Information Technology Security Engineer

Colony Brands, Inc.

Monroe (WI)

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Colony Brands, Inc. is seeking an IT Security Engineer to promote and execute our information security programs, policies and regulatory compliance.

You will work across IT to deploy technical controls and define secure configurations, while reporting on security issues and incidents. You’ll be responsible for guidance to the business, coordinating with project teams, and engaging with the SOC for centralized logging and incident management.

Qualifications

  • Bachelor’s degree in MIS, Computer Sciences, Information Technology or related field.
  • 3+ years of related business experience in information security.
  • Broad understanding of information security and IT auditing.
  • Experience with security systems and patch management processes.

Responsibilities

  • Develop and implement a comprehensive information security program.
  • Define security policies, processes, and standards.
  • Coordinate incident response and forensic activities as needed.
  • Collaborate with IT and project teams to deploy secure systems and controls.
  • Maintain compliance with governing laws and regulations.

Skills

Security engineering
Policy development
Vulnerability management
Security awareness
Communication

Education

Bachelor's degree in MIS/CS/IT

Tools

Vulnerability scanners
SIEM
EDR
MFA
SAML Federation

Job description

SC Data Center, Inc. is an affiliate company of Colony Brands, Inc., which is one of the world’s largest and most successful direct marketing catalog and e-Commerce companies. To support our growing business, we are seeking an IT Security Engineer to promote and execute our information security programs, policies and related regulatory compliance so that we may support and protect our customers, company, and affiliates. We operate with a lean team that necessitates a strong multi-tasking and multi-faceted skillset. If you’re an IT professional with experience in process/procedure development side of security and don’t want to be restricted to a niche area – this position should interest you!

What You’ll Do

The Security Engineer is a critical member of the IT Security team and works closely with the other members of the team to develop and implement a comprehensive information security program. You’ll work across IT to select and deploy technical controls to meet specific security requirements and define processes and standards to ensure that security configurations are maintained.

In general, you’ll be responsible for defining and promoting the information security policies, processes, and standards by designing technologies in a secure manner, monitoring compliance against company policies, applicable law(s), investigating and reporting of security violations and incidents. You’ll report and advise on information security issues to ensure internal security controls are appropriate and operating as intended. You’ll analyze information and processes to balance normal vulnerability levels with investment, personnel and end-user capabilities.

You’ll also be responsible for:

  • Serving as a subject matter expert to the business and providing security guidance
  • Partnering with Project Teams to facilitate and implement new systems, policies, and processes
  • Partnering with Managed service SOC to coordinate centralized logging and identification of security incidents or misconfigured security controls
  • Coordinating/conducting responses to information security incidents (ability to begin forensic investigation as part of the Incident Response process)
  • Preparing documentation, business notifications, and security alerts
  • Daily interaction with our employees on security alerts from EDR (Endpoint Detection & Response), SIEM (Security Incident & Event Management), Phishing identification tools, and general service tickets.
  • Researching, recommending, and developing security and risk mitigation solutions
What It Takes

This role requires someone that enjoys variety in their everyday work with significant technical knowledge around information security engineering and policy/procedures. Ideally you will have a bachelor’s degree in MIS, Computer Sciences, Information Technology or related discipline and 3+ years’ related business experience. In addition, we are looking for:

  • A Broad and in-depth understanding of information security and information technology auditing
  • A commitment to continuous improvement and knowledge growth; this role requires someone who will stay current with security technologies
  • Documented ability to utilize security systems such as, vulnerability scanners, logging software, Multi Factor Authentication, SAML Federation, and experience with patch management processes
  • Experience with diverse desktop and server environments, networking, and operational security technologies both on premise and in the Cloud (AWS preferred)
  • Solid written and verbal communication skills at all comprehension levels. Experience with driving Security Awareness programs is desired.
  • CISSP Certification is preferred
  • Experience working with small to mid-size companies is helpful
  • PCI, SOC1, Audit &/or HIPPA experience is a plus

Note: This position is not eligible for Visa Sponsorship

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Security Engineer (Onsite)
IT Security Engineer (Onsite)

Colony Brands, Inc. • Monroe (WI)

On-site
USD 85,000 - 115,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Southeastern Computer Consultants, Inc. (SCCI) • Virginia (MN)

On-site
USD 150,000 - 210,000
Health benefits
Dental benefits
Vision benefits
+4
Information Security Expert
Information Security Expert

RA • Jersey City (NJ)

On-site
USD 120,000 - 140,000
10% bonus
Professional development training
Mentoring and career coaching
SECURITY COMPLIANCE ENGINEER
SECURITY COMPLIANCE ENGINEER

Target Labs, Inc • Scottsdale (AZ)

On-site
USD 80,000 - 120,000
Security Administrator - (Governance, Risk, Compliance)
Security Administrator - (Governance, Risk, Compliance)

Michels Corporation • Fond du Lac (WI)

On-site
Security Engineer- Enterprise Platforms
Security Engineer- Enterprise Platforms

Dot Foods, Inc. • Chesterfield (MO)

On-site
USD 87,000 - 132,000
Bonus opportunity
Security Engineer
Security Engineer

Insight Global • Atlanta (GA)

On-site
USD 105,000 - 130,000
Information Security Specialist
Information Security Specialist

Confidential • Jacksonville (FL)

On-site
USD 80,000 - 120,000
Medical, dental, vision, and life保险
401(k) with company match
Generous paid time off
+2
Information Security Engineer
Information Security Engineer

Municipal Securities Rulemaking Board • Washington

On-site
Security Administrator - (Governance, Risk, Compliance)
Security Administrator - (Governance, Risk, Compliance)

Michels Corporation • Milwaukee (WI)

On-site