Identify, investigate, and address both internal and external threats.
Collaborate with the IT department to maintain security controls, including tuning detection systems and updating control policies.
Manage relationships with security operations vendors.
Provide technical leadership and mentorship to a team of security analysts.
Drive initiatives for advanced threat detection, incident response, and vulnerability management.
Evaluate and improve various information security program functions at the Firm.
Review Security Incident and Event Management (SIEM) systems, including regular reporting of metrics and ongoing investigations.
Investigate security incidents and develop appropriate mitigation strategies.
Ensure effective Endpoint Threat Detection and manage Next Generation Firewalls and/or Intrusion Detection/Prevention Systems (IDS/IPS).
Requirements
Bachelor’s Degree in Information Security, Cybersecurity or similar fields.
Master’s Degree in Information Security, Cybersecurity or similar fields preferred.
Professional-level industry certification (e.g. CISSP, GIAC, SANS, etc.) preferred.
7 years’ working within Cybersecurity field.
Proficient in both verbal and written communication, with the ability to convey technical information to non-technical audiences.
Strong analytical abilities with keen attention to detail, essential for identifying and addressing security events.
Skilled in identifying, triaging, and analyzing security events using Security Information and Event Management systems.
Deep understanding of incident response processes and methodologies.
Familiarity with scripting languages to automate security operations and enhance the incident response process.
Demonstrated understanding of the methodologies used by attackers, which supports proactive defense measures.
Solid grasp of intrusion detection systems, AI-based attack detection and prevention strategies, and SOC (Security Operations Center) operations.
Knowledge of cloud infrastructure and security considerations in a cloud environment.
Familiarity with core infrastructure components such as DNS, Active Directory, and Exchange.
Prior experience with security tools like Microsoft Defender, CrowdStrike, and Palo Alto Networks is desirable.
Experience in professional services sectors such as legal, finance, or consulting is preferred.
Benefits
medical/dental/vision insurance
401(k)
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
information securitycybersecurityincident responsevulnerability managementsecurity information and event management (SIEM)endpoint threat detectionintrusion detection systems (IDS)scripting languagesAI-based attack detectioncloud security
Soft skills
technical leadershipmentorshipanalytical abilitiesattention to detailverbal communicationwritten communicationcollaborationrelationship management