Cybersecurity Engineer Job at Comark in Myrtle Point
Comark, Myrtle Point, OR, United States, 97458
Overview
We are an MSP Mentor Top 100 company looking for a highly skilled Cybersecurity Engineer primarily to lead incident response and SOC escalation engagements.
The Cybersecurity Engineer is a technical expert responsible for protecting enterprise systems and data through proactive defense, vulnerability management, and incident response. This role serves as a technical escalation point from the SOC and ensures the secure configuration, hardening, and ongoing resilience of IT infrastructure, both on-premises and in the cloud. Candidates must demonstrate strong hands-on experience with endpoint security, network security, vulnerability management, and compliance frameworks.
Responsibilities
- Incident Response & Threat Management: Respond to high-priority escalations from the Security Operations Center (SOC); assist in triage, containment, investigation, and remediation of cybersecurity incidents; contribute to threat hunting and anomaly detection efforts using SIEM and EDR tools.
- Vulnerability & Patch Management: Remediate vulnerabilities across Microsoft and Linux endpoints, as well as networking infrastructure (firewalls, routers, switches) in accordance with SLA timelines; coordinate and document vulnerability triage activities, working closely with internal stakeholders; lead remediation efforts following security assessments or penetration tests.
- Infrastructure Security Hardening: Conduct security configuration reviews for firewalls, switches, and servers; enforce hardening baselines aligned to CIS Benchmarks and NIST/CMMC guidelines; administer and maintain endpoint protection technologies (EDR, DNS filtering, MFA, etc.).
- Security Architecture & Compliance: Ensure technical controls are implemented in alignment with frameworks such as NIST 800-171, NIST 800-53, CIS Controls, ITAR, and PCI-DSS; assist in the development and maintenance of key cybersecurity documentation including SSPs, IRPs, and BCDR plans; maintain accurate, auditable records of system configurations, vulnerabilities, and mitigations.
- Collaboration & Operational Support: Work cross-functionally with IT, Account Management, Project Services and client-facing teams to support secure deployments and operations; participate in continuous monitoring and security operations reviews; provide technical guidance and mentorship to junior team members as needed.
Skills Required
- At least 10 years of IT or cybersecurity experience, some of which included architecture responsibilities
- Ability to work in a team and effectively communicate to all levels of the organization
- Experience with SonicWall, Cisco Meraki, and other networking technologies
- Able to deploy, upgrade, and troubleshoot firewalls, managed switches, wireless controllers and WAPs
- Knowledge in supported Microsoft desktop operating systems (Windows 10 - 11) and Office products
- Strong understanding and experience with security-related solutions such as MFA, DNS/Web filtering, SIEM, monitoring, EDR, and vulnerability management solutions (RFT, Tenable)
- Familiarity with IaaS and PaaS cloud solutions and architecture such as with Microsoft Azure
- Knowledge in all supported Microsoft Operating Systems (Server 2012 - 2019, Windows 10 - 11) and Office products
- Experience with Hyper-V or VMware
- Previous participation in red team/blue team exercises or security assessments
- Certifications such as CISSP, CISM, OSCP, Security+, or Azure Security Engineer Associate
- Ability to prioritize work and communicate those priorities to other stakeholders
- Shell scripting (PowerShell, etc.) a plus
- Familiarity with CIS critical security controls, CIS benchmarks, NIST 800-171/800-63, ITAR, PCI-DSS, and other standards and regulatory frameworks
- Understanding of cybersecurity concepts such as an IR, SSP, and BCDR
- Experience working for an MSP/MSSP is a strong plus
- Strong oral and written communication skills
- Must be able to lift 50lbs
Please note that this position could be working with customers operating under U.S. export control rules (including ITAR). As a result, this position may include access to technology and/or software source code that is subject to U.S. export controls, including restrictions on who may have access. The Company may choose not to apply, or may be unable to apply, for a license as to any applicants whose access to export-controlled technology or software source code may require authorization. Accordingly, you will be required to provide information regarding your citizenship and immigration status that is relevant for determining whether you could work in the position without a license authorizing your access, and we may decline to proceed with any applicant whose ability to fill the position would depend on such a license.
Integrated IT is an Equal Opportunity Employer. Integrated IT does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. All employment is decided on the basis of qualifications, merit, and business need.
Integrated IT participates in E-Verify and will provide the federal government with Form I-9 information to confirm that employees are authorized to work in the U.S.