
Information Security Engineer II
Posted 4 days ago

Posted 4 days ago
This is a fully remote position, open to applicants in Vermont.
• Oversee, prioritize, investigate, and respond to information security incidents and alerts.
• Facilitate containment, eradication, and recovery efforts for security incidents.
• Design, implement, and sustain information security technologies, including SIEM content, detection rules, data onboarding, and automation.
• Manage security engineering projects from initial scoping and design to implementation and operational transition.
• Act as the Information Technology liaison for security technologies, processes, and procedures.
• Collaborate with IT colleagues and various teams throughout the organization to enhance technology, improve processes, and bolster system security.
• Recognize and escalate security challenges, risks, and operational performance issues.
• Conduct investigative activities and assist in digital forensics.
• Support governance and policy initiatives, including policy updates, control assessments, and audit evidence gathering.
• Counsel business units on cyber risk and establish secure, practical processes.
• Offer guidance on security best practices.
• Develop security automation capabilities, including tools assisted by AI.
• Provide training and guidance on information security to VEIC staff.
• Participate in on-call and after-hours incident response, including on-site support when physical presence is necessary.
• Carry out administrative duties, reporting, stakeholder communications, and other assigned responsibilities.
• A minimum of 3 years of experience in information security operations and/or security engineering, or a comparable combination of education and experience.
• Solid understanding of information security concepts and principles.
• Expertise in securing and managing Microsoft 365 security products, including Defender for Endpoint, Purview, Entra ID, and Intune.
• Proficient in Windows and Linux operating systems, TCP/IP networking, storage systems, virtualization, and containerization.
• Skilled in PowerShell and/or Python.
• Familiar with vulnerability scanning, event log management, endpoint security, firewalls, and web application firewalls.
• Knowledgeable about cloud technologies and concepts.
• Acquainted with digital forensics tools, techniques, and procedures.
• Understanding of physical security concepts and practices.
• Proven ability to work independently and manage projects from initiation through to completion.
• Excellent written and verbal communication skills, with a strong customer service focus.
• Strong analytical, critical thinking, and problem-solving abilities.
• Capable of handling multiple tasks and competing priorities.
• Ability to convey complex technical concepts to non-technical audiences.
• Dedication to continuous learning and professional growth.
• Must possess, or be willing to obtain, an entry- to mid-level information security certification such as CompTIA Security+, CySA+, or GSEC within the first six months of employment.
• Ability to remain stationary at a workstation for extended periods.
• All positions are subject to criminal background checks.
• Remote work arrangement.
• Flexible work arrangements.
• Ergonomic assessments and suitable accommodations.
• Wellness support, including regular movement breaks.
• Occasional company events or meetings, typically 0–2 times per year, often optional or available virtually.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.