Black Canyon Consulting (BCC) is searching for a System Security Engineer to support their work for the National Center for Biotechnology Information (NCBI) at the National Library of Medicine (NLM). The role involves managing security measures, analyzing systems, and providing support for incident response and cyber threat analysis.
Responsibilities:
- Firewall management
- IP management
- Vulnerability/System compliance management
- Analyze architecture and system functionality for a broad range of technologies
- Log analysis for incident remediation/threat hunting
- Troubleshooting security and network problems
- Provide support in the areas of information assurance, vulnerability assessment, enterprise protection planning, security monitoring, incident response, cyber security, and cyber threat analysis
- Participate in formal incident response efforts coordinating responses to major intrusions or exploits. Incident investigations include intrusions, illegal software usage, etc
- Determine Security Incident Event Management (SIEM) pattern analysis based on threat intelligence feeds
Requirements:
- Bachelor's degree or 4 yrs of equivalent experience
- Minimum 2+ years hands on firewall management experience
- Minimum 2+ years hands on vulnerability management experience
- Working knowledge and demonstrated experience in network design, network security, and firewall technologies
- Experience with testing and identifying network and system vulnerabilities using tools such as Tenable.SC and BigFix
- Experience with log analysis
- Good understanding of computing security, authentication techniques, operation procedures and general practices in an enterprise IT infrastructure
- Demonstrated self-initiated ability for analyzing, debugging, and tracking security issues
- Identifies problems, determines the accuracy and relevance of information, and uses sound judgment to generate and evaluate alternatives, and to make recommendations
- Excellent organization and time management skills and ability to identify priorities as needed to accomplish a variety of tasks
- Excellent written and oral communication skills and ability to work with people at every level
- Experience with Fortinet, Symantec endpoint protection, and Arista/Cisco ACLs
- Experience with Splunk