Information Security Engineer
Indexed description
Responsibilities
- Configure, implement, monitor, and support security software/systems that will help ensure compliance with policies and procedures. This may include but is not limited to SIEM, Next Gen Firewall Management, Multi-Factor Authentication, Identity Management, Internal/External Certificate Authority, Network Access Control, Cloud access controls, Vulnerability Management, AppDev security and monitoring, etc
- Assists with the definition of requirements for security technologies to application/data security, encryption, authentication systems, identity management, and access control
- Develop technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks
- Document security procedures and contribute to policy development
- Assists in the development, execution and/or coordination of Security Architecture Reviews, Secure Network Design, Threat & Risk Investigations, Incident Response and Documentation, DNS, Registrar Management, etc
- Assist in the identification, response, investigation, and remediation of potential breaches of and issues surrounding data security
- Collaborate with infrastructure and application teams to embed security into system designs and DevOps pipelines
- Proactively identifies security problems, monitors performance trends, performs upgrades, and makes recommendations for security hardware and software as required
- Maintain job knowledge by tracking and understanding emerging security practices and standards; participating in educational opportunities; reading professional publications; and participating in professional organizations
- Responsible for providing off hours support for security as needed
- Act as project lead for security tools implementations, which may include cross-functional teams
- Provide education to teammates, interns, and other teams regarding specific initiatives or
- InfoSec areas of importance
- Other duties as assigned
- Five or more years of experience working in an Information Technology security capacity or ten or more years working in AppDev or Infrastructure engineering role.
- Demonstrate the ability to maintain strict confidentiality of SECURAs internal affairs
- A college degree (i.e. B.A. Information Systems or B.S. Computer Science)
- One or more information security certifications (i.e. CISSP, GIAC, CEH, OSCP)
- Understanding of ISO27001/NIST principles
- Experience administering Identity and Access Management solutions
- Knowledge of cloud security
- Understanding of the current security threat landscape and ability to demonstrate a strong willingness to stay at the forefront of security developments
- Experience with vulnerability assessment, scanning, and ethical penetration testing
- Knowledge of multiple operating system internals and hardening
- Experience with security policies and procedures, awareness programs, and IT audits
- Highly motivated and dependable self-starter
- Coding or scripting ability
SECURA Insurance strives to provide equal opportunity for all employees and is committed to fostering an inclusive work environment. We welcome applicants from all backgrounds and walks of life.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search