Information Security Operations Engineer

PRA Group (Nasdaq: PRAA)

Charlotte (NC)

Hybrid

USD 80,000 - 120,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

PRA Group in Charlotte, NC is seeking a security-focused professional to monitor and validate security controls, respond to incidents, and collaborate with IT and business teams.

You will work with SIEM, NGFWs, DLP, and other security tools, perform risk assessments, triage alerts, and produce management reports. A Bachelor's in CS/Security and ISC2 CC or equivalent certifications are required; visa sponsorship is not offered; hybrid onsite 3 days/week.

Qualifications

  • Minimum 3 years' experience in a SOC environment handling triage alerts and threat hunting; 1–3 years as an Associate Security Engineer
  • Intermediate knowledge of information security principles including risk assessment and management
  • Proficient knowledge of SIEM, network infrastructure, and security technologies such as NGFWs, EDR, DLP
  • Fluent English; strong written and verbal communication; ability to report to management

Responsibilities

  • Route IT service tickets and document processes to support success
  • Respond to security incidents and coordinate with a Managed SOC
  • Monitor SIEM logs and network traffic for unusual activity and recommend remediation
  • Develop and maintain security documentation and monthly reports
  • Collaborate with vendors, service providers, and internal IT/business teams

Skills

Triage alerts
Threat hunting
Incident response
Log analysis
Risk assessment

Education

Bachelor's in Computer Science/Networking/Cyber Security
ISC2 CC (required)
Security+ / AZ-500 / CCNA-Security / GSEC certifications

Tools

Next-Generation firewalls
Email security / DLP
IDS/IPS
Web content filtering
File integrity monitoring
SIEM
Network infrastructure (Routers/Switches)

Job description

Primarily focused on the day-to-day operations and validation of processes already in place with a global support mindset. Monitor internal and external access controls, security safeguards and associated processes to protect the confidentiality, integrity and availability of PRA information systems assets. Evaluate new technologies and applications, assess vulnerabilities and risks, detect and respond to incidents, and recommend appropriate safeguards. Route IS support tickets and documents processes and procedures as key functions to success in this role. Interact closely and manage relationships with product vendors and service providers, personnel from various IT departments - including Service Desk, Data Center, and Server Admin teams - as well as with business departments.

This is a hybrid position working onsite in the office 3 days per week.Note: We are not able to provide visa sponsorship now or in the future.
Professional Experience:
  • Minimum of 3 years' experience in a SOC environment handling triage alerts and threat hunting, preferably in the financial sector as well as 1-3 years as an Associate Security Engineer
  • Intermediate knowledge of information security principles, including risk assessment and management, threat and vulnerability management, incident response, and identity and access management
  • Intermediate technical knowledge of security-related systems and applications, especially Next Generation firewalls, Email and DLP (Data Loss Prevention) protection, intrusion detection/prevention, web content filtering, and file integrity monitoring solutions
  • Proficient knowledge of network infrastructure, including routers, switches, firewalls, and associated network protocols and concepts
  • Advanced understanding of SIEM (Security Information and Event Management) technology and ability to query/review logs
  • Proficient understanding and knowledge of risk and vulnerability assessments and ability to think through and review solutions put in place
  • Fluent English (commonly spoken European languages are a plus); Strong written and verbal communication skills are required
  • Strong analytical and problem-solving skills to enable effective security incident and problem resolution
  • Strong ability to provide detailed reports to management when directed
  • Multi-tasking required; Ability to work under stress in emergencies, with the flexibility to handle multiple high-pressure situations simultaneously
  • Ability to work well under minimal supervision
  • Strong team-oriented interpersonal skills, with the ability to interface effectively with a broad range of people and roles, including vendors and IT-business personnel
  • Strong customer/client focus, with the ability to manage expectations appropriately, provide superior customer/client experience and build long-term relationships
  • Bachelor's in Computer Science, Networking, Cyber Security, or related field; Minimum ISC2 CC required. Equivalent work experience accepted.
Licenses/Certifications:

ISC2 CC (Certified in Cybersecurity - Required)/Security+/AZ-500/CCNA-Security (Cisco Certified Network Associate) / GSEC (GIAC [Global Information Assurance Certification] Security Essentials)

Key Responsibilities:
  • Follows standardized practices/procedures while routing and resolving IT service tickets and assignments.
  • Adhere to all documented SLAs, closing tickets within a reasonable amount of time
  • Respond to and, where appropriate, resolve or escape reported security incidents
  • Work in tandem with a Managed Security Operations Center (mSOC) to quickly detect, contain, and eradicate security threats
  • Monitor system logs, SIEM (Security Information and Event Management) tools and network traffic for unusual or suspicious activities. Interpret such activity and make recommendations for resolution
  • Collate security incidents and event data to produce detailed monthly exception and management reports
  • Perform routine monitoring and reporting of antivirus, spam filtering email gateway, web content filtering, and peripheral device control systems
  • Develop and maintain documentation for security systems and procedures
  • Monitor internal control systems to ensure that appropriate information access levels and security clearances are maintained
  • Maintain and modify the vulnerability management program, which includes creating scheduled scans, reviewing scan results, and recommending remediation
  • Participate in infrastructure projects to develop, plan, and implement specifications for network and distributed system security technologies in support of key information systems
  • Download and test new security software and/or technologies
  • Investigate and address security vulnerability disclosures from vendors and third parties
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Operations Engineer
Information Security Operations Engineer

PRA Group (Nasdaq: PRAA) • Virginia (MN)

Hybrid
USD 90,000 - 150,000
Senior Solutions Engineer IT Solutions
Senior Solutions Engineer IT Solutions

PRA Group (Nasdaq: PRAA) • Virginia (MN)

Hybrid
USD 120,000 - 170,000
IT Security Specialist
IT Security Specialist

ibex • Palestine (TX)

On-site
USD 90,000 - 130,000
Senior Solutions Engineer IT Solutions
Senior Solutions Engineer IT Solutions

PRA Group (Nasdaq: PRAA) • Charlotte (NC)

Hybrid
USD 120,000 - 180,000
IS - Operations Engineer
IS - Operations Engineer

Jobtailor • North Carolina

On-site
USD 70,000 - 110,000
Information Security Analyst
Information Security Analyst

Cisive • Maryland

Hybrid
USD 80,000 - 110,000
Security Engineer II
Security Engineer II

MWIDM • Montgomery (AL)

On-site
USD 90,000 - 130,000
Security Engineer
Security Engineer

Insight Global • Atlanta (GA)

On-site
USD 105,000 - 130,000
Security Engineer
Security Engineer

Liberty Personnel Services, Inc. • Feasterville-Trevose

Hybrid
USD 90,000 - 120,000
Cyber SOC Engineer III
Cyber SOC Engineer III

Socket.dev • Town of Florida (NY)

Hybrid
USD 120,000 - 180,000