Insight Global - Dallas, TX

posted 4 months ago

Full-time - Mid Level
Dallas, TX
Administrative and Support Services

About the position

Insight Global is seeking a Sr. Cybersecurity Engineer for our jewelry insurance client. This role will be a focal point in the engineering of Information Security technology, procedures, and compliance. The role will primarily work with IT and the business as the Information Security technical resource. The position will also interact with external information security partners, vendors, and IT auditors. The successful candidate will be responsible for developing and maintaining secure, resilient enterprise-grade cloud processes in tandem with architects and system engineers. This includes the configuration and monitoring of security technologies within Azure, AWS, and GCP. The engineer will implement, configure, and maintain assigned security technologies such as Data Loss Prevention (DLP), Security Information and Event Management (SIEM), Identity and Access Management/Privileged Access Management (IAM/PAM), Web Proxies, Endpoint Detection and Response (EDR), Vulnerability Scanners, External Attack Surface Reduction, Cloud Security Posture Management (CSPM), and various Cloud Security Toolsets including EntraID, AWS Watchguard, and Cloudtrail. The engineer will also serve as the primary engineering contact with the Managed Detection and Response (MDR) service provider. In addition, the role involves analyzing, troubleshooting, and investigating security-related anomalies based on security platform reporting, network traffic, log files, and host-based and automated security alerts. The engineer will perform technical audit remediation and assist in the security governance of internal and external programming efforts. They will also contribute to the development of IT security architecture, controls, processes, standards, policies, and procedures that align with enterprise policies. Ensuring readiness for internal and external audits related to IT security and managing external information security partners will also be key responsibilities. The engineer will lead medium to large projects and initiatives that support information security practices and policies and partake in off-hours support rotation as required. Experience with security frameworks such as NIST CSF and CIS is essential.

Responsibilities

  • Develop and maintain secure, resilient enterprise-grade cloud processes in tandem with architects and system engineers.
  • Configuration and monitoring security technologies within Azure, AWS, and GCP.
  • Implementation, configuration, and maintenance of assigned security technologies such as DLP, SIEM, IAM/PAM, Web Proxies, EDR, Vulnerability Scanners, External Attack Surface Reduction, CSPM, Cloud Security Toolsets (EntraID, AWS Watchguard & Cloudtrail, etc.).
  • Be the primary engineering contact with MDR service provider.
  • Analyze, troubleshoot, and investigate security-related, information systems anomalies based on security platform reporting, network traffic, log files, and host-based and automated security alerts.
  • Perform technical audit remediation.
  • Assist in security governance of internal/external programming efforts.
  • Assist in the development of IT security architecture, controls, processes, standards, policies, and procedures that are aligned with the enterprise policies.
  • Ensure readiness for internal/external audits related to IT security and manage external information security partners.
  • Lead medium to large projects and initiatives that support information security practices and policies.
  • Partake in off-hours support rotation as required.

Requirements

  • 5+ years of hands-on, verifiable, technical security experience.
  • Expert level knowledge of various security tools operating in a cloud environment, primarily Azure, EntraID, M365 Defender, with AWS as secondary.
  • Strong understanding of SIEM management.
  • Strong understanding of enterprise, network, system, and application-level security technologies.
  • Strong understanding of enterprise cloud computing environments, distributed applications, and cloud network/network security layers.
  • Understanding of system hardening processes (CIS), tools, guidelines, and best practices.
  • Fundamental or greater understanding of encryption technologies.
  • Ability to manage medium to large information security projects (or initiatives) while maintaining high levels of quality and effectiveness.
  • Comfortable with working through ambiguity to clarify requirements and develop effective solutions.
  • Bachelor's degree from a four-year college or university.
  • Certifications: CISSP, CCSP, GCLD, GCSA, SC-100, AZ-305, GSEC, or equivalent.
  • Strong understanding of common technical, data, and security principles.
  • Understanding of Cyber Security and IS practices and principles.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service