Enable job alerts via email!

Security Engineer-Managed Services

AHEAD

United States

Remote

USD 110,000 - 125,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

AHEAD is seeking a Security Engineer to enhance their Information Security program. This role involves implementing SIEM & SOAR solutions, monitoring security feeds, and responding to security threats. The ideal candidate will have a strong technical background and experience in incident response, working collaboratively within a 24/7 SOC environment.

Benefits

Medical, Dental, and Vision Insurance
401(k)
Paid company holidays
Paid time off
Paid parental and caregiver leave

Qualifications

  • 2-4 years of experience in Information Security and Incident Response.
  • Experience with security technologies like SIEM, SOAR, and EDR.

Responsibilities

  • Design and develop workflows between SOAR, SIEM, and other security systems.
  • Investigate intrusion attempts and perform in-depth analysis of exploits.
  • Conduct proactive threat research and document all activities during incidents.

Skills

Python
Incident Handling
Communication
Customer Service

Education

Bachelor's Degree in Computer Science
CISSP
AWS Certified Solutions Architect

Tools

SIEM
SOAR
IDS
Firewall

Job description

AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.

AtAHEAD, we prioritize creating a culture of belonging,where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD.

We are an equal opportunity employer,anddo not discriminatebased onan individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, maritalstatus,or any other protected characteristic under applicable law, whether actual or perceived.

We embraceall candidatesthatwillcontribute to the diversification and enrichment of ideas andperspectives atAHEAD.

The Managed Security Team at AHEAD monitors customers' environments and performs Incident Detection, Validation, and Incident Reporting. The Engineer will be responsible for the implementation and maintenance of our SIEM & SOAR Solutions and other technologies that support the Information Security program across AHEAD. This is a technical hands-on position that requires someone with an understanding of the needs of a 24/7 SOC (Security Operations Center). We are looking for a candidate who has had a great deal of SIEM, SOAR, and security experience that will work closely with the SOC staff and with other highly technical members across multiple teams to continuously improve and enhance AHEAD technical information security program. Incumbents will possess strong technical and analytical skills while providing accurate analysis of security related problems. They have a well-rounded networking background and are responsible for performing troubleshooting of client issues. This individual is user focused and works to resolve client needs in a timely manner. These needs may involve resolving hardware/software failures, investigating and responding to security threats, and making change requests to the security policy of company devices.

The Security Engineer is expected to monitor security feeds from client servers, network devices, and end user workstations, operate and maintain network security equipment at client locations. The Engineer is expected to be familiar with a wide range of security tools and understand basic security fundamentals. The Engineer will perform information security event analysis and must possess knowledge of operating systems, TCP/IP networking, network attacks, attack signatures, defense countermeasures, vulnerability management, and log analysis.


Roles & Responsibilities:
  • Design and develop workflows between and within a SOAR, SIEM, big data platforms, threat & vulnerability intelligence solutions and other information security incident response systems
  • Investigate intrusion attempts and perform in-depth analysis of exploits
  • Provide network intrusion detection expertise to support timely and effective decision making of when to declare an incident
  • Conduct proactive threat research
  • Review security events that are populated in a Security Information and Event Management (SIEM) system
  • Tuning of rules, filters and policies for detection-related security technologies to improve accuracy and visibility
  • Data mining of log sources to uncover and investigate anomalous activity, along with related items of interest
  • Independently follow procedures to contain analyze and eradicate malicious activity
  • Document all activities during an incident and provide leadership with status updates during the life cycle of the incident
  • Incident management, response, and reporting
  • Provide information regarding intrusion events, security incidents, and other threat indications and warning information to the client
  • Track trends and statistics for each assigned client
  • Assist with the development of processes and procedures to improve incident response times, analysis of incident, and overall SOC functions
  • Client-facing security meetings
Position Requirements:
  • Experience writing tools to automate tasks and integrate systems in Python
  • Experience with the implementation and refinement of SOAR platforms is a significant plus
  • The ability to think creatively to find elegant solutions to complex problems
  • Excellent verbal and written communication skills
  • Incident handling/response experience
  • The desire to work both independently and collaboratively with a larger team
  • A willingness to be challenged along with a strong appetite for learning
  • 2-4 years of experience in Information Security, Incident Response, security automation, etc.
  • Hands-on experience with common security technologies (IDS, Firewall, SIEM, SOAR, EDR, etc.)
  • Knowledge of common security analysis tools & techniques
  • Understanding of common security threats, attack vectors, vulnerabilities and exploits
  • Knowledge of regular expressions
  • Customer service focused and portrays energy, professionalism and welcoming characteristics.
  • Strong ability to work in a highly sensitive and confidential environment.
  • Ability to meet deadlines and handle sensitive and pressured situations.
  • Ability to identify issues and help develop strategy and tactical plans for various department initiatives.
  • Ability to use good judgment and decision-making skills
Education:
  • Bachelors Degree in Computer Science, Information Security or related/equivalent educational or work experience
  • One or more of the following certifications: CISSP, GCIA, GCIH, GPYC, AWS Certified Solutions Architect, AWS Certified SysOps Administrator, AWS Certified Developer, Elastic Certified Engineer

$110,000 - $125,000 a year

Why AHEAD:

Through our daily work and internal groups like Moving Women AHEAD and RISE AHEAD, we value and benefit from diversity of people, ideas, experience, and everything in between.

We fuel growth by stacking our office with top-notch technologies in a multi-million-dollar lab, by encouraging cross department training and development, sponsoring certifications and credentials for continued learning.

USA Employment Benefits include:

- Medical, Dental, and Vision Insurance

- 401(k)

- Paid company holidays

- Paid time off

- Paid parental and caregiver leave

- Plus more! See benefits https://www.aheadbenefits.com/ for additional details.

The compensation range indicated in this posting reflects the On-Target Earnings (“OTE”) for this role, which includes a base salary and any applicable target bonus amount. This OTE range may vary based on the candidate’s relevant experience, qualifications, and geographic location.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

AI Security Engineer

Omada Health

Remote

USD 100 000 - 720 000

2 days ago
Be an early applicant

Senior AWS Security Engineer- Remote

Lensa

Great Falls Crossing

Remote

USD 98 000 - 167 000

Today
Be an early applicant

Security Engineer

AP Professionals

Remote

USD 90 000 - 208 000

4 days ago
Be an early applicant

IT Security Engineer

Pediatric Associates

Plantation

Remote

USD 90 000 - 120 000

Yesterday
Be an early applicant

Staff Security Engineer

Gradient AI

Remote

USD 100 000 - 130 000

Today
Be an early applicant

Senior Mobility Security Engineer

DMI (Digital Management, LLC)

Remote

USD 100 000 - 130 000

11 days ago

Senior Information Security Engineer @ Lumen Technologies

Cyber Crime

Remote

USD 82 000 - 122 000

4 days ago
Be an early applicant

Offensive Security Engineer

Employers Holdings

Remote

USD 80 000 - 115 000

9 days ago

Senior Security Engineer, Detection & Response (Canada, Mexico, United States)

Jobgether

Remote

USD 100 000 - 130 000

2 days ago
Be an early applicant