What are the responsibilities and job description for the Senior Cybersecurity Engineer position at MSIG Holdings USA, Inc.?
MSIG US continues to grow!
Summary / Job Purpose :
The Senior Cybersecurity Engineer will support the Information Security Officer in designing, developing, and implementing cybersecurity and IT security solutions for MSIG - North America. Responsibilities include managing Azure NSG, WAF, VPN devices, load balancers, firewalls, and other security infrastructure.
Essential Functions :
- Identify, assess, and mitigate risks to ensure data and system security and integrity. Manage and maintain the vulnerability and patch management program.
- Ensure compliance with regulatory requirements and industry standards, including PCI, NYDFS, and NIST.
- Collaborate with the Information Security Officer to develop and implement robust security architectures and designs to protect against cyber threats.
- Lead and execute cybersecurity projects from conception to completion, ensuring effective security measures are deployed.
- Monitor and manage IPS / IDS managed services, both internal and outsourced.
- Maintain and update a comprehensive information security program that includes policies and processes to minimize risk and ensure data integrity and availability.
- Evaluate and implement tiered defensive posturing systems and policies to defend against malware threats.
- Create and maintain information security policies, standards, controls, and procedures to comply with evolving laws and regulations.
- Use a risk-based approach to secure applications, databases, or infrastructure based on technology and business needs.
- Manage testing and vulnerability analysis, including third-party scanning, pen testing, and network security providers.
- Oversee the Identity and Access Management Platform - OKTA and Azure AD.
- Administer Illumio and Zscaler for micro-segmentation and zero trust security models to reduce attack surfaces and limit lateral movement within the network.
- Conduct phishing simulation training programs to educate employees on identifying and avoiding phishing attacks.
- Resolve security-related cases escalated by Level 1 Helpdesk.
- Handle proxy issues requiring manufacturer intervention for final resolution.
- Maintain documentation and continuously improve existing infrastructure, network / security, and audit standards.
- Manage and maintain technologies such as antivirus, encryption systems, firewalls, access, and authentication technologies.
Supervisory Responsibilities : Manage off-shore support resources and vendors supporting email and security applications.
Qualifications :
Education and Experience Required :
Required License or Certification :
Other Requirements :
It's an exciting time for our company and a great opportunity to join a financially sound and growing global insurance group!
It is the policy of MSIG-USA to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and / or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, MSIG-NA will provide reasonable accommodations for qualified individuals with disabilities.