Brown & Brown Insurance

Security Operations Engineer

Brown & Brown Insurance

full-time

Posted on:

Origin:  • 🇺🇸 United States

Visit company website
AI Apply
Manual Apply

Salary

💰 $110,000 - $140,000 per year

Job Level

Mid-LevelSenior

Tech Stack

AWSAzureCloudFirewallsGoogle Cloud PlatformPythonTerraform

About the role

  • Contribute to endpoint security, threat intelligence, security monitoring, automation, web applications, SIEM, and SOC operations
  • Configure, optimize, and maintain web application filtering technologies (specifically Cloudflare WAF)
  • Develop and maintain detection rules across EDR, IDS/IPS, DLP, WAF, and XDR/SIEM platforms
  • Automate detection and response workflows across security tools
  • Monitor and analyze security events across endpoints, networks, and users
  • Lead incident response efforts for web application threats, ensuring containment and remediation
  • Design, deploy, and manage WAF policies, including custom and managed rulesets
  • Investigate WAF alerts and logs and continuously optimize configurations to reduce false positives
  • Collaborate with AppSec, DevOps, and Network Security teams to ensure secure and performant application delivery
  • Configure, test, and optimize security tools to support prevention, detection, and response
  • Design and implement security controls across SaaS, IaaS, and PaaS environments
  • Conduct continuous testing and risk assessments; maintain security documentation and support audits and compliance
  • Stay informed on emerging threats and integrate threat intelligence into security operations

Requirements

  • At least one active security certification preferred: GCIH, GCIA, CISSP, CEH or related
  • B.S. in Information Security, Computer Science, Computer Engineering or similar technical program or equivalent experience
  • 3-5+ years in a hands-on technical role in information security supporting a large organization
  • Hands-on experience managing Cloudflare WAF or similar web application firewalls
  • Hands-on experience working with Google Chronicle/SecOps
  • Experience with security tools including EDR, IDS/IPS, DLP, and SIEM/XDR
  • Working knowledge of firewalls, proxies, network and host-based intrusion prevention, DLP, vulnerability assessment tools, network protocols, architecture
  • Strong understanding of cloud platforms such as AWS, Azure, or GCP
  • Familiarity with scripting or automation tools (e.g., Python, PowerShell, Power BI, Terraform)
  • Experience with securing Microsoft Entra ID/Hybrid environments preferred
  • Desire to learn new technologies and share best practices
  • Ability to self-organize, prioritize independently, and create documentation and reporting