** This role is a hybrid, 2 days on-site opportunity in center city Philadelphia, PA **
The Security Engineer will work in conjunction with a team of IT operations professionals to ensure the Firm’s data, computer systems, and infrastructure are secure through analysis, testing, and investigation. The Sr. Security Engineer will take a lead role in performing necessary installations, upgrades, and improvements for the Firm’s current cybersecurity infrastructure.
About the Role:
- Collaborate with the Firm’s Information Technology leadership to develop and update strategy to support the Firm’s security architecture
- Partners with various business groups in the Firm to ensure security best practices are followed in the design and implementation of new projects
- Administers vulnerability management platform, including configurations, vulnerability scanning, reporting, and endpoint agent updates
- Administers EDR platform, including event investigations, alert and report design, policy configurations, and endpoint agent updates
- Works with Cloud Engineer and Operations staff to ensure Microsoft cloud design and implementation follow security best-practices
- Conducts regular audits to ensure EDR and vulnerability scanning applications are installed and functioning as expected
- Monitors SIEM and Microsoft Azure environment for evidence of current or previous security events, as well as, performs improvements to Splunk alerts, reports, and dashboards
- Leads incident response in cases of confirmed security incidents, including minimization of business impact, communication of findings and mitigation, forensics collection, and hardening recommendations
- Monitors outside threat intelligence sources for both general industry and the legal industry and makes recommendations to ensure the firm is well positioned against future threats
- Works with technical operations teams to ensure security controls such as firewalls, MFA, and NAC functioning as expected
- Prepares reports of security performance metrics, events, incident findings, and other security related outputs
- Works with Risk and Audit teams to ensure all relevant certification tasks and client inquiries are addressed in a timely manner
Qualifications:
- Bachelor's degree preferred
- Current security certifications preferred
- 3 – 5 years of work experience as a security analyst or information security engineer
- Hands on experience in security software and systems including firewalls, intrusion detection systems, anti-virus/EDR software, identity monitoring solutions, authentication platforms, log management , web-content filtering platforms, and vulnerability management systems
- Splunk, Crowdstrike, and Qualys software experience preferred
- Azure cloud security experience is a plus
- Ability to work in complex IT environments with minimal supervision and collaborate effectively with multiple teams in a dynamic environment
- Experience in project task planning, implementation, and documentation
- Strong communication skills
Juno is an Equal Opportunity Employer that provides equal opportunities to all employees and applicants for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, genetic predisposition or carrier status, or any other characteristic protected by federal, state or local law. The Company is committed to this policy with respect to recruitment, hiring, placement, promotion, transfer, training, compensation, benefits, employee activities and general treatment during employment. It’s expected that all employees are aware of this policy and that they create an environment that’s sensitive and respectful to all individuals.