Vacancy expired!
At eXcell, we set you up for job success right from the start. Our precision recruiting process aligns the right fit for the right people. We have a brand-new opportunity for a Lead, TVM & Threat Hunting Engineer to join our team for a remote position. This Engineer assists in the management of enterprise security as well as provides technical support and advice on a wide variety of information security responsibilities, issues, and problems. This includes Security Incident Response, Vulnerability Management, Network and Application Vulnerability Scans, Leading / Performing Forensic Investigations, Compliance, Documentation, User Awareness, including leading phishing simulation efforts, and being a Subject Matter Expert in these and other areas related to Information Security. Scope of Activity and Responsibilities:
- Participate in security incident response activities as directed and as outlined in the Security Incident Response Policy and Procedure
- Monitor, analyze, determine applicability, and take action on security events that are reported via a variety of sources, including SIEM, IDS / IPS and AntiMalware servers
- Monitor , analyze, determine applicability, and assess risk for vulnerabilities reported by manufacturers that are relevant to the operations
- In conjunction with the Security Vulnerability Management process, coordinate and schedule scans of our internal address space and applications for vulnerabilities using approved tools
- Generate and publish reports of vulnerabilities; using these reports, assess level of compliance with the Security Vulnerability Management process
- Participate in the Threat Hunting activities based on our Methodologies
- Assist infrastructure and application owners to understand vulnerabilities discovered and plan remediation
- Ensure that approved scanning tools are configured to perform all necessary tests in order to have a complete and accurate risk profile for all production systems and devices
- Participate in the Security Vulnerability Management process, offering advice and recommendations to ensure risk from vulnerabilities is kept to a minimum
- Perform analyses of Security User Awareness training in order to gauge utilization and effectiveness; make recommendations to improve training; lead the Phishing Simulation efforts to the entire user base
- Bachelor's degree or master's degree in computer science, information systems or another related field
- Ideally 8+ years of experience
- CISSP, CEH certification required. OSCP preferred
- Knowledge of threat hunting
- Knowledge of technical systems, and the potential use of technology solutions in a business environment
- Knowledge of security-specific architecture methodologies or standards
- Knowledge of risk management, business impact, control, vulnerability assessments, and treatment strategies
- Knowledge of web-related technologies (Web applications, Web Services, and Service-Oriented Architectures) and of network / web related protocol concepts
- Knowledge of firewalls, SSL / IPSec, security incident and event management (SIEM), data protection (DLP, encryption), user account management (SSO, SAML), and password / key management concepts
- Knowledge of Blue Team & Red Team activities and Vulnerability Management Methodologies
- Experience with Vulnerability Scanners and Web Application Vulnerability Management tools
- Expertise and experience in securing operating systems and network infrastructure
- Expertise in securing fundamental networking protocols: DNS, HTTP, TCP, UDP, TLS, IPSEC, 802.1x, NFS
- Knowledge of Cloud SaaS, PaaS, IaaS, On Premise, and packaged apps
- Proven ability to work and interact closely with senior management levels to determine their business needs and obtain support for initiatives
- Strong security technical foundation with the ability to synthesize relevant information and make key decisions
- Strong analytical skills to relate security requirements to appropriate security controls
- Detail oriented and self-motivated to complete assigned tasks
- Strong research and problem-solving skills
- Strong analytical skills to relate security requirements to appropriate security controls
- Excellent communication abilities and relationship building skills
- Written, verbal, and presentation skills with the ability to effectively interact with internal and external business partners
- Ability to think strategically
- Understanding of complex automated systems
- ID: #49307297
- State: Florida Tampa bay area 33601 Tampa bay area USA
- City: Tampa bay area
- Salary: BASED ON EXPERIENCE
- Job type: Permanent
- Showed: 2023-02-19
- Deadline: 2023-04-19
- Category: Architect/engineer/CAD