Staff Cyber Security Engineer

$125,000 - $155,000/Yr

NBC - Englewood Cliffs, NJ

posted 5 months ago

Full-time - Mid Level
Remote - Englewood Cliffs, NJ
Broadcasting and Content Providers

About the position

As a Staff Cyber Security Engineer at NBCUniversal, you will play a crucial role in the NBCU Security Architecture team, partnering with various NBCUniversal businesses, enterprise IT, and the Cyber Security organization. Your primary responsibility will be to ensure that technology is designed and deployed securely, aligning with Cyber Security and enterprise technology strategies. This position is pivotal as NBCUniversal evolves its processes and services, and you will be at the forefront of this transformation. In this role, you will conduct security and threat analysis of business and enterprise initiatives that involve new or modified technology deployments. It is essential that these initiatives incorporate Information Security best practices and guidelines into their system designs. You will function as a technical and engineering subject matter expert across various Cyber Security technology areas, focusing on network, application, cloud, and enterprise security controls. Your analysis will require collaboration across the Cyber organization and partnership with business stakeholders, ultimately resulting in security guidance and/or mitigation requirements. A successful candidate will also be responsible for effectively communicating the importance of key Cyber programs and services to obtain support, trust, and buy-in from the business. This role requires a blend of technical expertise, strategic thinking, and strong communication skills to navigate complex challenges and foster a culture of continual improvement and excellence within the team.

Responsibilities

  • Conduct security and threat analysis of business and enterprise initiatives involving new or modified technology deployments.
  • Ensure technology designs incorporate Information Security best practices and guidelines.
  • Function as a technical and engineering subject matter expert across various Cyber Security technology areas.
  • Collaborate with the Cyber organization and business stakeholders to provide security guidance and mitigation requirements.
  • Communicate the importance of key Cyber programs and services to obtain support from the business.
  • Mentor junior team members and foster a culture of continual improvement.

Requirements

  • 8+ years of experience partnering with business and technical teams to architect and deliver Cyber solutions.
  • 8+ years of experience consulting with business teams regarding threat mitigation best practices in technical areas such as Perimeter Security, Application Security, Core Systems, EDR, and Cloud.
  • Ability to explain common threats to components including Network, Cloud, Web, and Application environments.
  • Knowledge of best practices in the Cyber Security industry, including OWASP Top 10 and CWE/SANS Top 25.
  • Advanced technical knowledge in at least one Cyber Security area, highlighting the ability to navigate complex challenges.
  • Ability to give and receive constructive feedback in a team environment.
  • Strong written/verbal communication and presentation skills tailored to both technical and non-technical audiences.
  • Experience developing and documenting security guidelines or best practices.
  • Experience using diagramming tools to communicate secure designs and controls.
  • Excellent time management skills to prioritize multiple concurrent projects.

Nice-to-haves

  • Formal Degree is not required; relevant experience is prioritized.
  • Experience performing Threat Analysis and modeling using frameworks such as MITRE ATT&CK.
  • Familiarity with security controls such as Cloud Security Matrix, NIST CSF, and CIS Critical Security Controls.
  • Understanding of data and privacy regulations including PCI DSS, SOX, HIPAA, GDPR, and CCPA.
  • In-depth knowledge of common Cloud Services offered (IaaS, PaaS, SaaS).
  • Understanding of Cybersecurity Engineering/Operations, Incident Response, and GRC functions.
  • Empathy for engineering teams to balance security guidelines with operational needs.

Benefits

  • Medical insurance
  • Dental insurance
  • Vision insurance
  • 401(k)
  • Paid leave
  • Tuition reimbursement
  • Variety of discounts and perks
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service