Job Number: 25-04350
Use your skills where innovative technology solutions begin. ECLARO is looking for a Cybersecurity Engineer for our client in Baltimore, MD.
ECLARO’s client is a leading technology solutions provider, collaborating with customers to manage their needs and achieve success in their business goals. If you’re up to the challenge, then take a chance at this rewarding opportunity!
Position Overview:
- General Summary:
- The Enterprise Cyber Security Engineer will be responsible for log management, host security, cloud security, asset discovery, vulnerability management, incident response, threat intelligence, Security Incident and Event Management (SIEM), Security Orchestration and Automated Response (SOAR), Network Access Control, and network security.
- The Enterprise Cyber Security Engineer will be responsible for one or more of these technologies, often working with one or more team members to support these functions.
- Job Scope/Complexity:
- Cybersecurity efforts at Client are complex due to our mission and the complexity of supporting security projects and CJIS policy requirements.
- Incidents and projects are complex and varied, requiring the ability to balance the demands of multiple projects.
Pay Rate: $63.00-$68.00/Hour
Responsibilities:
- Security Monitoring:
- Respond to all user, system, and network security incidents.
- Troubleshoot problems associated with security tools.
- Stay abreast of emerging security threats, vulnerabilities, and controls.
- Filter and analyze large datasets from security logging and telemetry sources and build tools to integrate data into operational controls.
- Automate security controls, data, and processes to provide improved metrics and operational support.
- Filter and analyze large datasets from security logging and telemetry sources and build tools to integrate data into operational controls, including SIEM and log Aggregation Tools.
- Tools may include Splunk or other managed SIEM solutions that utilize the Open Cybersecurity Schema Framework to normalize log data.
- Knowledge of the latest trends and awareness of current hacking techniques and cybercrime.
- Familiarity with firewall rules and advanced threat protection capabilities in next-generation firewall technologies is a plus.
- Consultant should have a working knowledge of either Cisco or Palo Alto firewall technologies.
- Host and Cloud Security:
- Implement and administer automated security update technologies for client and server systems.
- Consultant should be familiar with WSUS for server patching, Intune for client patching or SCCM.
- Implement and administer advanced endpoint protection technologies.
- Technologies should include Windows Defender, CrowdStrike or other 3rd party MDR agents.
- Test and identify network and system vulnerabilities and work with the appropriate owners to address them.
- Consultant should be familiar with network scanners such as Nessus, Tenable or Qualys and be able to interpret reporting and communicate remediation steps to others in the department.
- Help shape the organization's security policies and standards for use in on-premises and cloud environments.
- Create technical documents on the use of security technologies.
- Data Security and Compliance:
- Direct and influence multi-disciplinary teams in implementing and operating information security controls.
- Consultant should be familiar with NIST, CJIS or CIS frameworks and understand how to implement one or more of these standards in a working environment.
- Provide subject matter expertise on information security architecture and systems engineering to other IT and business teams.
- Interpret security and technical requirements into business requirements and communicate security risks to relevant stakeholders.
- Perform other related duties as requested.
Required Qualifications:
- Bachelor's Degree.
- Additional experience may be substituted for education.
- Two years of related work experience with computer systems, applications and Cyber Security technologies.
- Additional education may substitute for experience.
- Scripting - Advanced.
- Cyber Threat Intelligence - Advanced.
- Security Information and Event Management (SIEM) - Advanced.
- Intrusion Detection and Prevention - Advanced.
- Security Engineering - Advanced.
- Vulnerability Management - Advanced.
- Enterprise Risk Management (ERM) - Advanced.
- Cyber Security Strategy - Authority.
- Security Configuration Management / Endpoint Security - Advanced.
- Programming Languages - Advanced.
Preferred Qualifications:
- Knowledge in the assigned technical areas this position is responsible for.
- A CISSP certification is desirable.
If hired, you will enjoy the following ECLARO Benefits:
- 401k Retirement Savings Plan administered by Merrill Lynch
- Commuter Check Pretax Commuter Benefits
- Eligibility to purchase Medical, Dental & Vision Insurance through ECLARO
If interested, you may contact:
Tim Cusick
Tim.cusick@eclaro.com
646-755-9317
Tim Cusick | LinkedIn
Equal Opportunity Employer: ECLARO values diversity and does not discriminate based on Race, Color, Religion, Sex, Sexual Orientation, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status, in compliance with all applicable laws.