Information Security Engineer
Job Duties:
- Design, document, test, maintain, and provide issue resolution recommendations for moderately complex security solutions related to networking, cloud, authentication and directory services, email, internet, applications, and endpoint security.
- Recommend new security tools and technological fixes to reduce security flaws and automate repetitive tasks.
- Enforce security policies related to endpoint and cloud security. Work with stakeholders to ensure compliance with security standards and regulatory requirements
- Implement logging and monitoring solutions to detect and respond to security events in real-time using SIEM platforms.
- Lead security incident response efforts and conduct comprehensive investigations in the event of security incidents or breaches.
- Maintain strong information security knowledge of threat actor tactics, techniques, and procedures to identify potential risks and develop achievable and effective mitigation strategies
- Design, implement, and maintain Security & Network Infrastructure.
- Responsible for security operations, intrusion defense, firewalls, security event management, Denial of Service detection/mitigation.
- Monitor and analyze security events and incidents using security information and event management (SIEM) tools to identify potential security threats and vulnerabilities
- Web application security and penetration testing to expose exploitable vulnerabilities.
- Create and maintain up-to-date documentation of configurations and designs.
- Work on system hardening, investigation, root cause analysis, performance tuning, and alert automation.
- Use Detection and Prevention Systems (Anomaly-based, signature-based, and host-based) for proactive monitoring of network traffic for malicious activity and prevent/block it.
- Conduct regular security assessments and vulnerability scans to identify and address potential risks.
- Develop and implement continuous monitoring programs used to conduct annual security reviews, self-assessments, security controls reviews, and system security posture reporting
- Preserve data from exploitation or misuse; collaborate with the network engineering teams to design, implement, and manage network security services and controls that safeguard network traffic and infrastructure.
- Conduct additional reviews of IT policies and procedures, including change management, data management processes, and information security.
- Work with key stakeholders and internal IT contacts to conduct risk assessments against new technologies being considered for deployment.
- Work with vendors to integrate security platforms into the infrastructure.
- Work with security frameworks including OWASP, NIST, and CIS benchmarks.
- Other similar duties as assigned.
Job Requirements:
- Job requires a Master's degree in Computer Science, Computer Engineering, or equivalent degree with 3 years of experience in the Job offered or any occupation in which the required experience was gained.
- Employer will accept Bachelor's degree in Computer Science, Computer Engineering, or equivalent degree with 5 years of experience in the Job offered or any occupation in which the required experience was gained.
- Experience to include: SIEM, IBM QRADAR & Splunk; Vulnerability Management and threat mitigation; IPS/IDS, antivirus, ePO, Endpoint Tools: Crowdstrike Falcon EDR & Ivanti Endpoint Security, Incident & Threat Management; Firewalls: Palo Alto, Force Point Sidewinder & Malware Analysis.
- Various worksites: relocation to project-based unanticipated locations within USA possible.
To apply Send resumes to: Attn. Sujatha Badabagni, Manager, 9th Networks Inc., 17 Grand St, Suite 302, Somersworth, NH 03878.