Associate Director, Information Security Engineer

Cybersecurity Jobs

New York (NY)

On-site

USD 125,000 - 130,000

Full time

6 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Planned Parenthood Federation of America is seeking an Associate Director, Information Security Engineer to protect PPFA’s environments through hands-on SIEM operations, event investigation, and security monitoring in a New York, NY onsite role. You will collaborate across InfoSec Operations, IT Operations, and MSSP/MSP to enhance security readiness and incident response.

The role emphasizes continuous improvement, with 5+ years of experience, a Bachelor’s degree, and knowledge of Splunk and

Qualifications

  • Bachelor’s degree and 5+ years of industry experience.
  • Experience with PCI, HIPAA, ISO 27001, NIST, CSF, MITRE ATT&CK, ITIL, COBIT, Sarbanes-Oxley, and SANS 20.
  • Experience with UNIX, AIX & Solaris, Linux, and Windows Server.
  • Experience with IDS/IPS and SIEM, including Splunk.
  • Knowledge of TCP/IP networking, VPN, VLAN, NAT.
  • Forensic investigations experience.

Responsibilities

  • Provide security monitoring, event investigation and analysis, and countermeasure proposals on a 24x7 basis.
  • Support and guide Tier I Analysts, and provide technical assistance for Tier II and Tier III incidents as assigned.
  • Interface with the InfoSec Operations Team, MSSP, and IT Managed Service Provider on SIEM security event architecture, collection, management, reporting, and alerting.
  • Identify, implement, and maintain Information Security toolsets, primarily focused on SIEM.
  • Partner with IT Ops to ensure proper security event logging setup.
  • Support Information Security SIEM management needs of PPFA and Affiliates, where applicable.
  • Act as a Subject Matter Expert for PPFA’s SIEM (currently Splunk), including the ability to configure, manage, operate, and administer the platform from a managed SIEM perspective.
  • Monitor and ensure established processes are followed for event identification, including recommendations for event filtering updates and ensuring those updates are completed.
  • Ensure processes are followed for collecting relevant data and performing required levels of analysis.
  • Ensure events are assigned appropriately and follow the established process for Tier II escalations, including identifying whether escalation is from MSSP, MSP, Affiliate, or other sources and using the appropriate triage and documentation processes.
  • Create and maintain SOPs for the Information Security Ops group and recommend security process improvements.
  • Assist in vulnerability assessments setup, scanning, analysis, and remediations, working with IT Ops staff and corporate vendors to correct errors and alerts in IT infrastructure systems.
  • Assist in IR incidents as assigned by management.
  • Perform all other duties as assigned.

Skills

SIEM operations
Security monitoring
Incident response
Team guidance
Networking fundamentals
Compliance standards
Threat analysis
Forensic investigations
Vulnerability management
Splunk expertise

Education

Bachelor's degree

Tools

Splunk
UNIX
AIX
Solaris
Linux
Windows Server
IDS/IPS
Vulnerability scanners
Penetration testing systems
Wireless networking
Switches/Routers
Firewalls
TCP/IP
VPN
VLAN
NAT
MITRE ATT&CK
PCI
HIPAA
ISO 27001
NIST
CSF
ITIL
COBIT
SANS 20
Sarbanes-Oxley

Job description

Associate Director, Information Security Engineer at Planned Parenthood Federation of America supports 24/7 protection of PPFA’s environments through hands‑on SIEM operations, event investigation, and security monitoring in a New York, NY onsite role. This position emphasizes continuous improvement and operational readiness, with direct engagement across InfoSec Operations, IT Operations, and managed security services.

Compensation: USD 125,000 - 130,000 per year. Education: Bachelor’s degree. Experience: 5+ years. Travel: 0-10% as needed.

How you’ll help protect PPFA

The Security Engineer manages Information Technology security protections with the goal of protecting PPFA from security incidents and reducing the impact of system compromises. You will deliver this through 24x7 monitoring, investigations, and countermeasure recommendations, with a focus on SIEM architecture and operational effectiveness.

Responsibilities
  • Provide security monitoring, event investigation and analysis, and countermeasure proposals on a 24x7 basis.
  • Support and guide Tier I Analysts, and provide technical assistance for Tier II and Tier III incidents as assigned.
  • Interface with the InfoSec Operations Team, MSSP, and IT Managed Service Provider (MSP) on SIEM security event architecture, collection, management, reporting, and alerting.
  • Identify, implement, and maintain Information Security toolsets, primarily focused on SIEM.
  • Partner with IT Ops to ensure proper security event logging setup.
  • Support Information Security SIEM management needs of PPFA and Affiliates, where applicable.
  • Act as a Subject Matter Expert for PPFA’s SIEM (currently Splunk), including the ability to configure, manage, operate, and administer the platform from a managed SIEM perspective.
  • Monitor and ensure established processes are followed for event identification, including recommendations for event filtering updates and ensuring those updates are completed.
  • Ensure processes are followed for collecting relevant data and performing required levels of analysis.
  • Ensure events are assigned appropriately and follow the established process for Tier II escalations, including identifying whether escalation is from MSSP, MSP, Affiliate, or other sources and using the appropriate triage and documentation processes.
  • Create and maintain Standard Operating Procedures (SOPs) for the Information Security Ops group and recommend security process improvements.
  • Support complex, tool‑specific tasks with guidance from management and vendor/MSSP resources.
  • Assist in vulnerability assessments setup, scanning, analysis, and remediations, working with IT Ops staff and corporate vendors to correct errors and alerts in IT infrastructure systems.
  • Assist in IR incidents as assigned by management.
  • Perform all other duties as assigned.
What you bring
  • Bachelor’s degree and 5+ years of industry experience.
  • Independent decision‑making ability, especially for analysis tracks for escalated events and escalation decisions that may range from Tier I events through Incident Response‑level remediations.
  • Experience with compliance requirements and industry standards including PCI, HIPAA, ISO 27001, NIST, CSF, MITRE ATT&CK, ITIL, COBIT, Sarbanes‑Oxley, and SANS 20.
  • Experience with UNIX, AIX & Solaris, Linux, and Windows Server.
  • Experience with Network/System Intrusion Detection or Prevention Systems (IDS/IPS).
  • Experience with SIEM, including Splunk.
  • Experience with vulnerability scanner and penetration testing systems.
  • Knowledge of wireless networking and switches/routers, plus basic configuration of firewalls.
  • Understanding of TCP/IP networking, VPN, VLAN, NAT, and related security concepts.
  • Experience with software & hardware asset management.
  • Ability to evaluate security threats and implement attack countermeasures.
  • Experience conducting forensic analytical studies and investigations.
  • Flexibility to adapt quickly to changing priorities and ambiguous situations.
  • A deep commitment to Planned Parenthood’s mission of promoting Sexual and Reproductive Health.
Technologies you’ll work with
  • Splunk, SIEM
  • UNIX, AIX, Solaris, Linux, Windows Server
  • IDS/IPS
  • Vulnerability scanner, Penetration testing systems
  • Wireless Networking
  • Switches/Routers, Firewalls (basic configuration)
  • TCP/IP, VPN, VLAN, NAT
  • MITRE ATT&CK, PCI, HIPAA, ISO 27001, NIST, CSF, ITIL, COBIT, Sarbanes-Oxley, SANS 20
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Associate Director, Information Security Engineer
Associate Director, Information Security Engineer

Femtech Insider Ltd. • New York (NY)

On-site
USD 125,000 - 130,000
Associate Director, Information Security Engineer
Associate Director, Information Security Engineer

Lever, Inc. • New York (NY)

On-site
USD 125,000 - 130,000
Associate Director, InfoSec & SIEM Operations
Associate Director, InfoSec & SIEM Operations

Femtech Insider Ltd. • New York (NY)

On-site
USD 125,000 - 130,000
Senior Information Security Engineer - SIEM & Incident Response
Senior Information Security Engineer - SIEM & Incident Response

Cybersecurity Jobs • New York (NY)

On-site
USD 125,000 - 130,000
Senior Information Security Engineer – SIEM & IR Lead
Senior Information Security Engineer – SIEM & IR Lead

Lever, Inc. • New York (NY)

On-site
USD 125,000 - 130,000
Director, Development Operations Infrastructure Engineering
Director, Development Operations Infrastructure Engineering

Planned Parenthood Federation of America • New York (NY)

On-site
USD 160,000 - 170,000
Director, Development Operations Infrastructure Engineering
Director, Development Operations Infrastructure Engineering

Planned Parenthood • New York (NY)

On-site
USD 160,000 - 170,000
Manager, Technology and Cyber Awareness, Training and Enablement
Manager, Technology and Cyber Awareness, Training and Enablement

Planned Parenthood Federation of America • New York (NY)

On-site
USD 90,000 - 95,000
Systems Security Analyst
Systems Security Analyst

Brown University Health • Rhode Island

On-site
USD 102,963 - 169,000
Medical insurance
Vision insurance
401(k)
+3
Manager, Technology and Cyber Awareness, Training and Enablement
Manager, Technology and Cyber Awareness, Training and Enablement

Planned Parenthood • New York (NY)

On-site
USD 90,000 - 95,000