Responsibilities- Security Tooling Operation: Operations, process improvement, and optimization of security tools, including but not limited to Azure Security (DLP, Compliance), Microsoft Defender (Endpoint, Cloud, Email), Rapid 7 (Vulnerability Management, SIEM) and Cisco Umbrella solutions. Evaluate, analyze, and deploy security technologies to enhance the organization's overall security posture and recommend additional tools or technologies that may be appropriate to extend program robustness.
- Incident Response and Threat Mitigation: Lead and participate in incident response activities, investigating security incidents and implementing corrective actions. Collaborate with teams to develop and implement proactive measures to mitigate potential security threats.
- Scripting and Automation: Develop and maintain scripts to automate security processes and tasks. Integrate security solutions into existing workflows for improved efficiency.
- Vulnerability Management and Attack Surface Reduction: operate vulnerability management program and coordinate vulnerability remediation efforts with respective technology teams.
- Threat Hunting: Actively searching for unknown and ongoing cyber threats that could exist within our enterprise; and identify proactive measures to remediate. This includes developing processes and mentoring junior staff to support activities.
- Emerging Threats: leverage public and proprietary threat intelligence feeds to identify new and emerging threats that we must prepare to defend against.
Preferred Qualifications- A four-year college degree or equivalent industry training and certifications (e.g., CEH, CISM, CompTIA Security+, CISSP, GSEC)
- Six to ten+ years of experience in a security analyst or related position; preferably within the financial services industry.
- Strong understanding of Microsoft's enterprise technology platform, including Azure, Active Directory, SQL, Office365, and the Windows server and desktop operating systems.
- Familiarity with industry frameworks, such as NIST, CIS-18 and ISO.
- Demonstrated expertise in managing security tools (SIEM, DLP, SOAR, IAM, EndPoint, IDPS).
- In-depth experience administering vulnerability management solutions such as Nessus, Qualys, Rapid7, or similar.
- Strong analytical and critical thinking skills and the ability to organize work in a logical, thorough, and succinct manner.
- Strong scripting and automation skills (Python, PowerShell, etc.).
- Highly self-motivated, results-orientated, and self-directed to handle multiple ongoing tasks.
- Flexibility to adapt to changing assignments and ability to effectively prioritize.
- Effective written and verbal English communication at all levels.
- Demonstrated ability to operate and innovate in a small team with a fast-paced environment, balancing both strategic and tactical needs.
This position description is intended to provide a general overview of the expectations and responsibilities of this position and may not include all tasks that may be assigned. As the nature of business demands change, so may the functions of this position. Additional duties and responsibilities may be assigned with or without notice.
Pay InformationThis position is exempt and is paid according to the laws of the State of Illinois. The pay range for this position is $95,000-140,000 USD per year. We are required to provide a reasonable estimate of the compensation range for this role. This range takes into account the wide range of factors that are considered in making compensation decisions including but not limited to experience, skills, knowledge, abilities, education, licensure and certifications, and other business and organizational needs. It is not typical for an individual to be offered a salary at or near the top of the range for a position. Salary offers are determined based on final candidate qualifications and experience.
Physical Requirements- This position requires the physical capabilities to work in an office environment, which may include prolonged periods of sitting at a desk and working on a computer. Corient seeks to make reasonable accommodations that enable individuals with disabilities to perform essential duties when possible.
- This position may require the ability to lift up to 15 pounds.
- This position is required to work onsite 4 days per week.
U.S. Eligibility Requirements- Must be 18 years of age or older.
- Must have unrestricted work authorization to work in the United States. For U.S. employment opportunities, Corient hires U.S. citizens or permanent residents. Exceptions to these requirements will be determined based on shortage of qualified candidates with a particular skill. Corient will require proof of work authorization.
- Must be willing to execute Corient's Employee Agreement or Confidentiality and Non-Disclosure Agreement, which require, among other things, post-employment obligations relating to non-solicitation, confidentiality, and non-disclosure.
What You Can Expect from Us Our dedication to the Employee Experience at Corient is aimed at supporting, empowering, and inspiring our talented team through:
- 401(k) Plan with Employer Matching
- Four Medical Plan options that is generously subsidized by Corient
- Employer paid Dental, Vision & Life and AD&D Insurance
- Employer paid Short-term & Long-term Disability
- Paid Maternity & Parental Leave
- Flexible Spending Accounts & Health Savings Accounts
- Dependent Care FSA
- Commuter & Transit FSA
- Corporate Discount Program - Perkspot
- Training Reimbursement
- Paid Professional Designations
- Giving back to the community - Volunteer days
This position description is intended to provide a general overview of the expectations and responsibilities of this position and may not include all tasks that may be assigned. As the nature of business demands change, so may the functions of this position. Additional duties and responsibilities may be assigned with or without notice.
Corient refers to the separate but affiliated entities under common control of Corient Holdings Inc. Client assets include all assets of Corient Holdings Inc., including majority- and minority-owned businesses.