ThedaCare is seeking a Cyber Security Engineer with strong experience in Endpoint Management Systems, particularly Tanium. The role focuses on enhancing SecOps capabilities through expertise in incident response, threat response, and threat hunting, while also supporting security governance and risk assessments.
Responsibilities:
- Supports ThedaCare’s security governance program with the goal of reducing risk to ThedaCare’s technical infrastructure and data
- Performs risk assessments of existing and new technologies and workflows
- Ensures the secure storage of system backup and network data repositories
- Monitors computer networks and systems for security threats or unauthorized users
- Automates repeatable tasks for alerting, reporting, and remediation of risks
- Leads in incident response and forensic activities
- Maintains servers from a security point of view that may include patching those servers or improving the security of the applications that are hosted on them
- Identifies compromised machines and reports on security measures taken to address threats
- Documents security processes and procedures
- Secures LAN/WAN/VPN using various security tools
Requirements:
- Strong experience with Endpoint Management Systems—particularly Tanium
- Expertise in Incident Response, Threat Response, and Threat Hunting
- Proficiency in PowerShell and Python scripting
- Solid understanding of Windows Server and associated operating systems
- Experience in requirements gathering, solution design, testing, documentation, and implementation
- Strong troubleshooting skills in distributed environments
- Operational background in software deployment, vulnerability management solutions, and system automation
- Experience analyzing, prioritizing, and remediating vulnerabilities across hybrid environments
- Hands on experience deploying, configuring, and troubleshooting Tanium
- Bachelors degree with 2 years relevant experience or in lieu of Bachelors degree, a minimum of 6 years of progressive experience in information technology
- Experience with Rapid7 Exposure Command
- Experience with endpoint detection and response (EDR) platforms
- Security certifications