Detection Engineer

National Education Loan Network
267d$85,000 - $110,000

About The Position

Nelnet is a diversified and innovative company committed to enriching lives through the power of service as a student loan servicer, professional services company, consumer loan originator and servicer, payments processor, renewable energy solutions, and K-12 and higher education expert. For over 40 years, Nelnet has been serving its customers, associates, and communities. The perks of working at Nelnet go beyond our benefits package. When you join the Nelnet team, you're part of a community invested in the success of each individual. That support comes through in our work, as we are united by our mission of creating opportunities for people where they live, learn, and work. Nelnet's Cybersecurity Log Operations Engineers operate as a shared service across multiple business lines representing a hybridized attack surface covering on premise and cloud-based elements. It is imperative that our engineers understand the business needs and be able to coordinate those with the organization's security and operational goals. This position requires work in support of the Company's contract with the United States Department of Education (“ED”). As such, the United States Government requires that any applicant for this position must complete the United States Government security clearance. Effective June 1, 2018, ED has informed Nelnet that security clearance applications for foreign nationals are not being accepted or processed. Considering this direction from ED, Nelnet will be unable to hire applicants without United States citizenship for such positions.

Requirements

  • Bachelor's degree in cybersecurity, computer science, systems administration, information systems, or related areas, or relevant work experience.
  • 2+ years IT operations experience working with SIEM products and threat detection.
  • 2+ years IT infrastructure experience preferably in a cloud environment.
  • Hands-on experience with SIEM, SOAR, and Database Monitoring products.
  • Experience with PowerShell, SQL, Python, BASH, Chef or Ansible a plus.

Nice To Haves

  • Any relevant Cybersecurity certifications, such as: Security+, SSCP, CISSP, GSEC, GCIA, GCI, CEH, SEC 511, SEC 555 etc.
  • Any relevant IT certifications specific to the Google, Amazon or Microsoft cloud ecosystems.
  • Enterprise-level experience with: Google SecOps, Google Cloud Observability, Sysmon, Syslog, Linux, Atlassian products, Jira and Confluence, ServiceNow, preferably including SNOW security related modules (VR, GRC, etc.)

Responsibilities

  • Monitors and works with logs in Google SecOps and Google Cloud Observability.
  • Works closely with system owners to manage alert and security use case creation as well as operational alerting in the Cloud Observability projects.
  • Collaborates on IT projects to ensure that security issues are addressed throughout the organization.
  • Tunes alerts and use cases over the Use Case Management Life Cycle.
  • Tunes alerts and alerting in GCP Projects utilizing Big Query, Log Analytics or Log Explorer tools.
  • Participates in department-wide change control and IT governance processes, on behalf of the Nelnet Cyber Security Group (CSG).
  • Stays up to date on the latest global vulnerability landscape and published compliance guidelines.
  • Responds to audit findings, directing remediation, tracking progress, providing status reporting, and creating/maintaining evidence documentation.
  • Develops and maintains documentation for security related systems.

Benefits

  • Medical, dental, vision, HSA and FSA
  • Generous earned time off
  • 401K/student loan repayment
  • Life insurance & AD&D insurance
  • Employee assistance program
  • Employee stock purchase program
  • Tuition reimbursement
  • Performance-based incentive pay
  • Short- and long-term disability
  • Robust wellness program
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service