Senior Information Security Engineer - SIEM & Incident Response

Cybersecurity Jobs

New York (NY)

On-site

USD 125,000 - 130,000

Full time

5 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Planned Parenthood Federation of America is seeking an Associate Director, Information Security Engineer to protect PPFA’s environments through hands-on SIEM operations, event investigation, and security monitoring in a New York, NY onsite role. You will collaborate across InfoSec Operations, IT Operations, and MSSP/MSP to enhance security readiness and incident response.

The role emphasizes continuous improvement, with 5+ years of experience, a Bachelor’s degree, and knowledge of Splunk and

Qualifications

  • Bachelor’s degree and 5+ years of industry experience.
  • Experience with PCI, HIPAA, ISO 27001, NIST, CSF, MITRE ATT&CK, ITIL, COBIT, Sarbanes-Oxley, and SANS 20.
  • Experience with UNIX, AIX & Solaris, Linux, and Windows Server.
  • Experience with IDS/IPS and SIEM, including Splunk.
  • Knowledge of TCP/IP networking, VPN, VLAN, NAT.
  • Forensic investigations experience.

Responsibilities

  • Provide security monitoring, event investigation and analysis, and countermeasure proposals on a 24x7 basis.
  • Support and guide Tier I Analysts, and provide technical assistance for Tier II and Tier III incidents as assigned.
  • Interface with the InfoSec Operations Team, MSSP, and IT Managed Service Provider on SIEM security event architecture, collection, management, reporting, and alerting.
  • Identify, implement, and maintain Information Security toolsets, primarily focused on SIEM.
  • Partner with IT Ops to ensure proper security event logging setup.
  • Support Information Security SIEM management needs of PPFA and Affiliates, where applicable.
  • Act as a Subject Matter Expert for PPFA’s SIEM (currently Splunk), including the ability to configure, manage, operate, and administer the platform from a managed SIEM perspective.
  • Monitor and ensure established processes are followed for event identification, including recommendations for event filtering updates and ensuring those updates are completed.
  • Ensure processes are followed for collecting relevant data and performing required levels of analysis.
  • Ensure events are assigned appropriately and follow the established process for Tier II escalations, including identifying whether escalation is from MSSP, MSP, Affiliate, or other sources and using the appropriate triage and documentation processes.
  • Create and maintain SOPs for the Information Security Ops group and recommend security process improvements.
  • Assist in vulnerability assessments setup, scanning, analysis, and remediations, working with IT Ops staff and corporate vendors to correct errors and alerts in IT infrastructure systems.
  • Assist in IR incidents as assigned by management.
  • Perform all other duties as assigned.

Skills

SIEM operations
Security monitoring
Incident response
Team guidance
Networking fundamentals
Compliance standards
Threat analysis
Forensic investigations
Vulnerability management
Splunk expertise

Education

Bachelor's degree

Tools

Splunk
UNIX
AIX
Solaris
Linux
Windows Server
IDS/IPS
Vulnerability scanners
Penetration testing systems
Wireless networking
Switches/Routers
Firewalls
TCP/IP
VPN
VLAN
NAT
MITRE ATT&CK
PCI
HIPAA
ISO 27001
NIST
CSF
ITIL
COBIT
SANS 20
Sarbanes-Oxley

Job description

Planned Parenthood Federation of America is seeking an Associate Director, Information Security Engineer to protect PPFA’s environments through hands-on SIEM operations, event investigation, and security monitoring in a New York, NY onsite role. You will collaborate across InfoSec Operations, IT Operations, and MSSP/MSP to enhance security readiness and incident response.

The role emphasizes continuous improvement, with 5+ years of experience, a Bachelor’s degree, and knowledge of Splunk and

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Security Engineer – SIEM & IR Lead
Senior Information Security Engineer – SIEM & IR Lead

Lever, Inc. • New York (NY)

On-site
USD 125,000 - 130,000
Associate Director, InfoSec & SIEM Operations
Associate Director, InfoSec & SIEM Operations

Femtech Insider Ltd. • New York (NY)

On-site
USD 125,000 - 130,000
Associate Director, Information Security Engineer
Associate Director, Information Security Engineer

Cybersecurity Jobs • New York (NY)

On-site
USD 125,000 - 130,000
Associate Director, Information Security Engineer
Associate Director, Information Security Engineer

Femtech Insider Ltd. • New York (NY)

On-site
USD 125,000 - 130,000
Associate Director, Information Security Engineer
Associate Director, Information Security Engineer

Lever, Inc. • New York (NY)

On-site
USD 125,000 - 130,000
Information Security Analyst: SIEM & Incident Response Lead
Information Security Analyst: SIEM & Incident Response Lead

Freeport Regional Healthcare Foundation dba FHN • Harlem (MT)

On-site
USD 79,000 - 123,000
Medical, Dental, Vision
Tuition reimbursement
Paid time off
Information Security Lead — SOC & Threat Response
Information Security Lead — SOC & Threat Response

AAA Inc. Brand • Town of Florida (NY)

On-site
USD 110,000 - 138,000
Associates Incentive Plan
Security & Threat Intelligence Specialist
Security & Threat Intelligence Specialist

Planned Parenthood Southeast, Inc. • Atlanta (GA)

On-site
USD 67,000 - 72,000
Medical, dental, and vision insurance
401(k) with employer match
Paid time off and holidays
Security Operations Manager: SOC & Incident Response
Security Operations Manager: SOC & Incident Response

AAA National • Town of Florida (NY)

On-site
USD 110,000 - 138,000
Associates Incentive Plan
IT Security Analyst
IT Security Analyst

Cybersecurity Jobs • New York (NY)

On-site
USD 125,000 - 150,000