Comcast - Atlanta, GA

posted 9 days ago

Full-time - Mid Level
Atlanta, GA
Broadcasting and Content Providers

About the position

The Senior Security Engineer for Managed Services at Comcast Cybersecurity plays a crucial role in supporting the Enterprise Solutions teams and delivering PCI-as-a-Service to customers. This position is responsible for operational and compliance monitoring of security controls, reviewing security logs, reconciling security events, and managing risk assessment and management principles. The engineer will implement strategies based on industry best practices, particularly PCI, and ensure continuous measurement and communication of required metrics while integrating knowledge of business and functional priorities.

Responsibilities

  • Manage day to day operations and service level agreements from the 3rd party security vendor to meet customer obligations.
  • Coordinate the deployment of agents within client environment and work with client and 3rd party security vendor to configure the agent for monitoring of sensitive files and folders and ensure centralized reporting.
  • Ensure continuous compliance of controls (e.g. agents continue to report-in, device log health, etc.).
  • Review daily log file reports from 3rd party security vendor and highlight potential errors or anomalies. Investigate and escalate issues to relevant information security, technology, operations team within Comcast for Comcast managed devices, or escalate to client for devices outside of Comcast managed services scope.
  • Review or conduct internal vulnerability scans for new rogue devices or failed scans. Escalate to relevant information security, technology, operations team within Comcast for Comcast managed devices, or escalate to client for devices outside of Comcast managed services scope.
  • Launch or work with 3rd party security vendor to launch maintenance scans to ensure passing scans. Summarize status, findings and trends to internal and external leadership.
  • Review monthly external vulnerability scans. Escalate to relevant information security, technology, operations team within Comcast for Comcast managed devices, or escalate to client for devices outside of Comcast managed services scope.
  • Coordinate annual internal and external penetration tests with client and 3rd party security vendor. Escalate to relevant information security, technology, operations team within Comcast for Comcast managed devices, or escalate to client for devices outside of Comcast managed services scope.
  • Work directly with customers to understand and resolve issues, building strong client relationships; Translate complex technical issues into simple terms for customers.
  • Coordinate annual Self-Assessment Questionnaire (SAQ) PCI-DSS requirement with clients and 3rd party security vendor. Provide on-demand SAQ portal support to clients in coordination with 3rd party security vendor.
  • Coordinate system accessibility for Comcast and Client, and ensure access is appropriate and managed.
  • Create or contribute to the development of policies and procedures related to assigned information security processes.
  • Compile metrics for key processes to allow for accurate status reporting and trending to assist in review of current processes and identify areas for performance/continuous improvement.

Requirements

  • Working knowledge of PCI DSS and familiarity with other security/industry standards (e.g., NIST, CVSSv3, OWASP).
  • Hands-on experience with the remediation of security vulnerabilities.
  • Excellent written and verbal communication skills.
  • High level of attention to detail when working with various data formats, ensuring data integrity throughout the process.
  • Ability to consume large amounts of data in various forms and have proficiency in data collection, processing, and analysis using tools such as Excel, custom tools, and other data analytics platforms.
  • Ability to analyze large data sets for trends, inconsistencies and insights, and translating them into actionable recommendations.
  • Excellent problem-solving and troubleshooting skills, including experience diagnosing, troubleshooting, and resolving issues efficiently.
  • Expertise in advanced Excel functionalities (e.g., VLOOKUPs, Pivots, complex formulas) and the ability to write scripts (e.g., Python, VB) to automate repetitive tasks is a plus.
  • Organizational skills to manage status, documentation and updates across various stakeholders.

Nice-to-haves

  • Experience with data analytics platforms beyond Excel.
  • Certifications such as CISA, CISM, CISSP, Internal Security Assessor (ISA), or PCIP.

Benefits

  • Medical & Dental
  • 401(k) Savings Plan
  • Generous paid time off
  • Life Milestones support including adoption assistance and childcare resources
  • Courtesy Services including free digital TV and internet for full-time employees
  • Discount tickets for Universal Resorts.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service