As the Security Engineer, you will be responsible for implementing, maintaining, monitoring, and managing security solutions. The Security Engineer will deliver these solutions in accordance with the organization s architectural designs, best practices, and regulatory or compliance requirements. The Security Engineer is expected to collaborate with other members of the IT, DevOps, and Security teams to contribute to Agilysys security strategy with security leadership. Considered a highly knowledgeable individual, the Security Engineer is expected to implement, monitor, and manage secure solutions that address modern day issues.
We are looking for individuals that want to continually improve the information security program and build positive relationships across the organization.
Your duties will include:
- Work with a high performing team of security analysts and incident responders focused on threat detection, security operations, and incident response.
- Assist with incident response and system stability issues as they occur.
- Handle the day-to-day implementation, and maintenance of security solutions used by the security operations team across the organization.
- Develop security processes, procedures, playbooks for all security solutions.
- Assist with leading the response to security incidents and providing analysis to senior leadership along with the preservation of digital evidence.
- Work with IT peers to continually test, review, and update alerting to improve threat detection and response.
- Research, validate, and deploy solutions meeting security requirements.
- Participate regularly in change project and change management meetings.
- Keep management apprised on the status of information security issues and initiatives.
- Drives security efficiencies that enables security team members to work on more advanced tasks.
- Other duties as assigned.
Requirements for success:
- bachelors degree from a four-year college or university preferred.
- 5 plus years of IT security experience required including 3+ years of hands-on security operations experience.
- Experience with a System Information and Event Management (SIEM, Exabeam Preferred) or other scalable log management solution, including the configuration and tuning of the system. In addition to other security offerings such as EDR, Security Automation, Vulnerability Management and more.
- Understands how to communicate business risk from cybersecurity issues, pen testing, and gap assessments.
- Has the ability to manage projects from beginning to end and provide weekly status reports.
- Has the ability to create visual reports for metrics and leadership updates.
- Working experience with system/tool integration and utilizing scripting.
- Working experience with end-point security tools and knowledge of databases, firewalls, web services, and cloud.
- Strong system, cloud, network, and database security administration experience
- Strong demonstrated analytical skills to see the big picture.
- Excellent verbal and written communication skills to technical and non-technical audiences of various levels in the organization
- Security+, GSEC, CEH, or relevant security certification(s) Preferred.
- Preferred: Experience with one or more of the following: ISO/27001, NIST, PCI DSS, SOC2.
- Must be willing to complete all license applications, background checks, security checks and/or any other documentation and provide copies of any identification documents required by any State, Federal or Tribal governmental agency to maintain compliance with their laws and to successfully perform in the role