Job Location :
Corporate Indianapolis
PRIMARY PURPOSE :
The Simon Cyber Security team is looking for a Security Engineer to help validate that our services, applications, and websites are designed and implemented to the highest security standards. You will be responsible for analyzing the security of applications and services, vendor-provided solutions, discovering and addressing security issues, building security automation, and quickly reacting to new threat scenarios.
You will be expected strong in multiple domains and provide significant contributions to the Simon Cyber Security team and to multiple groups throughout Simon Information Services. You will develop elegant solutions to complex business problems and apply appropriate technologies while following security engineering best practices. You will mentor junior engineers and be a security thought leader for the organization. Similarly, our highly collaborative team is committed to each team member's growth as our business grows. You will have the opportunity to learn from, and be mentored by, those who are building and securing our cutting-edge services.
Security Engineers must foster constructive dialogue and seek resolution when confronted with discordant views. Engineers in this role are expected to participate fully in the planning of the Simon Cyber Security team's work and constantly seek opportunities for process improvement.
A successful candidate will need a combination of technical and communication skills, as well as the ability to handle a mix of disparate tasks which will include threat modeling and project work. This role will provide career growth opportunities as the security engineers gain new security skills in the course of your duties and working with fellow world-class technologists.
PRINCIPAL RESPONSIBILITIES :
The successful candidate's responsibilities will include, but not be limited to :
- Researches, designs, and implements cyber security solutions for organization systems and
products that comply with all applicable security policies and standards
Works with IT and internal and external business partners to ensure that security is factored in the evaluation, selection, installation and configuration process of hardware and softwareExamines network, server, and application logs to determine trends and identify security incidentsAssists in the review and update of cyber security policies, architectures and standardsAssists in responding to audits, penetration tests and vulnerability assessmentsReview of third-party services (e.g., SaaS-providers)Audit, assessment, and penetration testing techniquesProjects and research work as neededSecurity training and outreach to internal development teamsSecurity guidance documentationSecurity tool developmentSecurity metrics delivery and improvementsAssistance with recruiting activities and administrative workBASIC QUALIFICATIONS :
Bachelor (undergraduate) degree in a relevant field (Computer Science, Software Engineer, Security, or others) OR an equivalent combination of education, training, and experienceMinimum of 2 years of professional experience with any combination of at least 2 technical disciplines, including the following : cloud security, network security, application security, mobile security, secure development methodologies, software development and coding, identity management, authentication and authorization, network architecture, system administration, and systems engineeringPREFERRED QUALIFICATIONS :
B.S. or higher in Computer Science or equivalent experienceProgressive experience in successfully driving security operationsDemonstrable client-service orientationDemonstrated planning, and organization skillsExcellent written and verbal communicationsProven track-record of operating with a high degree of confidentiality and responsibilityMastery understanding of modern enterprise cyber securityDemonstrated ability to bring conflicting viewpoints to consensusMultiple years of experience implementing security technology including extensive experience with the following : LAN, WAN, WLAN, Firewall, AV, Security Incident and Event Management (SIEM), DLP, and Intrusion Detection & Prevention (IDP) systemsKnowledge of wireless technologies, protocols and standards, network management, and analysis toolsStrong technical knowledge of anti-virus software, firewalls, intrusion detection systems, network security measures, data privacy practices lawsPreferred security qualifications : CISSP, CCSK, CCSP, CISSP-ISSEP, CISSP-ISSAP, CEH, CISM, Security .Experience in ITIL processes and CMDB is also preferred