CyberSheath Services International LLC is a rapidly growing Security and IT Managed Services Provider focused on providing Cybersecurity services to the Defense Industrial Base. They are looking for a Cloud Security Engineer to support the implementation, troubleshooting, and maintenance of information security infrastructure and processes in a Security Operations/IT Infrastructure environment.
Responsibilities:
- Architect, establish and maintain best practices of implementation for our products/services
- Configure, implement, and support all production security tools and technologies
- Maintain excellent documentation (SOPs) for all security tooling implementation, support, troubleshooting, etc
- Troubleshoot issues with security toolsets within client environments
- Execute projects related to client onboarding – portal configuration, agent deployment, best practices configuration, systems auditing
- Actively work with other team members on security events that require urgent response, containment and remediation
- Provide ongoing recommendations on toolset tuning and best practices
- Ability to discuss security posture with multiple clients and make recommendations to better their holistic security approach
- Triage incoming support tickets and requests related to security tools managed by CyberSheath
- Take part in daily shift changeover meetings at the beginning and end of shifts
- Provide support for cloud-based SIEM, EDR, and Anti-Spam/Phishing products
- Provide support for additional security tools such as, but not limited to: SOAR, MFA, Encryption, and Vulnerability Management platforms
- Assist with triage of alerts as necessary
Requirements:
- Minimum of 5 years' experience with successful implementation of security products, security best practices, security device policies for small and large enterprises
- Minimum of 3 years' experience in Security Administration, and a deep understanding of how security interfaces/impacts with other IT teams/business objectives
- Deep understanding of Office 365 / Azure AD security tooling, policies and implementation, Azure AD / O365 reporting
- Networking understanding / working experience (TCP/IP, Routing, VPN)
- Must be a U.S. Citizen and reside within the United States or its Territories
- Exceptional analytical and problem-solving skills
- Excellent communication skills to communicate with support personnel, customers, and managers
- Ability to work independently, remotely, and as part of a team
- Thorough working experience with the following products/technologies: KnowBe4, CrowdStrike, SAML/SSO, Okta, Intune, Cisco Umbrella, Rapid7, Defender for Endpoint, Defender for Office 365, Abnormal Security, Avanan
- Understanding of CIS (Center for Internet Security) benchmarks and implementation
- Working experience with DLP technologies/software (Office 365 native or third-party) is a plus
- Experience with Business Intelligence software for reporting (Power BI, BrightGauge, etc.)
- Software development, coding, and/or advanced scripting experience is a plus
- Working expertise with Microsoft Sentinel, Google Chronicle, or Splunk
- Certifications related to Microsoft Azure and Microsoft Security products