Security Engineer, Automation

US-OH-Cleveland

careers

Req #: 19288
Type: Regular Full-Time
logo

AmTrust Financial Services, Inc.

Connect With Us:
Connect To Our Company
				Overview:

The Security Automation and Response Engineer will be part of an elite team of Cyber Security specialists whose mission is to proactively test enterprise information security controls for effectiveness and to coordinate manual or automated remediation of weaknesses and gaps in the detection, prevention and response to cyber attacks.

This member of the Security Assurance team is responsible for building and/or operating systems that analyze multiple data streams to detect and automatically respond to emerging or active threats. The long term goal for this team member is to make the response system autonomous.

Responsibilities:

* Security Operations, Automation and Response (SOAR) system acquisition, implementation and administration
* Work across Infrastructure and Development organizations to automate detection and response to active threats
* Analyze and prioritize inputs from other Security Assurance team members to build safe, automated responses to weaknesses in the current operating environment 
* Analyze and prioritize threat intelligence sources to build safe, automated responses to vulnerabilities that are being actively exploited
* Research and develop Deep Learning (AI) and Reactive Machine Learning models for autonomous threat detection and response
* Work with other Security Assurance team members to automate security control testing

Qualifications:

Required:

* Bachelor's Degree in IT, CyberSecurity or Equivalent Experience
* 10+ Years Cyber Security Experience
* 5+ Years Programming or Non-Trivial Scripting Experience

Preferred: 

* Vendor Specific Certification in a SIEM or SOAR Technology
* CISSP Certification

Technical Skills:

* Practical experience vetting and implementing Security Operations and Response (SOAR) systems
* Extensive experience with one or more IT Automation frameworks (Ansible, Terraform, etc)
* Extensive experience with Splunk, Splunk Enterprise Security and Splunk SOAR
* Familiarity with Machine Learning and Artificial Intelligence concepts
* Software Development and Scripting Experience
* Familiarity with one or more Security Information and Event Management Systems (Splunk Enterprise Security, IBM QRadar, etc)
* Familiarity with the MITRE ATT&CK and DEFEND Frameworks
* An extensive understanding of modern security controls

The expected salary range for this role is $97,500-$150,000/year.

Please note that the salary information shown above is a general guideline only. Salaries are based upon a wide range of factors considered in making the compensation decision, including, but not limited to, candidate skills, experience, education and training, the scope and responsibilities of the role, as well as market and business considerations.

#LI-ONSITE

#LI-JJ1
			
Share this job: