CDW is looking for a capable senior system security engineer, who enjoys security work and possesses both deep and wide expertise in the security space.
In this role, you will make things more secure by protecting system boundaries, keeping computer systems and network devices hardened against attacks and securing highly sensitive data. Qualified candidates will have a background in security and systems engineering.
Security Tools Knowledge: CyberArk, Cloud Lock, Proofpoint, McAfee, Trend Micro, scanning/pen testing tools. Other security tool experience, a plus.
Responsibilities
- This position will develop, maintain, and manage the corporation’s cyber security infrastructure.
- Engineer, implement and monitor security measures for the protection of computer systems, networks and information.
- Guide the Information Technology team in protecting the company from infiltration and cyber-attacks.
- Plan and execute the security measures necessary to monitor and protect sensitive data.
- Perform vulnerability testing, risk analyses and security assessments.
- Drive governance and risk activities to include tracking and reporting.
- Lead the activities of security operations and early career security team members.
- Carry out information security strategy by following the guidance of the Chief Information Security Officer.
- Identify and define system security requirements to protect the organizations’ sensitive information.
- Design computer security architecture and develop detailed cyber security designs.
- Prepare and document standard operating procedures and protocols.
- Configure and troubleshoot security infrastructure devices.
- Develop technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks.
- Write comprehensive reports including assessment-based findings, outcomes and propositions for further system security enhancement.
- Collaborate with the Risk and Information Security team, the ISS team and other departments to educate and incorporate security.
- Support implementation of set policies and parameters to tune security technologies (e.g. DLP).
- Develop standard operating procedures to operationalize security functions and to provide guidance to security operations, Help Desk and other support areas.
- Establish and incorporate reporting measures to outline the effectiveness of the security technologies.
- Integrate architecture and system/network level controls for new and existing technologies.
- Support development of security controls to prevent, detect or correct risks.
- Attend, participate and provide guidance and/or recommendations on projects, as assigned.
Requirements
- Proven work experience as a system security engineer or information security engineer.
- Experience in building and maintaining security systems and implementing security tools.
- Detailed technical knowledge of security as it pertains to networking, databases and operating systems.
- Hands-on experience in security systems, including firewalls, intrusion detection systems, anti-virus software, authentication systems, log management, content filtering, etc.
- Experience with network security and networking technologies and with system, security, and network monitoring tools.
- Thorough understanding of the latest security principles, techniques, and protocols to include global privacy, regulatory and industry-specific laws and or framework.
- Highly proficient in evaluating the security posture of Network and System environments, and providing corrective recommendations.
- Strong understanding of NIST, ISO, Cyber Security Framework and other security industry guidelines.
- Familiarity with web related technologies (Web applications, Web Services, Service Oriented Architectures) and of network/web related protocols.
- Background in proposal development and leadership.
- Problem solving skills and ability to work under pressure.
- The selected candidate will respond to incidents, providing incident response support, forensic analysis, memory and network analysis, or other response efforts or skills, as appropriate.
- Exceptional verbal and written communication skills.
- Must be able to work independently, as a member of a team and as a team leader for security specific initiatives.
- Experience: 8+ years of security experience or 10+ years of security (or IT plus security) specific work experience.
- Certifications: CISSP or similar security industry certification.