What are the responsibilities and job description for the Systems Engineer - Security (App-Cloud-Host) position at Acuity Insurance?
Acuity is seeking a Systems Engineer focused on Application Security, Cloud Security and Host/Database Security to develop, execute, and track the performance of security measures to protect information, computer systems, cloud products, network infrastructure, and installed applications. In this role, you will design a computer security strategy and engineer comprehensive cybersecurity architecture, while identifying, defining, and documenting system security requirements and recommending solutions to management. The systems engineer will configure, troubleshoot, and maintain security infrastructure software and hardware, while monitoring systems for irregular behavior and set up preventive measures.
ESSENTIAL FUNCTIONS:
- Application:
- SAST and DAST, leveraging Checkmarx and Jfrog Xray.
- Provide security recommendations on integrations, open-source applications, internally developed applications and iOS and Android builds.
- General CI\CD concepts and methodologies.
- Knowledge and\or experience with full stack development.
- Java, Java Script, Python, PowerShell.
- Products\technologies = IBM DataPower, API Connect, Citrix Web Application firewall, Ansible Automation Platform.
- Provide OWASP Top 10 education to our new hires.
- Cloud:
- Microsoft 365, Microsoft Azure\Entra, Microsoft conditional access, and other Microsoft related technologies\products.
- Python, PowerShell, and PowerBI.
- Experience with Generative AI.
- Products\technologies = Palo Alto Prisma Cloud, AWS, container security, Salesforce, and Google Analytics.
- Research and provide implementation recommendations for SaaS based products.
- Host/Database:
- Operating System experience = RHEL, Windows Server, SLES, VMware ESXi.
- Database experience = Microsoft SQL, DB2, and PostgreSQL.
- Products\technologies = Ansible Automation Platform.
- CIS Benchmark, NIST, and vendor specific security guides and recommendations.
- Knowledge around system architecture and design.
- Research and provide implementation recommendations for purchased and installed on premise products.
- Remain abreast of company and industry directions.
- Evaluate current and emerging security technologies and risks.
- Ability to design and implement with least privilege practices as a foundation.
- Ability to research and provide recommendations back to management.
- Passion, desire, and drive to advocate, promote, and implement security.
- Experience in automation, scripting, and\or programming.
- Willingness to work cooperatively with other teams to overcome challenging problems.
- Strong communication skills with an emphasis on clear concise written documentation and the ability to explain complex topics to others.
- Regular and predictable attendance.
- Perform other duties as assigned.
EDUCATION:
Bachelor’s or Associate Degree in Computer Science, MIS or equivalent and continued field specific education.
EXPERIENCE:
3-5 years practical experience in computer operations, applications and/or technical support or information security.
OTHER QUALIFICATIONS:
- A keen interest and aptitude for problem identification and resolution.
- Full understanding of operating system hardware, software, network components, security, and/or database management system.
- Ability to work cooperatively with technical and non-technical system users and industry vendors.
- Good listening ability as well as the ability to competently train others.
- Willingness to respond to problems with little notice as well as to adjusting off hours scheduling to meet company project installation dates.
- Depending on job responsibilities, may be required to reside within a 2-hour radius of the Acuity corporate headquarters.
- Be accountable and respond when reached out to for assistance during and outside of typical work hours, this may include participating in an off-hour call list.
*Acuity does not sponsor applicants for U.S. work authorization.*
This job is classified as exempt.
We are an Equal Employment Opportunity employer. Applicants and employees are considered for positions and are evaluated without regard to mental or physical disability, race, color, religion, gender, national origin, age, genetic information, military or veteran status, sexual orientation, marital status or any other protected Federal, State/Province or Local status unrelated to the performance of the work involved.