Negotiable
Outside
Remote
USA
Summary: The CSOC Security Engineer role involves overseeing security measures in complex technology implementations, focusing on enhancing system security and user privacy. The position requires collaboration between development and operations teams, conducting security audits, and implementing solutions to mitigate vulnerabilities. Candidates should have extensive experience in security engineering and familiarity with various security tools and alerts. The role demands a commitment to working night shifts and weekends to support the Cybersecurity Operations Center.
Key Responsibilities:
- Perform security audits, risk analysis, and application-level vulnerability testing.
- Conduct security code reviews and develop technical solutions to mitigate vulnerabilities.
- Research and identify new attack vectors.
- Bridge the gap between legacy development or operations teams.
- Ensure developers create secure systems while enhancing user privacy.
Key Skills:
- Knowledge and experience in safeguarding sensitive data from cyber-attacks.
- Minimum of ten years of experience in developing and implementing security solutions.
- Experience with SecureWorks, CrowdStrike, and Elastic security alerts.
- Familiarity with Cribl and Microsoft Defender for Identity.
Salary (Rate): undetermined
City: undetermined
Country: USA
Working Arrangements: remote
IR35 Status: outside IR35
Seniority Level: undetermined
Industry: IT
Job Role: CSOC Security Engineer
Location: Downey, CA (Remote)
Duration: 12 Months Contract
Position Description:
A Security Engineer serves as the security engineer of complex technology implementations in a product-centric environment; is comfortable with bridging the gap between legacy development or operations teams and working toward a shared culture and vision; works to ensure developers create the most secure systems while enhancing the privacy of all system users; and has experience with white-hat hacking and fundamental computer science concepts. The Security Engineer will perform security audits, risk analysis, application-level vulnerability testing, and security code reviews; develop and implement technical solutions to help mitigate security vulnerabilities; and conduct research to identify new attack vectors.
Skills Required:
Security Engineers will possess knowledge and experience in safeguarding sensitive data from cyber-attacks.
Experience Required:
This classification must have a minimum of ten (10) years of experience with developing and implementing technical solutions to help mitigate security vulnerabilities.
Experience Preferred:
- Two years of experience within the last three years triaging SecureWorks investigation and alerts.
- Two years of experience within the last three years triaging CrowdStrike alerts and events.
- Two years of experience within the last three years triaging Elastic security alerts and events.
- One year of experience within the last two years performing administrative and daily operational tasks within Cribl.
- One year of experience within the last two years investigating high-risk users, phishing emails within Microsoft Defender for Identity.
Additional Information:
Must be willing to work the graveyard shift and weekends. The schedule is 7:00 pm to 5:00 am, working Wednesday through Sunday to support the Cybersecurity Operations Center (CSOC).