Responsibilities:
- Develop event response documentation and Standards, including diagrams for system environments, cloud operations, and security tools
- Review our architecture and design through a security lens to provide actionable, timely requirements and recommendations
- Serve as a subject matter expert for security tools, applications, and processes
- Analyzes and oversees the development of information security governance, including organizational policies, procedures, standards, baselines and guidelines with respect to information security and use and operation of information security management frameworks such as NIST 800-171 and CMMC 2.0.
- Work directly with team leads, IT and Engineers both on policy and technical implementation of technologies.
- Analyze and recommend security controls and procedures in business processes related to use of information systems and assets, and provides oversight to ensure compliance.
- Monitors information systems for security incidents and vulnerabilities; develops monitoring and visibility capabilities; reports on incidents, vulnerabilities, and trends to IT or executive management.
- Oversees the response to information system security incidents, including investigation of, countermeasures to, and recovery from computer-based attacks, unauthorized access, and policy breaches; engages, interacts and coordinates with third-party incident responders, including law enforcement.
- Oversees the administration of authentication and access controls, including security/access roles, and access permissions to information assets.
- Analyzes trends, news and changes in threat and compliance environment with respect to organizational risk; advises organization management and develops and executes mitigation of risk; oversees risk and compliance self-assessments, and engages and coordinates third-party risk and compliance assessments.
Knowledge, Skills and Abilities:
- Bachelor's Degree in Computer Science, Information Technology (IT), or a related discipline, or equivalent combination of education and work experience
- 8+ years of solid, diverse experience in Cyber Security Engineering and Incident Response
- Experience deploying and customizing security tools such as vulnerability scanners, static analyzers, IDS/IPS, firewalls, and endpoint security monitoring
- Strong Experience securing Cloud Applications using industry standard frameworks
- Must possess an active Top Secretclearance or be eligible to obtain one
- Ability to lead, motivate and direct team members, cross-functional partners and Engineering teams; and strong performance management skills to include coaching, goal setting, holding team members across multiple levels accountable
- Ability toperform Information System Security Engineer/Manager (ISSE/ISSM) functions for classified infrastructure
- Ability to demonstrate analytical skills, technical knowledge, and practical application of cyber and information security principles from technical teams to senior executives
- Extensive experience with enterprise security solutions (Endpoint Detection and Response, Security information and Event Management, IT services management and Cloud, etc.)
- Extensive experience with intrusion detection methodologies and techniques for detecting host and network-based intrusions
- Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth)
- Extensive experience withpreviousinformation classification programs and procedures for information compromise
- Proven experience in an information assurance, IT Risk and Compliance, information security, IT & Security audit, collaborating with external auditors (3PAOs) or other similar IT role involving IT security and compliance
Other Jobs from Hermeus
Director of IT Infrastructure and Applications
Senior Structures Manufacturing Engineer
Senior Test Engineer
MES Application Engineer
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 401 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say