What are the responsibilities and job description for the Cyber Security Engineer Lead position at GNRSystems?
Job Details
About the Role:
SCC is seeking a Lead Cybersecurity Engineer to assist the CIO in planning and implementing crucial cybersecurity initiatives. This role will involve managing vulnerabilities, security operations, and incidents across the IT team. The engineer will respond to threats, ensure compliance, and work with ITD and IS professionals to manage security operations.
This position also involves overseeing daily security activities, including monitoring events, logs, and anomalies, and ensuring security measures are maintained. The Lead Cybersecurity Engineer will collaborate with IT and IS teams and regularly report to the CIO. Additionally, the engineer will assist in managing future security architecture designs for networks, applications, and environments.
Key Responsibilities:
- Lead and manage security operations across IT and IS teams.
- Provide daily monitoring of events, logs, and security anomalies, collaborating with IT and IS staff.
- Oversee vulnerability management and incident response.
- Manage the Security Operations Center (SOC), including monitoring tools and staff.
- Assist in the development and implementation of future security architecture and network designs.
- Regularly report to the CIO on security metrics and incidents.
- Help ensure that data collection is adequate for security monitoring and reporting.
Required Skills & Experience:
- Current experience as a Cyber Security Lead or Manager of projects 3 years required.
- Analyzing data across an organization to recreate incidents or other events 7 years required.
- Experience overseeing the daily workflow, schedules, and assignments of security staff 5 years required.
- Leadership skills to uphold integrity and performance standards as a lead or supervisor 5 years required.
- Experience overseeing SIEM operations, including creating baselines 5 years required.
- Correlating data to triggers for incident response/investigation 7 years required.
- Performing routine analysis of traffic, events, and logs to ensure baselines are accurate and identify anomalies 7 years required.
- Experience with SIEM tools (e.g., Splunk, Trellix) 5 years required.
- Experience managing an on-premise SOC (Security Operations Center) Desired.
- Experience with network and architecture design Desired.
- CISSP or CISM certifications Preferred.