Quick Overview
Job Description
Senior Security Engineer
Location:, Onsite, Cincinnati, OH
Job Description
The Senior Security Engineer will support day-to-day Security Operations, with a focus on investigating security events and responding to complex security incidents. This person will lead containment, eradication, and recovery efforts across endpoint, cloud, and identity-related incidents and serve as an escalation point for more complex security events.
This is a senior-level individual contributor role requiring strong Security Operations experience, critical thinking, attention to detail, and the ability to communicate effectively in high-pressure situations. The ideal candidate will be able to break down complex technical information and communicate clearly with both technical and non-technical stakeholders.
Requirements:
Strong experience in Security Operations, security investigations, and incident response
Hands-on experience investigating and responding to security events and incidents
Experience supporting containment, eradication, and recovery activities
Experience with security alerts and detections
Experience developing or maintaining security playbooks and/or runbooks
Understanding of Security Operations tooling such as SIEM/SOAR, EDR, email security gateways, and firewalls
Strong critical-thinking and problem-solving skills
Ability to break down complex technical topics and communicate them clearly to technical and non-technical audiences
Strong written and verbal communication skills
Demonstrated leadership within an individual contributor role
Experience mentoring junior team members
Nice-to-Haves:
Experience with detection engineering
Experience with rule or alert tuning
Familiarity with the MITRE ATT&CK framework, including mapping security activity or detections to relevant tactics and techniques
Experience with cloud environments such as Azure, Google Cloud Platform, or AWS
Familiarity with Google Security Operations
Experience contributing to tabletop exercises or security audits
Key Responsibilities
Lead containment, eradication, and recovery efforts for endpoint, cloud, identity, and other security incidents
Serve as an escalation point for complex security events and incidents
Investigate security events and determine appropriate response actions
Contribute to the development and improvement of security playbooks and runbooks
Provide feedback to the Detection team to improve the quality of detections, enrichment, and automated response
Collaborate with cross-functional teams to improve logging visibility and response readiness
Contribute to operational maturity through playbooks, mentoring, tabletop exercises, detections, and audits
Mentor junior team members and help build their Security Operations capabilities
Communicate technical information effectively to both technical and non-technical stakeholders
No fields configured
Similar jobs
- CS
CYBERSECURITY ENGINEER
NewComTec Solutions LLC
Rochester, NY🇺🇸Hybrid18 hours agoMicrosoft OfficeVMwareTechnology - RB
Cybersecurity Analyst with Security Clearance
NewRBR-Technologies
Fort Meade, MD🇺🇸On-site18 hours agoSQLHTTPPowerShell+3Technology - CP
Cyber Range Operations Engineer with Security Clearance
NewCommand Post Technologies Inc
Destin, FL🇺🇸On-site18 hours agoLESSVMwareTechnology - CP
Cyber Security Evaluation Team (CSET) Member with Security Clearance
NewCommand Post Technologies Inc
Patuxent River, MD🇺🇸On-site18 hours agoBashLESSPenetration Testing+2Technology - SE
Exploitation Analyst EA Level 14 with Security Clearance
Sentar Inc
Annapolis Junction, MD🇺🇸Hybrid4 days agoMental HealthPenetration TestingRecruiting - SO
Computer Network Defense Analyst (CNDA) with Security Clearance
Set of X
Annapolis Junction, MD🇺🇸$120k - $210k/yrHybrid4 days agoIoTPenetration Testing