Polsinelli is a dynamic law firm that emphasizes creativity and professional growth for its team members. They are seeking a Security Engineer responsible for ensuring the secure operations of infrastructure and software, including the installation and maintenance of hybrid computing environments and developing security strategies across applications.
Responsibilities:
- Configure business operating environments securely using CIS best practices
- Perform penetration testing and threat hunting to identify potential risks
- Monitor for and respond to incidents in the Firm’s hybrid environment
- Keep infrastructure current, making recommendations and continually improving security technologies
- Analyze, design, and develop programs, shell scripts, tests, and infrastructure automation capabilities
- Work with analysts and engineers across the organization to continually improve cyber resilience
- Provide support to understand and develop system requirements and technical solutions for cybersecurity engineering based on system architectures (CIS Controls, MITRE ATT&CK Framework, and NIST Cyber Security Framework)
- Support the maturation of the enterprise architecture to align with the Firm’s information security and risks to the organizational operations, organizational assets, and individuals
- Develop alternatives of system designs and/or architecture, which consider trade-offs between security requirements, functional/operational requirements, and cost
- Identify and define the requirements of the overall security of the network
- Plan, engineer, and monitor overall security implementation of network systems
- Support in configuring and implementing network security tools
- Test and provide solutions for system weaknesses, threats, and security issues
- Research and identify latest suitable technologies and processes that will improve the overall security of the system
- Regularly audit the existing network configuration and provide improvement recommendations
- Other duties as assigned
Requirements:
- 2-4 years of experience in on-premises environments focused on security
- 2-4 years of experience in security engineering
- 2-4 years of experience with Metrics, Events, Logging, in an environment similar to Splunk
- Bachelor's degree in Computer Science, Computer Engineering, Information Systems or equivalent experience
- Microsoft Active Directory with Azure experience
- Ability to perform detection engineering to interrogate computer logs to identity anomalous behavior
- Develop workflows within a SIEM to automate detections and actions taken
- Demonstrative knowledge/experience with scripting languages like Python and PowerShell
- Demonstrative knowledge and expertise with common enterprise-grade security solutions
- Excellent verbal and written communication