) on alert investigation and threat analysis.
  • Utilize Endpoint Detection and Response (EDR) tools to assess and investigate threats and stop malicious activity on endpoints (servers, desktops, laptops).
  • Support business continuity and act as an escalation point for incident response decisions.
  • Maintain and update operational runbooks and incident response procedures.

Vulnerability Management (VM)
  • Execute and support documented procedures for the Vulnerability Management
  • (VM) process.
  • Conduct ongoing security assessments of infrastructure, identifying misconfigurations and producing remediation reports for corrective action.
  • Manage OS and firmware patching across client environments to maintain security baselines and reduce vulnerability exposure.
  • Ensure compliance with patching Service Level Agreements (SLAs), including patching Critical Severity (CVSS 9.0-10.0) vulnerabilities within 24 hours of release, and High Severity (CVSS 7.0-8.9) within 15 calendar days of release.
  • Support monthly vulnerability scans and log monitoring activities.

Cybersecurity Program Support
  • Monitor, manage, and maintain the overall Cybersecurity Program as directed.
  • Collaborate with managed security partners (CrowdStrike, Palo Alto) on continuous improvement processes for detection and response metrics (MTTD and MTTR).


Required Technical Skills and Experience
  • Proven experience in a Security Operations Center (SOC) or a similar security role.
  • Hands-on experience with Endpoint Detection and Response (EDR) solutions.
  • Expertise in using CrowdStrike (specifically the Falcon Complete suite) for endpoint protection and security incident handling.
  • Familiarity with Security Information and Event Management (SIEM) and eXtended
  • Detection and Response (XDR) platforms such as Palo Alto Cortex XDR.
  • Experience with patching and vulnerability assessment tools.
  • Knowledge of industry frameworks like NIST Cybersecurity Framework and Center for
  • Internet Security (CIS) Critical Security Controls.


Similar Jobs

More Jobs at The Weather Channel

More Information Technology Jobs

Find similar Security Engineer jobs: