Tech Stack
AWSAzureCloudCyber SecurityLinuxPythonTCP/IPUnix
About the role
- Monitor, investigate and triage alerts and findings from enterprise security solutions, including but not limited to: Vulnerability scanning tools, EDR / MDR tools, SIEM, CSPM (Cloud Security Posture Management) tools, IDS/IPS devices, Anti-malware
- Assist with the configuration and management of security platforms including SIEM, scanning solutions, and EDR tools.
- Ensure Aderant assets are effectively managed and monitored to meet security policies and standards
- Facilitate vulnerability management program across various systems, network, and engineering groups
- Develop and maintain custom dashboards, reports, and alerts to monitor the security posture of the organization.
- Identify, document, and track security exceptions
- Maintain and create documentation on security response activities
- Drive continual improvement in the secure software development lifecycle and support our drive to a DevSecOps approach
- Identify gaps in existing application security and cloud infrastructure to meet project requirements.
- Assists with the maintenance of metrics and scorecards in support of the information security program
- Maintain a working knowledge of systems functions, security policies, technical safeguards, and cyber security measures.
- Take on meaningful security-related projects that support the organization's rapid growth and innovation
Requirements
- 2-3 Years of experience in cybersecurity and/or cloud infrastructure engineering / architecture.
- Hands on experience with vulnerability management tools, SIEM, and/or EDR tools
- Working knowledge of network, system, database, and application-level security.
- Experience working in an agile, DevSecOps environment preferred
- Experience with public, private, and hybrid cloud security controls in AWS and Azure.
- Proficiency with AI-driven tools and scripting (e.g., Python, PowerShell) to automate security tasks, threat detection, and remediation.
- Advanced written and verbal communication skills.
- Ability to establish credibility and working relationships with a wide range of personnel, including operations, IT, development, and management staff
- Strong analytical skills and the ability to understand and document complex business processes and data flows.
- The ability to work on multiple projects in parallel
- With at least two or more of the following: Tenable SecurityCenter, Tenable.io, Rapid7 or Qualys
- Cloud providers: AWS and Azure
- Systems Administration – Windows, Linux/Unix
- Microsoft Active Directory, Windows Server administration, troubleshooting, performance tuning, & security
- Detailed understanding of TCP/IP and related communication protocols, Windows authentication mechanisms (Kerberos, NTLM, AD), networking
- Crowdstrike Falcon or other MDR
- SIEM products
- CISSP or CSSLP
- CISSP, CCSP, CCSK, Cloud+, CEH, Pentest+, GSEC, preferred