Sedgwick is a company dedicated to supporting individuals facing unexpected challenges, with a commitment to a caring culture and work-life balance. The Security Engineer III/DLP is responsible for implementing and managing secure solutions, contributing to the corporate security strategy, and ensuring the organization evolves with the threat landscape.
Responsibilities:
- Handles daily implementation, monitoring and operational support of hardware, software, customer applications, managed solutions and service provider relationships
- Engages in information security projects that evaluate existing security infrastructure and propose changes as defined by security leadership and architects. Additionally, deliver projects on time, within budget and in accordance with service level agreements (SLAs)
- Assists with incident response and system stability issues as they occur. This may include involvement outside of regular work hours, and responsiveness is expected
- Works in tandem with architects, the security operations center (SOC), incident responders (in cases of anomalous activity and host compromise), and technology infrastructure and development team members
- Manages service and escalation tickets within SLA expectations
- Develops security test plans from architectural design. Identify deficiencies and make enhancements to ensure production is not impacted
- Participates regularly in change project and change management meetings
- Researches, validate and deploy solutions meeting security and business needs
- Follows security engineering fundamentals and processes as outlined in NIST 800-160
- Influences the planning and execution of incident response and postmortem exercises, with a focus on creating measurable benchmarks to show progress (or deficiencies requiring additional attention)
- Focus on driving security efficiencies, enabling security team members to work on more advanced tasks
- Conducts performance testing to stress the limitations of security solutions while at the same time ensuring business innovation and day-to-day processes are not negatively impacted
- Develops technical solutions and new security tools to help mitigate security vulnerabilities and automate repeatable tasks
- Leads IT groups and business units as necessary in troubleshooting compatibility issues between security tools and business or productivity programs
- Analyzes client and customer needs as required and provides clear and concise reports to leadership
- Works closely with management on assigned projects from inception through implementation ensuring adequate internal communication and user involvement is maintained
- Provides feedback and suggestions to management to improve IT Security processes and procedures
- Works closely with project managers to meet and complete project milestones accurately and on time
Requirements:
- Bachelor's degree in management information systems or another related field and be pursuing a master's degree in business administration or an IT related field
- Three (3) years of experience in cybersecurity, with a system or network security engineering background
- Technical and analytical expertise, with a proven deep background (preferred 2+ years' IT experience in addition to cybersecurity) in technology design, implementation and delivery
- Extensive knowledge of traditional security controls and technologies, such as Security Information and Event Management (SIEM) systems, intrusion detection/prevention systems (IDS/IPS), public key infrastructure (PKI), identity and access management (IDAM) systems, antivirus and firewalls, in addition to newer offerings such as endpoint detection and response (EDR), threat intelligence platforms, security automation and orchestration, deception technologies and application controls
- Experience managing SIEM systems, threat intelligence platforms, security automation and orchestration solutions, IDS/IPS, file integrity monitoring (FIM), data loss prevention (DLP) and other network and system monitoring tools
- Ability to work independently and solve problems as they arise
- Ability to handle confidential and sensitive information with integrity
- Ability to continuously learn new technologies
- Ability to guide collaboration with team members to achieve goals
- CIA triad expertise
- Information Technology Security frameworks expertise
- Preferably at least 3+ years' experience in cybersecurity, with a system or network security engineering background
- Experience with Application Control Listing Software
- Experience with SIEM Solutions
- Experience with XDR Solutions
- Experiences with Artificial Intelligence and Machine Learning
- Researching and advising leadership on emerging security technologies
- CIS hardening
- Experience with one or more of the following: ISO 27001, NIST, PCI Data Security Standard (PCI DSS), HIPAA, Health Information Technology for Economic and Clinical Health (HITECH) Act, SOX, the General Data Protection Regulation (GDPR), Center for Internet Security (CIS) standards or Service Organization Controls (SOC) 2
- CISSP (preferred); CISM and/or SANS certification or Security-related certifications a plus