Senior Security Engineer

Milbank LLP

New York (NY)

On-site

USD 160,000 - 185,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Milbank LLP is seeking an experienced security professional to manage and support the Firm's security products, perform incident investigations, and conduct security audits. The role requires hands-on expertise with firewalls, SIEM, vulnerability management and risk assessments.

You will work with consultants and third‑party vendors to ensure security controls, participate in architecture reviews and test new technologies in a fast-paced environment. On‑site in New York, with travel as needed.

Qualifications

  • Extensive knowledge of security best practices for computers, networks and hardware.
  • Strong analytical and problem-solving abilities with solution development.
  • Passion for security and protecting the firm from cyber threats.
  • Customer-service mindset, and ability to balance security with business needs.
  • Team player with ability to work under pressure and emergency on-call.

Responsibilities

  • Manage security products used by the Firm and provide technical support.
  • Investigate security incidents, perform risk assessments and audits.
  • Operate SIEM systems and manage privilege account controls.
  • Conduct vulnerability scans and maintain information security metrics.
  • Collaborate with vendors and participate in security architecture reviews.
  • Test and evaluate new security technologies and maintain documentation.

Skills

Strong analytical
Communication
Interpersonal skills
On-call readiness
Team collaboration

Tools

Cisco network devices
Palo Alto firewalls
Illumio micro-segmentation
Microsoft Sentinel
Vectra AI
Nessus/Tenable/Rapid7
Kali Linux/Metasploit
Cobalt Strike
PowerShell
CyberArk/BeyondTrust
Microsoft 365 E5 security
Azure/Azure AD
DMZ/IDS/IPS
Cloud security controls

Job description

Responsibilities

This is a technical position where the candidate will manage, provide technical support, implement, maintain and troubleshoot all security products used by the Firm. The candidate must have significant hands‑on experience with security technologies and solutions. The candidate will also perform daily investigation of security incidents, security assessments and audits. The job duties include:

  • Manage Intruder Detection sensors, firewalls, Anti‑Virus, Web Filtering Solutions, DLP, IPS/IDS, NAC, DDOS protection, third‑party remote access, application-whitelisting solutions, endpoint detection and response solutions.
  • Manage Security Incident and Event Management systems (SIEM).
  • Manager and investigate all security events until resolution.
  • Manage privilege account management systems.
  • Conduct technical security audits and perform risk assessments.
  • Conduct firewall, network and systems configuration change and audits.
  • Perform vulnerability scans on networks, servers, systems and applications.
  • Create weekly security reports including keeping track of information security metrics.
  • Work with consultants and third‑party vendors as it relates to security services they provide.
  • Participate in project reviews of information security architectures associated with each initiative.
  • Research and test new security technologies.
  • Manage and maintain a good relationship with third party security vendors that support Milbank (MSSP, SOC and others).
Responsibilities

This is a technical position where the candidate will manage, provide technical support, implement, maintain and troubleshoot all security products used by the Firm. The candidate must have significant hands‑on experience with security technologies and solutions. The candidate will also perform daily investigation of security incidents, security assessments and audits. The job duties include:

  • Manage Intruder Detection sensors, firewalls, Anti‑Virus, Web Filtering Solutions, DLP, IPS/IDS, NAC, DDOS protection, third‑party remote access, application-whitelisting solutions, endpoint detection and response solutions.
  • Manage Security Incident and Event Management systems (SIEM).
  • Manager and investigate all security events until resolution.
  • Manage privilege account management systems.
  • Conduct technical security audits and perform risk assessments.
  • Conduct firewall, network and systems configuration change and audits.
  • Perform vulnerability scans on networks, servers, systems and applications.
  • Create weekly security reports including keeping track of information security metrics.
  • Work with consultants and third‑party vendors as it relates to security services they provide.
  • Participate in project reviews of information security architectures associated with each initiative.
  • Research and test new security technologies.
  • Manage and maintain a good relationship with third party security vendors that support Milbank (MSSP, SOC and others).
Compensation

The anticipated base salary range offered for this role will be between $160,000 to $185,000 and represents the firm’s good faith and reasonable estimate of the range of possible base compensation. Actual base compensation will be dependent upon several factors, including but not limited to the candidate’s relevant experience, performance, qualifications, degrees, and location, well as the needs of the firm.

Qualifications
  • Extensive knowledge of security is best practices in regard to computer systems, networks, telecommunication and all associated hardware.
  • Very strong analytical approach to problem solving and solution development.
  • Must be passionate about security and strive to ensure the Firm is protected against evolving cyber threats.
  • Must be a professional with customer satisfaction-oriented mindset, creative and able to balance security with business objectives.
  • Must be able to work well in teams.
  • Must be able to think outside of the box and go beyond traditional security.
  • Must be able to work with Director of Information Security in providing accurate and timely information and closely follow his direction.
  • Ability to manage multiple projects and support functions.
  • Ability to work in a fast paced and dynamic environment.
  • Ability to travel when necessary.
  • Must be available to take emergency off‑hour calls during security incidents.
  • Strong analytical, communication and interpersonal skills.
  • Must be able to quickly identify root causes, especially during security incident investigation.
  • Must be able to create accurate and detailed project plans and complete them in timely manner.
  • Excellent documentation skills and capable of creating comprehensive security documents such as standard operating procedures, guidelines and architecture diagrams.
  • Able to fully perform the job function with minimum supervision.
  • Ability to be on call rotation during the weekend.
Experience with following technologies
  • Cisco network devices
  • In depth experience with Palo Alto firewalls with all the features available in the product
  • Micro segmentation technology – Illumio or others
  • SIEM products such as Microsoft Sentinel or others
  • IDS & IPS (Vectra AI, Snort, Suricata, AlienVault, or others)
  • Endpoint security products – CB Application Control, ThreatLocker, Microsoft Defender for endpoint.
  • Vulnerability scans and penetration test using Nessus, Tenable, Rapid7 Nexpose, Cobalt Strike or others.
  • Open-source security tools (Kali Linux, Metasploit, Nmap, PowerShell Empire, Kerberoast, TrustedSec SET and others) and network traffic analysis
  • Vulnerability management with Tenable IO, Rapid7 Nexpose, Qualys or others
  • Windows operating systems, Active Directory, DNS, DHCP, Microsoft SQL
  • Linux operating systems (Ubuntu, CentOS RedHat)
  • Windows Servers and Workstations Security
  • Scripts (python, VB, Powershell and others)
  • Privilege Account Management Solution (CyberArk, BeyondTrust or others)
  • Microsoft M365 E5 security products, Microsoft Azure, Microsoft Entra ID, Microsoft Defender, Microsoft Sentinel, Azure networking, Azure governance, and related Azure security controls
  • Experience with following technologies is plus:
  • Windows Security (Credentials Guard, Application Guard and others)
  • Authentic8 Silo and other isolating browsers
  • E‑mail protection solutions such as Mimecast, Proofpoint, Exchange Online and others
  • DLP products – Exchange Online DLP, Microsoft Endpoint DLP, Microsoft Azure Information Protection
  • Third Party vendor remote access solution – BeyondTrust or others
  • Forensics analysis using Guidance Encase platform or open‑source tools
  • Cloudflare
  • Forescout
  • Vectra AI
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity/Info Security Engineer (Remote- 130K)
Cybersecurity/Info Security Engineer (Remote- 130K)

Merit Personnel & Consulting • New York (NY)

Remote
USD 117,000 - 143,000
Senior Information Security Analyst – CSIRT
Senior Information Security Analyst – CSIRT

Jobtailor • Mount Laurel Township (NJ)

On-site
USD 110,000 - 170,000
Senior Security Analyst
Senior Security Analyst

Yardi Systems • Santa Barbara (CA)

Hybrid
USD 97,000 - 110,000
Flexible work arrangements
100% paid employee medical premiums
Company profit-sharing plan
Senior Security Engineer (Remote, NY, DC)
Senior Security Engineer (Remote, NY, DC)

MAP SSG • United States

Hybrid
USD 145,000 - 180,000
Hybrid work flexibility
Security Engineer
Security Engineer

Manatt, Phelps & Phillips, LLP • New York (NY)

Hybrid
USD 80,000 - 100,000
Team Lead Operations Metal Shop
Team Lead Operations Metal Shop

KPS Global, LLC • Boston (MA)

On-site
USD 150,000 - 190,000
Manager, Physical Security and Risk Mitigation
Manager, Physical Security and Risk Mitigation

Jobtailor • Washington

On-site
USD 140,000 - 180,000
Security Engineer
Security Engineer

Millennium • Miami (FL)

On-site
USD 110,000 - 160,000
Windows Infrastructure Engineer - Vice President
Windows Infrastructure Engineer - Vice President

Morgan Stanley • New York (NY)

On-site
USD 150,000 - 210,000
Sr Information Security Analyst
Sr Information Security Analyst

Scorpion Therapeutics • Michigan

Hybrid
USD 120,000 - 180,000
Hybrid work two days from home
Career development opportunities