Cybersecurity Operations Engineer

University System of New Hampshire

Durham (NH)

Hybrid

USD 90,000 - 120,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

University System of New Hampshire is seeking a Cyber Security Engineer to implement, administer, monitor, and continuously improve cybersecurity technologies and processes across USNH. You will provide operational and engineering support for ISS, collaborate with IT teams, and serve as system administrator for UNH Police and security camera systems.

The role requires administering a M365 tenant, managing servers, and assisting campuses with cameras, while balancing security with operational

Qualifications

  • Bachelor's degree or equivalent in cybersecurity, information technology, computer science, information systems or related field.

Responsibilities

  • Monitor, investigate, and respond to cybersecurity incidents including phishing, malware, and unauthorized access.
  • Perform incident triage, containment, eradication, recovery, and post-incident analysis.
  • Support threat hunting and investigations using enterprise security monitoring and endpoint protection platforms.
  • Develop and refine incident response procedures and playbooks in collaboration with stakeholders.
  • Administer vulnerability management platforms and coordinate remediation with system owners.
  • Develop metrics, dashboards, and reporting for vulnerability trends and remediation progress.
  • Develop and maintain security controls for on-premises and cloud environments.
  • Support audits by gathering evidence and assisting remediation activities.
  • Maintain security documentation, procedures, standards, and runbooks.
  • Provide security expertise to project teams and promote secure design practices.
  • Participate in on-call rotations and after-hours incident response as required.

Skills

Threat detection
Incident response
Vulnerability management
Security monitoring
Security engineering
Compliance support
Security awareness training

Education

Bachelor's degree or equivalent in Cybersecurity/IT/CS/IS

Tools

Microsoft Defender XDR
Microsoft Sentinel
Microsoft Entra ID
Microsoft Purview
Microsoft Intune
Microsoft 365 administration
Azure
AWS
Splunk
CrowdStrike EDR
PowerShell
Python
Tenable
Qualys
Rapid7

Job description

The Cyber Operations Engineer is responsible for the implementation, administration, monitoring, and continuous improvement of cybersecurity technologies, services, and processes across the University System of New Hampshire (USNH). The position provides operational and engineering support for Information Security Services (ISS) and works collaboratively with infrastructure, identity and access management, application, and campus technology teams to protect institutional information assets and reduce cybersecurity risk.This role serves as a technical security subject matter expert responsible for threat detection, incident response, vulnerability management, security monitoring, security engineering, and compliance support activities. The Cyber Security Engineer participates in the evaluation, deployment, and optimization of enterprise security solutions and assists in the development of security standards, procedures, and best practices that support the University's strategic security objectives.The position also serves as the system administrator to the UNH Police Department and the USNH security camera system. The position is expected to administer a M365 tenant of 55 users, manage servers, and assist all USNH campuses with their cameras.The Cyber Security Engineer interfaces with USNH technology teams, business units, and external partners to support a secure computing environment while balancing operational needs, regulatory requirements, and institutional priorities.**Essential Duties and Responsibilities****Security Operations and Incident Response*** Monitor, investigate, and respond to cybersecurity incidents, including compromised accounts, phishing attacks, malware infections, unauthorized access attempts, and other security events.* Perform incident triage, containment, eradication, recovery, and post-incident analysis activities.* Support threat hunting and security investigations utilizing enterprise security monitoring and endpoint protection platforms.* Participate in the development and refinement of incident response procedures and playbooks.* Collaborate with internal and external stakeholders during security investigations and incident response activities.**Vulnerability and Risk Management*** Administer and operate enterprise vulnerability management platforms and services.* Conduct vulnerability assessments of servers, workstations, cloud resources, applications, and network infrastructure.* Analyze vulnerability findings and coordinate remediation efforts with system owners and technology teams.* Develop metrics, dashboards, and reporting to communicate vulnerability trends and remediation progress.* Support risk assessments and security reviews of systems, services, and technology initiatives.**Security Engineering and Administration*** Implement, configure, administer, and maintain enterprise security technologies, including but not limited to: + Endpoint Detection and Response (EDR) + Security Information and Event Management (SIEM) + Identity and Access Management (IAM) + Privileged Access Management (PAM) + Email Security Platforms + Cloud Security Technologies + Data Protection and Compliance Solutions* Evaluate emerging technologies and recommend improvements to strengthen the University's cybersecurity posture.* Assist with the design and implementation of security controls for on-premises and cloud environments.* Develop and maintain security automation and orchestration processes to improve operational efficiency.**Compliance, Audit, and Governance*** Support internal and external audits by gathering evidence, documenting controls, and assisting with remediation activities.* Assist in the implementation and validation of security controls required by institutional policies, standards, and regulatory requirements.* Maintain security documentation, procedures, standards, and technical runbooks.* Participate in security assessments and compliance initiatives across the USNH environment.**Collaboration and Education*** Work closely with technology teams to promote secure design and operational practices.* Provide technical consultation and guidance regarding cybersecurity risks and controls.* Develop and deliver security awareness, training, and educational materials.* Create and maintain technical documentation and knowledge base content.* Participate in project teams and provide security expertise for technology initiatives.**Operational Support*** Participate in on-call rotations and after-hours incident response activities as required.* Support continuous improvement initiatives related to security operations, monitoring, and engineering.* Perform other duties as assigned in support of Information Security Services.## **Requirements:**## **Minimum Qualifications and Requirements*** Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field, or an equivalent combination of education and experience.* Experience with vulnerability management, security monitoring, or incident response activities.* Experience administering Windows and/or Linux operating systems in an enterprise environment.* Knowledge of networking fundamentals, authentication technologies, and security principles.* Strong analytical, troubleshooting, and problem-solving skills.* Demonstrated ability to manage multiple priorities in a dynamic environment.* Excellent verbal, written, and interpersonal communication skills.* Ability to work independently and collaboratively within a team environment.* Ability to pass a police department background check* Live within the Durham NH area or within a reasonable commutable distance## **Knowledge, Skills, and Abilities*** Strong understanding of cybersecurity principles, technologies, and best practices.* Ability to analyze security events and identify potential threats and vulnerabilities.* Ability to communicate technical information effectively to both technical and non-technical audiences.* Strong organizational and time-management skills.* Ability to document processes and maintain accurate records.* Commitment to continuous learning and professional development.* Ability to exercise sound judgment when handling sensitive information and security incidents.## **Preferred Qualifications*** Experience supporting Microsoft security technologies, including: + Microsoft Defender XDR + Microsoft Sentinel + Microsoft Entra ID + Microsoft Purview + Microsoft Intune* Experience with Microsoft M365 administration, including: + Intune + Email + Endpoint configuration* Experience with cloud platforms such as Microsoft Azure and Amazon Web Services (AWS).* Experience with Splunk and Enterprise Security* Experience with Crowdstrike EDR* Experience with Identity and Access Management (IAM) and Privileged Access Management (PAM) solutions.* Experience with scripting and automation using PowerShell, Python, or similar technologies.* Experience with vulnerability management platforms such as Tenable, Qualys, or Rapid7.* Experience with security frameworks and standards such as NIST CSF, CIS Controls, ISO 27001, or Higher Education Community Vendor Assessment Toolkit (HECVAT).* Experience supporting audit, compliance, or risk management programs within higher education or large enterprises.## **Certifications (Preferred)**One or more of the following certifications are desirable:* CompTIA Security+* CompTIA CySA+* CISSP* GIAC Certifications* GSEC* Microsoft Security Certifications* SC-200 Security Operations Analyst* SC-300 Identity and Access Administrator* SC-100 Cybersecurity Architect## **Working Conditions*** Standard office and hybrid work environment. (24-Hours on Durham campus)* Occasional travel between USNH campuses may be required.* Participation in an on-call rotation and response to critical security incidents outside of normal business hours may be required.* Ability to perform work involving prolonged computer use and analysis of technical information.* Ability to respond to service calls 24x7
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Operations Engineer
Cybersecurity Operations Engineer

University of New Hampshire • Durham (NH)

Hybrid
USD 60,000 - 108,000
Cybersecurity Operations Engineer
Cybersecurity Operations Engineer

CP01 University System of New Hampshire • Durham (NH)

Hybrid
USD 60,000 - 108,000
Threat-Focused Security Operations Engineer
Threat-Focused Security Operations Engineer

University System of New Hampshire • Durham (NH)

Hybrid
USD 90,000 - 120,000
Help Desk Shift Supervisor
Help Desk Shift Supervisor

University System of New Hampshire • Keene (NH), Northern (KY)

Hybrid
USD 32,000 - 52,000
Security Operations Engineer: Threat Detection & Incident Response
Security Operations Engineer: Threat Detection & Incident Response

University of New Hampshire • Durham (NH)

Hybrid
USD 60,000 - 108,000
Threat Detection & Incident Response Engineer
Threat Detection & Incident Response Engineer

CP01 University System of New Hampshire • Durham (NH)

Hybrid
USD 60,000 - 108,000
Emergency Communication Specialist
Emergency Communication Specialist

University-System-of-New-Hampshir • Durham (NH)

On-site
USD 38,000 - 63,000
Cybersecurity Researcher- Adjunct
Cybersecurity Researcher- Adjunct

CP15 Keene State College • United States

On-site
USD 17,000 - 22,000
Cybersecurity Researcher- Adjunct
Cybersecurity Researcher- Adjunct

University-System-of-New-Hampshir • Keene (NH)

On-site
USD 15,000 - 21,000
Security Operations Analyst
Security Operations Analyst

University of Vermont • New Jersey

Hybrid
USD 65,000 - 75,000