The organization's Information Technology ecosystem relies on systems that support Operations. The IT Security Engineer is essential for protecting these systems, processes, and computing resources. This role offers technical leadership in various security areas, including IT systems, networks, and applications, and may design, implement, and test security solutions. The engineer works with peers and leaders to guide security strategies and architecture, delivering initiatives aligned with IT goals. Key responsibilities and attributes include: Strategy, Policy, and Compliance Contributing to the security strategy to support the organization's goals and objectives. Creating and enforcing security policies and procedures to protect the organization's assets, data, and systems. Identifying and assessing security risks and then implementing measures to mitigate these risks. Promoting a culture of security awareness among employees and stakeholders. Ensuring that the organization complies with relevant security and privacy regulations and standards. Incident Response & Governance Lead contributor in the response to security incidents and breaches, including investigating and documenting incidents, and coordinating with law enforcement or other relevant entities when necessary. Executing and maintaining a well-defined Security Incident Response Plan (SIRP) to guide the organization's response to security incidents. Technical Solutions & Practices Evaluating, implementing, and managing security tools and technologies, such as firewalls, intrusion detection systems, and antivirus software. Defining and enforcing security governance structures within the organization. Providing security training and awareness programs for employees to enhance their understanding of security best practices. Monitoring for and addressing vulnerabilities in the organization's systems and applications. Developing and maintaining security metrics to track the effectiveness of security measures and report to management. Staying up to date with the latest threats and vulnerabilities by monitoring threat intelligence sources. Security analysis: This is the ability to understand both security and the specific business with its unique problems, and to use security tools strategically to monitor, identify, and resolve security issues and risks. Penetration testing: This is the ability to probe information systems for vulnerabilities and exploits that attackers may find, and to recommend ways to mitigate them. Secure application development, or DevSecOps: This is the ability to incorporate security into the software development and operations process, and to ensure that the applications are built and deployed securely and efficiently. Certification in security-related fields, such as CISSP, CISM, CISA, CEH Scripting and Automation: Proficiency in scripting languages (e.g., Python, PowerShell) and automation tools to manage cloud resources Proven experience (5 years) as an Accountant or similar role. Networking Understanding of cloud networking concepts, including virtual networks, subnets, and security groups. Security Knowledge: Strong knowledge of cloud security best practices and tools for securing cloud environments. Collaboration: Effective communication and teamwork skills to collaborate with various teams and stakeholders. Problem Solving: Strong troubleshooting skills to diagnose and resolve issues in cloud environments. Strong analytical and problem-solving skills. Attention to detail and accuracy. Excellent communication and interpersonal skills. Ability to work independently and collaboratively.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed