
Security Engineer III
Posted Jul 27

Posted Jul 27
This is a fully remote position, open to applicants in New York.
• Continuously assess a range of security tools, including but not limited to Data Loss Prevention, Vulnerability Management, Identity and Access Management, Web Application Firewall, Email Protection, and Endpoint Protection.
• Assess and implement Security Orchestration, Automation, and Response (SOAR) software.
• Create and maintain a repository of scripts to be utilized for automating threat hunting, detection, and digital forensics initiatives.
• Design, implement, and enhance security detection systems to boost operational efficiency and visibility.
• Proactively manage a cloud-based Security Information and Event Management (SIEM) system by ensuring that pertinent logs are collected and alerts are fine-tuned.
• Utilizing expertise in incident response, this position may also serve as the primary incident responder.
• Remain informed about the latest threats, vulnerabilities, and security trends to ensure the organization is equipped to tackle emerging challenges.
• Conduct security awareness training through internal phishing simulations.
• Collaborate with internal teams to guarantee adherence to secure implementation protocols.
• Participate in an on-call rotation to provide 24/7 support for critical incident escalations.
• At least 5 years of experience as a security engineer or in a comparable role.
• Expertise in incident response, threat hunting, and cloud security, particularly concerning AWS.
• Skilled in purple team operations, with proficiency in both offensive and defensive strategies.
• Familiarity with identity management protocols such as OAuth, SAML, and OpenID Connect.
• Experience in automating incident response playbooks using SOAR solutions.
• Preferred experience with Cloudflare, Datadog, Wiz, and Tines.
• Strong communication skills to effectively engage with both technical and non-technical stakeholders.
• Proven ability to draft documentation, including standards, policies, and architectural diagrams.
• Ability to work collaboratively in a team environment.
• Demonstrated experience with Infrastructure as Code tools like Terraform or Ansible is a plus.
• Basic understanding of agile methodologies and the ability to collaborate effectively with multiple stakeholders.
• Required experience with scripting languages such as Python or Bash.
• Relevant certifications such as OSCP, SSCP, or GSEC are advantageous.
• For information about our benefits, please visit https://benefitsatfanatics.com/
ASG Technologies
CrowdStrike
Culmen International
Threatscape
Get handpicked remote jobs straight to your inbox weekly.