Remotery

Cybersecurity Specialist III

Posted 8 hours ago

This is a fully remote position, open to applicants in Massachusetts.

📋 Description

• Serve as the primary responder for enterprise security alerts, assessing severity, scope, and the appropriate response path.

• Conduct investigations on confirmed incidents to determine root causes utilizing host, network, identity, and cloud log analysis.

• Generate incident documentation that includes timelines, indicators, actions taken, and findings.

• Implement containment and eradication measures and actively participate in post-incident reviews.

• Engage in the security on-call rotation.

• Develop, refine, and manage SIEM queries and correlation rules.

• Validate raw log parsing, identify coverage gaps, and fine-tune alerts.

• Assist in the onboarding of new log sources and contribute to detection content mapped to MITRE ATT&CK.

• Manage vulnerability scanning, prioritize findings, coordinate remediation efforts, track closure, and report on vulnerability posture.

• Oversee and adjust EDR policies, exclusions, agent health, detection rules, and endpoint investigations.

• Implement AWS cloud security practices and configure services such as CloudTrail, CloudWatch, GuardDuty, Security Hub, and Config.

• Evaluate AWS configurations against established baselines and CIS Benchmarks, and monitor remediation efforts.

• Collaborate with Engineering and DevSecOps to support secure AWS workload design.

• Apply IAM best practices and assist with SSO, MFA, conditional access, access reviews, and certification campaigns.

• Contribute to risk assessments, maintain the risk register, manage third-party assessments, respond to customer security questionnaires, and provide audit evidence for ISO 27001, SOC 2, and CIS Controls.

• Work collaboratively with cybersecurity, DevSecOps, IT, Engineering, Operations, and business stakeholders.

• Help create security awareness content and offer practical guidance.


⛳️ Requirements

• Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field; relevant practical experience will also be considered.

• At least 4 years of hands-on experience in security operations, as a security analyst, or in cybersecurity specialist roles.

• Proficiency in incident response, alert triage, root-cause investigation, and producing written documentation.

• Practical experience with SIEM tools, including writing and tuning queries and working with log data; familiarity with Microsoft Sentinel, Splunk, Elastic, or similar platforms.

• Hands-on experience in vulnerability management, including risk-based prioritization and coordinating remediation efforts.

• Experience with EDR platforms, including custom rule development and endpoint telemetry analysis.

• Strong understanding of AWS services and principles of cloud security, including IAM, logging, monitoring, and posture management.

• Knowledge of IAM, SSO, MFA, and least-privilege access models.

• Experience in conducting or significantly contributing to security risk assessments.

• Ability to produce clear technical documentation for incidents, risk findings, and remediation guidance.

• Solid understanding of Windows and Linux security controls.

• Proficiency in scripting and querying using Python, PowerShell, KQL, or SPL.

• Familiarity with frameworks such as NIST CSF, ISO 27001, SOC 2, and CIS Controls.

• Preferred certifications include AWS Certified Security – Specialty, AWS Certified Solutions Architect – Associate, GIAC, CompTIA CySA+ or Security+, or Microsoft SC-200.

• Preferred experience in sectors such as energy, utilities, industrial, OT/ICS, battery storage, renewable energy, grid infrastructure, Microsoft Entra ID, Microsoft Defender, Microsoft Purview, detection engineering, security automation, or infrastructure-as-code.


🏝️ Benefits

• 100% employer-sponsored medical, dental, vision, life, and disability insurance.

• Competitive salaries.

• Generous benefits package.

• Certification support is available.

• Up to 10% travel, including occasional visits to LGESVT offices, data center facilities, and headquarters as required.

People also viewed

OCHIN, Inc.6 hours ago

Security Application Analyst

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$85.7k – $137.1k/year
ApplyView job
Dynanet Corporation7 hours ago

AI Security Engineer

US flagMaryland OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Solutions for Information Design, Inc.7 hours ago

Infrastructure & Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$110k – $130k/year
ApplyView job
Fuze Health8 hours ago

Senior Security Engineer

US flagArizona, +4 more statesFull-timeCybersecurity / Security Engineer$156.8k – $196k/year
ApplyView job
Coupa Software14 hours ago

Senior Security Engineer – Red Team

IN flagIndia OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Rox Partner16 hours ago

Cloud Security Architect – GCP

BR flagBrazil OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers