Cyber Security Engineer

Overview

The Cyber Security Engineer is responsible for monitoring, administering, and continuously improving the organization's security monitoring and threat detection capabilities. This position supports SIEM, EDR/XDR, incident response, threat detection, vulnerability management, and cybersecurity operations across enterprise and production environments. As the cybersecurity program matures, this position will develop into a trusted technical resource capable of independently managing daily security operations and providing continuity for the organization’s cybersecurity function.

Responsibilities

Security Operations & Incident Response

  • Monitor SIEM, EDR/XDR, and MDR platforms.
  • Investigate alerts and suspicious activity.
  • Lead and coordinate incident response activities.
  • Conduct threat hunting and event analysis.
  • Improve detection rules and alert tuning.
  • Evaluate SIEM log coverage and onboarding.
  • Participate in shared after-hours security monitoring and incident response coverage.
  • Respond to and escalate security-related requests and incidents received from the IT Help Desk.

Vulnerability Management

  • Coordinate vulnerability identification and remediation.
  • Validate remediation efforts.
  • Support risk reduction initiatives.

Security Engineering & Administration

  • Support implementation of security tools and controls.
  • Assist with cloud security initiatives.
  • Develop procedures and documentation.
  • Support compliance and audit activities.

Additional

  • Ability to perform all essential job functions with or without reasonable accommodation.
  • Perform all other duties as assigned.
  • Must have regular and punctual attendance.

Qualifications

Skills and Abilities

  • Experience administering, monitoring, and investigating security events using SIEM platforms.
  • Experience working with EDR/XDR technologies to detect, investigate, and respond to security threats.
  • Knowledge of threat detection, incident response, and security monitoring practices.
  • Understanding of network security fundamentals, endpoint security, and identity-based threats.
  • Ability to analyze security alerts, identify root causes, and recommend remediation actions.
  • Experience supporting Microsoft 365 and Azure security environments preferred.
  • Understanding of operational technology (OT) and manufacturing environments preferred.

Demonstrated Competencies

  • Ability to work independently with minimal supervision.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Ability to solve and communicate complex problems, and document findings clearly in writing.
  • Sound judgment on when to act versus escalate.
  • Solutions-oriented, results-driven self-starter.
  • Strong organizational ability.
  • Ability to prioritize competing demands and manage multiple projects simultaneously.

Physical Requirements

  • Office setting.

Experience: Minimum of three (3) years of cybersecurity, systems administration, network administration, infrastructure support, or a closely related IT discipline with demonstrated security responsibilities.Education: Associate's degree or Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field preferred. CompTIA Security+ certification or equivalent foundational cybersecurity certification. Equivalent combination of education, certifications, and relevant experience will be considered.

#ZR

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available