Sr Cyber Defense Sys Engineer

Constellation

Baltimore (MD)

On-site

USD 122,000 - 135,000

Full time

10 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Bonus program
401(k) with company match
Comprehensive medical, dental, vision

Job summary

Constellation is seeking a Cyber Security Operations Center (CSOC) professional to maintain and operate the CSOC and provide targeted security advisory services. You will test, deploy, and administer infrastructure hardware and software to effectively manage network defense and meet performance metrics across security monitoring, incident response, forensics, threat intelligence, and solution development.

Responsibilities include monitoring security technologies, administering cyber defense

Qualifications

  • Bachelor's degree and 5-years relevant experience, in lieu of degree 9 years of relevant experience
  • 5-years solid, diverse experience in cyber security vulnerability assessments, or equivalent combination of education and work experience
  • Knowledge in the following core technical competencies: SIEM, EDR, Microsoft security suite, Linux, Palo Alto, Operations, Engineering, Content Development, Internetworking, TCP IP
  • Strong knowledge of the Software Development Life Cycle (SDLC) and digital product development
  • Knowledge of how network services and protocols interact to provide network communications.
  • Knowledge of Security principles such as Threat Lifecycle Management & Incident Management & Lifecycle.
  • Knowledge of Cyber SOC processes and Cyber SOC Engineering
  • Knowledge of network protocols (e.g., TCP/IP, DHCP, DNS, Active Directory)
  • Knowledge of network traffic analysis methods
  • Knowledge of packet level analysis using appropriate tools (e.g., Wireshark, tcpdump)
  • Knowledge of basic system administration, network, and OS hardening techniques
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (defense in-depth)
  • Knowledge of OSI model and underlying network protocols (TCP/IP, DHCP), and directory services (DNS)
  • Skill in troubleshooting and diagnosing cyber defense infrastructure anomalies
  • Skill in securing network communications
  • Knowledge of protecting a network against malware
  • Knowledge of web filtering technologies
  • Knowledge of cyber defense policies, procedures, and regulations
  • Knowledge of test procedures, principles, and methodologies (CMMI)
  • Knowledge of basic system, network, OS hardening techniques and security benchmarks

Responsibilities

  • Continually monitor, refine & improve upon the security technologies utilized by the CSOC.
  • Perform system administration on specialized cyber defense applications and systems to include installation, configuration, maintenance, backup and restoration.
  • Build, install, configure, and test dedicated cyber defense hardware.
  • Provide Log & Monitoring Design Services.
  • Identify potential conflicts with implementation of any cyber defense capability.
  • Deploy new data source feeds into SIEM & develops initial content for monitoring
  • Monitor SIEM infrastructure performance
  • Provide Security Advisory Services
  • Assist in identifying, prioritizing, and coordinating the protection of critical cyber defense infrastructure and key resources.
  • Responsible for SOC Release Management & SOC Change Management
  • Assure that all equipment, systems, applications & appliances of threat & vulnerability management technologies are available & running effectively.
  • Assist in assessing the impact of implementing and sustaining a dedicated cyber defense infrastructure.
  • Lead projects to further enhance security technologies, practices, processes

Skills

SIEM
EDR
Microsoft security suite
Linux
Palo Alto
SDLC
TCP/IP
DNS
Active Directory
Threat Lifecycle Management
Incident Management
Cyber SOC
Network security
Wireshark
tcpdump

Education

Bachelor's degree or equivalent experience

Tools

Wireshark
tcpdump
Palo Alto Firewall

Job description

Who We Are

As the largest private-sector power producer in the world and the nation's largest producer of clean and reliable energy, Constellation is focused on our purpose: lighting the way to a brilliant tomorrow for all. We have been the leader in clean energy production for more than a decade, and we are cultivating a workplace where our employees can grow, thrive, and contribute. Now integrated with Calpine, our portfolio includes 55 gigawatts of capacity from nuclear, natural gas, geothermal, hydro, wind and solar facilities, with the generating capacity to power the equivalent of 27 million homes.

Our culture and employee experience make it clear: We are powered by passion and purpose. Together, we're creating healthier communities and a cleaner planet, and our people are the driving force behind our success. At Constellation, you can build a fulfilling career with opportunities to learn, grow and make an impact. By doing our best work and meeting new challenges, we can accomplish great things. Join us in meeting the country's energy needs today and tomorrow.

Total Rewards

Constellation offers an extensive selection of benefits and rewards to help our employees thrive professionally and personally. We provide competitive compensation and a wide-range of benefits that support both employees and their families, helping them prepare for the future. In addition to highly competitive salaries, eligible employees are offered a bonus program, 401(k) with company match, employee stock purchase program; comprehensive medical, dental and vision benefits, including robust wellbeing programs; disability and life insurance benefits; paid time off for vacation, holidays, and sick days; and much more.

Expected salary range of $121,500 to $135,000, varies based on experience, along with comprehensive benefits package that includes bonus and 401(k).

Primary Purpose Of Position

Responsible for the maintenance and operation of the Cyber Security Operations Center (CSOC) and for providing targeted security advisory services. Tests, implements, deploys, maintains, reviews, and administers the infrastructure hardware, software, and documentation that are required to effectively manage network defense. Enables the Cyber SOC to meet key performance metrics across five key capabilities: Security Monitoring, Incident Handling & Response, Digital Forensics & eDiscovery, Cyber Threat Intelligence, and Technical Solutions Development. Responsible for the creation of content for use in monitoring toolsets while maintaining a uniform view of security monitoring architecture. Tests, implements, deploys, maintains, and administers the infrastructure hardware and software.

Primary Duties And Accountabilities
  • Continually monitor, refine & improve upon the security technologies utilized by the CSOC. Perform system administration on specialized cyber defense applications and systems (e.g., EDR, Cloud and Email Security, SIEM, appliances) to include installation, configuration, maintenance, backup and restoration. Build, install, configure, and test dedicated cyber defense hardware.
  • Provide Log & Monitoring Design Services. Identify potential conflicts with implementation of any cyber defense capability (e.g., tool testing and optimization).
  • Deploy new data source feeds into SIEM & develops initial content for monitoring
  • Monitor SIEM infrastructure performance
  • Provide Security Advisory Services
  • Assist in identifying, prioritizing, and coordinating the protection of critical cyber defense infrastructure and key resources.
  • Responsible for SOC Release Management & SOC Change Management
  • Assure that all equipment, systems, applications & appliances of threat & vulnerability management technologies are available & running effectively.
  • Assist in assessing the impact of implementing and sustaining a dedicated cyber defense infrastructure.
  • Lead projects to further enhance security technologies, practices, processes
Minimum Qualifications
  • Bachelor's degree and 5-years relevant experience, in lieu of degree 9 years of relevant experience
  • 5-years solid, diverse experience in cyber security vulnerability assessments, or equivalent combination of education and work experience
  • Knowledge in the following core technical competencies: SIEM, EDR, Microsoft security suite, Linux, Palo Alto, Operations, Engineering, Content Development, Internetworking, TCP IP
  • Strong knowledge of the Software Development Life Cycle (SDLC) and digital product development
  • Knowledge of how network services and protocols interact to provide network communications.
  • Knowledge of Security principles such as Threat Lifecycle Management & Incident Management & Lifecycle.
  • Knowledge of Cyber SOC processes and Cyber SOC Engineering
  • Knowledge of network protocols (e.g., Transmission Control Protocol/Internet Protocol [TCP/IP], Dynamic Host Configuration Protocol [ DHCP] and directory services (e.g., Domain Name System [DNS], Active Directory)
  • Knowledge of network traffic analysis methods
  • Knowledge of packet level analysis using appropriate tools (e.g., Wireshark, tcpdump).
  • Knowledge of basic system administration, network, and operating system hardening techniques
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense in-depth).
  • Knowledge of OSI model and underlying network protocols (e.g., TCP/IP, Dynamic Host Configuration Protocol [DHCP]), and directory services (e.g., Domain Name System [DNS]).)
  • Skill in troubleshooting and diagnosing cyber defense infrastructure anomalies and work through resolution
  • Skill in securing network communications
  • Knowledge of protecting a network against malware
  • Knowledge of web filtering technologies
  • Knowledge of cyber defense policies, procedures, and regulations
  • Knowledge of test procedures, principles, and methodologies (e.g., Capabilities and Maturity Model Integration (CMMI))
  • Knowledge of basic system, network, OS hardening techniques and security benchmarks
Preferred Qualifications
  • Graduate degree in cyber security or related area of expertise.
  • Ability to demonstrate analytical skills, technical knowledge, and practical application of cyber and information security principles to business leaders and technical staff
  • Skill in using security event correlation tools
  • In-depth knowledge of cyber security program elements such as Policy Development, Application Security, Information Security, Network Security, Disaster Recovery Planning, Operational Security, Incident Response, and End User Education
  • Experience with Data Pipelines such as Cribl and BindPlane.
  • CIM Normalization
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Cyber Defense Sys Engineer
Sr Cyber Defense Sys Engineer

Constellation • Houston (TX)

On-site
USD 122,000 - 135,000
Bonus program
401(k) with company match
Employee stock purchase program
+3
Sr Cyber Defense Sys Engineer
Sr Cyber Defense Sys Engineer

Constellation • Kennett Square

On-site
USD 122,000 - 135,000
Bonus program
401(k) with company match
Employee stock purchase program
+1
Sr Cyber Defense Sys Engineer
Sr Cyber Defense Sys Engineer

Constellation • De Pere (WI)

On-site
USD 122,000 - 135,000
Bonus program
401(k) with company match
Medical, dental and vision benefits
+1
Sr Cyber Defense Sys Engineer
Sr Cyber Defense Sys Engineer

Constellation Energy Corp. • Baltimore (MD), Northern (KY)

On-site
USD 122,000 - 135,000
Sr Cyber Security Vulnerability Management Analyst
Sr Cyber Security Vulnerability Management Analyst

Constellation Energy Corp. • Northern (KY)

Hybrid
USD 123,000 - 137,000
Sr Cyber Security Vulnerability Management Analyst
Sr Cyber Security Vulnerability Management Analyst

Constellation • Houston (TX)

On-site
USD 123,000 - 137,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

On-site
USD 90,000 - 120,000
Cybersecurity Operations Director
Cybersecurity Operations Director

Pearl Companies • United States

Remote
USD 130,000 - 160,000
Senior Cyber Manager
Senior Cyber Manager

Peraton • Washington

On-site
USD 120,000 - 170,000
Security Operations Center Technical Lead
Security Operations Center Technical Lead

Invictus International Consulting, LLC • Colorado Springs (CO)

On-site
USD 200,000 - 230,000