Senior Security Project EngineerResponsibilities: Serves as technical lead responsible for the design, delivery and successful deployment of security technologies infrastructure through project activities with teams of 2-6 people spanning multiple IT areas such as engineering, sysadmins, desktop, etc. Some examples of projects activities that are likely to be encountered include the following:SIEM Deployment Phase I - Complete POC, assessment, deployment and tuning of SIEMWAF Deployment - IT- Web app firewall implementation on IT-managed WebStore appsDLP Strategy - Develop a DLP strategy and proposed technology solution stack email, web, file, mobile, etc. Initiate a data inventory classification effortEmail Protection Mimecast - Replace complex email security stack fireEye EX and Ironports with single SaaS solutionEndpoint Privilege Management EPM Solution - Deploy CyberArk platform in DMZ, partner with desktop team to implement configuration, documentation and trainingSecure baseline for Windows - Implement CIS benchmark to satisfy compliance requirementsQualifications: Bachelors degree in Computer Science, Information Security or a closely-related field AND six 6 years of related experience in information security in an enterprise environment OR ten 10 years of recent relevant experience. Security certifications such as CISSP, GIAC, etc. preferred. Demonstrated ability to deploy security technologies in an enterprise environment, which may include the following SIEM, WAF, DLP, Email Protection, Endpoint Privilege Management, and Group Policy Active Directory security. Ability to integrate various log sources, threat intelligence and network endpoint security instrumentation systems AV, NIDS, etc., into a SIEM product and develop correlation rules that result in actionable alerts of threats in the environment. Ability to create dashboards, reports and runbooks that analysts can follow for operational response to identified threats.
Experience in using security tools and systems such as Snort, Bro, Nessus, nmap, Wireshark, tcpdump, Splunk, etc. Linux and scripting skills preferred.
Experience implementing security standards such as CIS 20 Critical Security Controls Ability to work well with others, to give work direction, create task assignments, and give instructions to subordinate technical staff to accomplish project goals milestones. Demonstrated ability to effectively prioritize tasks, manage time, organize activities, deliver overall high productivity. Must have proficient oral and written English language communication skills