Cyber Security Engineer

Job Overview

Our client in the Bedminster area of NJ has an excellent HYBRID opportunity for a Cyber Security Engineer!

 

Responsibilities:

  • Support the overall vision and strategy of the Information Security department.
  • Provide technical expertise to research, evaluate, design, test, recommend and operationalize security tools to reduce risk, enforce defined security policies and maintain regulatory compliance.
  • Collaborate with IT staff and business stakeholders to ensure that security is factored into the selection, installation and configuration of hardware, software, and business applications.
  • Bolster network security technologies including IPS/IDS, Network and Web Application Firewalls (WAF), NDR, Segmentation, SIEM and SWG solutions.
  • Maintain the endpoint security platforms, including AV/EPP, EDR, ASM and hardening solutions.
  • Continuously enhance data protection technologies, including CASB, DLP and Insider Threat platforms.
  • Mature security tools based on penetration testing results and adversary simulation exercises to mitigate emerging threats.
  • Monitor and report on emerging risk and compliance with organizational security policies.
  • Support the adoption, administration, and maintenance of IAM solutions, including PAM, SSO, and MFA.
  • Respond to, investigate, and where appropriate, resolve, or escalate reported security incidents. Provide postmortem analysis to illuminate the issues and possible solutions.
  • Provide guidance to system and application owners to remediate identified vulnerabilities.
  • Prepare technical reports for senior management.
  • Participate in IT problem and change management forums.
  • Stay current on Cloud and Cyber Security technology trends.

 

Requirements:

  • Minimum of 2 years’ experience in Cybersecurity and/or other IT-related fields (Networking, Systems Administration).
  • Certification in one or more areas is preferred: CISSP, GIAC, BTL1, Security+, Azure-based certifications or similar.
  • Experience with Azure and Microsoft O365 a plus.
  • Scripting (PowerShell and/or Python) and automation tools a plus.
  • Knowledge of security frameworks including NIST Cybersecurity Framework, MITRE ATT&CK, OWASP Top 10, CWE/SANS Top 25, NIST 800-53, ISO 27001/27002, and CIS CSC.
  • Experience developing and maintaining policies, procedures, standards, and guidelines.
  • Experience working in a regulated environment.
  • Comprehensive understanding of cloud and cybersecurity methodologies and best practices.
  • Knowledgeable in security concepts related to DNS, routing, authentication, Web Application Firewall (WAF), VPN, IDS/IPS, proxies and DDoS mitigation.
  • Ability to design and implement security solutions across multi-tier and hybrid-cloud environments.
  • Comfortable working with a variety of technologies supporting large scale deployments, troubleshooting solutions issues and proficient in monitoring and investigating security events.
  • Management of network and endpoint security platforms.
  • Strong experience in securing Windows environments.
  • Incident Management and Response Planning.
  • Familiarity with third-party audits and cloud risk assessment methodologies.
Job Detail
Shortlist Never pay anyone for job application test or interview.