Sr Cyber Defense Sys Engineer

Constellation Energy Corp.

Baltimore, Northern (MD, KY)

Hybrid

USD 122,000 - 135,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Constellation Energy Corp. is seeking a Cyber Security Operations Center specialist to maintain and enhance the CSOC, develop monitoring content, and ensure defense-in-depth across monitoring tools and infrastructure.

You will work on incident handling, threat intelligence, and security advisory services, coordinating with teams to protect critical resources and improve security capabilities.

Qualifications

  • Bachelor's degree or 9 years of relevant experience.
  • 5+ years in cyber security vulnerability assessments or equivalent.
  • Strong SDLC knowledge and digital product development.

Responsibilities

  • Monitor and refine security technologies used by the CSOC.
  • Provide log and monitoring design services and deployment support.
  • Manage SIEM data feeds and content development for monitoring.
  • Perform system administration of cyber defense applications and infrastructure.
  • Lead security projects to enhance technologies, practices and processes.

Skills

SIEM
EDR
Microsoft security
Linux
Palo Alto
Network protocols
TCP/IP
Incident management
Threat lifecycle
Security monitoring

Education

Bachelor's degree or 9 years experience

Tools

Wireshark
tcpdump

Job description

Who We Are

As the largest private-sector power producer in the world and the nation's largest producer of clean and reliable energy, Constellation is focused on our purpose: lighting the way to a brilliant tomorrow for all. We have been the leader in clean energy production for more than a decade, and we are cultivating a workplace where our employees can grow, thrive, and contribute. Now integrated with Calpine, our portfolio includes 55 gigawatts of capacity from nuclear, natural gas, geothermal, hydro, wind and solar facilities, with the generating capacity to power the equivalent of 27 million homes.

Our culture and employee experience make it clear: We are powered by passion and purpose. Together, we're creating healthier communities and a cleaner planet, and our people are the driving force behind our success. At Constellation, you can build a fulfilling career with opportunities to learn, grow and make an impact. By doing our best work and meeting new challenges, we can accomplish great things. Join us in meeting the country's energy needs today and tomorrow.

Total Rewards

Constellation offers an extensive selection of benefits and rewards to help our employees thrive professionally and personally. We provide competitive compensation and a wide-range of benefits that support both employees and their families, helping them prepare for the future. In addition to highly competitive salaries, eligible employees are offered a bonus program, 401(k) with company match, employee stock purchase program; comprehensive medical, dental and vision benefits, including robust wellbeing programs; disability and life insurance benefits; paid time off for vacation, holidays, and sick days; and much more.

Expected salary range of $121,500 to $135,000, varies based on experience, along with comprehensive benefits package that includes bonus and 401(k).

Primary Purpose of Position

Responsible for the maintenance and operation of the Cyber Security Operations Center (CSOC) and for providing targeted security advisory services. Tests, implements, deploys, maintains, reviews, and administers the infrastructure hardware, software, and documentation that are required to effectively manage network defense. Enables the Cyber SOC to meet key performance metrics across five key capabilities: Security Monitoring, Incident Handling & Response, Digital Forensics & eDiscovery, Cyber Threat Intelligence, and Technical Solutions Development. Responsible for the creation of content for use in monitoring toolsets while maintaining a uniform view of security monitoring architecture. Tests, implements, deploys, maintains, and administers the infrastructure hardware and software.

Primary Duties and Accountabilities
  • Continually monitor, refine & improve upon the security technologies utilized by the CSOC. Perform system administration on specialized cyber defense applications and systems (e.g., EDR, Cloud and Email Security, SIEM, appliances) to include installation, configuration, maintenance, backup and restoration. Build, install, configure, and test dedicated cyber defense hardware.
  • Provide Log & Monitoring Design Services. Identify potential conflicts with implementation of any cyber defense capability (e.g., tool testing and optimization).
  • Deploy new data source feeds into SIEM & develops initial content for monitoring
  • Monitor SIEM infrastructure performance
  • Provide Security Advisory Services
  • Assist in identifying, prioritizing, and coordinating the protection of critical cyber defense infrastructure and key resources.
  • Responsible for SOC Release Management & SOC Change Management
  • Assure that all equipment, systems, applications & appliances of threat & vulnerability management technologies are available & running effectively.
  • Assist in assessing the impact of implementing and sustaining a dedicated cyber defense infrastructure.
  • Lead projects to further enhance security technologies, practices, processes
Minimum Qualifications
  • Bachelor's degree and 5-years relevant experience, in lieu of degree 9 years of relevant experience
  • 5-years solid, diverse experience in cyber security vulnerability assessments, or equivalent combination of education and work experience
  • Knowledge in the following core technical competencies: SIEM, EDR, Microsoft security suite, Linux, Palo Alto, Operations, Engineering, Content Development, Internetworking, TCP IP
  • Strong knowledge of the Software Development Life Cycle (SDLC) and digital product development
  • Knowledge of how network services and protocols interact to provide network communications.
  • Knowledge of Security principles such as Threat Lifecycle Management & Incident Management & Lifecycle.
  • Knowledge of Cyber SOC processes and Cyber SOC Engineering
  • Knowledge of network protocols (e.g., Transmission Control Protocol/Internet Protocol [TCP/IP], Dynamic Host Configuration Protocol [ DHCP] and directory services (e.g., Domain Name System [DNS], Active Directory)
  • Knowledge of network traffic analysis methods
  • Knowledge of packet level analysis using appropriate tools (e.g., Wireshark, tcpdump).
  • Knowledge of basic system administration, network, and operating system hardening techniques
  • Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense in-depth).
  • Knowledge of OSI model and underlying network protocols (e.g., TCP/IP, Dynamic Host Configuration Protocol [DHCP]), and directory services (e.g., Domain Name System [DNS]).)
  • Skill in troubleshooting and diagnosing cyber defense infrastructure anomalies and work through resolution
  • Skill in securing network communications
  • Knowledge of protecting a network against malware
  • Knowledge of web filtering technologies
  • Knowledge of cyber defense policies, procedures, and regulations
  • Knowledge of test procedures, principles, and methodologies (e.g., Capabilities and Maturity Model Integration (CMMI))
  • Knowledge of basic system, network, OS hardening techniques and security benchmarks
Preferred Qualifications
  • Graduate degree in cyber security or related area of expertise.
  • Ability to demonstrate analytical skills, technical knowledge, and practical application of cyber and information security principles to business leaders and technical staff
  • Skill in using security event correlation tools
  • In-depth knowledge of cyber security program elements such as Policy Development, Application Security, Information Security, Network Security, Disaster Recovery Planning, Operational Security, Incident Response, and End User Education
  • Experience withData Pipelines such as Cribl and BindPlane.
  • CIM Normalization
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Cyber Security Vulnerability Management Analyst
Sr Cyber Security Vulnerability Management Analyst

Constellation Energy Corp. • Baltimore (MD)

On-site
USD 123,000 - 137,000
Sr Cyber Security Vulnerability Management Analyst
Sr Cyber Security Vulnerability Management Analyst

Constellation Energy Corp. • Northern (KY)

Hybrid
USD 123,000 - 137,000
Sr Cyber Security Vulnerability Management Analyst
Sr Cyber Security Vulnerability Management Analyst

Constellation • Baltimore (MD)

On-site
USD 123,000 - 137,000
Bonus program
401(k) with company match
Employee stock purchase program
+3
Sr Cyber Security Vulnerability Management Analyst
Sr Cyber Security Vulnerability Management Analyst

Constellation • Houston (TX)

On-site
USD 123,000 - 137,000
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

On-site
USD 90,000 - 120,000
Senior Cyber Manager
Senior Cyber Manager

Peraton • Washington

On-site
USD 120,000 - 170,000
Cybersecurity Operations Director
Cybersecurity Operations Director

Pearl Companies • United States

Remote
USD 130,000 - 160,000
Security Operations Center - SOC Analyst I #595
Security Operations Center - SOC Analyst I #595

Connecticut OnLine Computer Center COCC in • Rocky Hill (CT)

Hybrid
USD 67,000 - 101,000
Hybrid schedules
Tuition reimbursement
Career coaching
+1
SOC Manager with BS Degree
SOC Manager with BS Degree

Acumenz Consulting • United States

Remote
USD 120,000 - 150,000
CYSOC Analyst
CYSOC Analyst

Peraton • Washington

On-site
USD 112,000 - 179,000