This range is provided by SpringbokIT. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
Base pay range
$140,000.00/yr - $169,000.00/yr
The Information Security Engineer plays a key role in supporting both the technical and strategic aspects of cybersecurity. This role involves implementing, maintaining, and fine-tuning security tools that defend the organization’s systems and networks against cyber threats. The engineer will also contribute to the development of policies, standards, and procedures, while actively monitoring for threats, responding to incidents, and documenting security activity.
Primary Responsibilities
- Continuously monitor and manage security technologies to ensure effectiveness.
- Perform research and analysis across multiple data sources to identify risks and anomalies.
- Detect, investigate, and escalate suspicious activities or potential intrusions, differentiating them from normal behavior.
- Assist in drafting, reviewing, and improving cybersecurity policies and operational procedures.
- Conduct risk and impact assessments and provide input for overall security strategy.
- Design, deploy, and reassess security services and products with minimal oversight.
- Automate recurring security tasks and remediation activities through scripting.
- Identify and close gaps in detection capabilities, creating custom rules across tools such as EDR, antivirus, and SIEM.
- Respond to alerts (e.g., malware detections) through scanning, remediation, and escalation where needed.
- Document escalated incidents, including their history, impact, and resolution steps.
- Collaborate with other cybersecurity staff to correlate threat intelligence and validate alerts.
- Manage service tickets, including escalations to higher tiers, within defined SLAs.
- Mentor junior analysts and share technical knowledge with peers.
- Contribute to implementing processes aligned with industry frameworks such as NIST.
- Participate in security incident response and threat-hunting activities.
- Support compliance and continuous improvement initiatives aligned with ISO 9001 and ISO 27001 standards.
- Report any issues or potential risks that could impact the organization’s security posture.
- Carry out additional tasks or projects assigned by leadership.
Qualifications:
Education & Training
- Bachelor’s degree in Cybersecurity, Information Technology, or a related field, or equivalent professional experience.
- Industry certifications such as CISSP, CEH, GIAC, AZ-500, or similar are preferred.
Skills & Experience
- 8+ years of overall technical experience, with at least 5 years in a dedicated security role.
- Expertise in securing cloud platforms (especially Azure) and evaluating configurations against best practices.
- Strong hands-on knowledge of modern security technologies, including:
- Next-generation antivirus and endpoint detection tools
- Web/network proxies and content filtering
- SIEM and log management
- Vulnerability management platforms
- Multi-factor authentication and identity management
- Conditional access policies and VPNs
- Experience authoring and maintaining security policies and technical documentation (e.g., diagrams, workflows).
- Familiarity with cloud architectures and emerging security risks in those environments.
- Knowledge of adversarial tactics and communication methods used by threat actors.
- Strong understanding of networking (TCP/IP, OSI model) and related security concerns.
- Ability to engage with business leaders to identify and prioritize protection of critical assets.
- Self-motivated with the ability to work independently or collaboratively in a distributed, fast-paced environment.
- Skilled at explaining technical concepts to non-technical stakeholders.
- Familiarity with frameworks for evaluating and mitigating third-party/vendor risks.
- Strong multitasking and organizational skills with attention to detail.
- Excellent verbal and written communication abilities.
Seniority level
Mid-Senior level
Employment type
Full-time
Job function
Information Technology
Industries: Software Development
Benefits include medical insurance, vision insurance, 401(k), and paid paternity leave.