Sr Cyber Security Engineer

TITLE: SR. CYBER SECURITY ENGINEER

DEPARTMENT: Information Systems

LEVEL: 3

JOB CODE: SRCSE

DATE: 09/06/2023

REPORTS TO: Network and System Manager

DLSE STATUS: Exempt

SALARY RANGE: $120,000-$140,000

Under the general direction of the Network and System Manager and with coordination from the Chief Information Officer, the Sr. Cyber Security Engineer is a senior-level security professional who plans and designs security solutions and capabilities that enable the organization to identify, protect, detect, respond, and recover from cyber threats and vulnerabilities. Defines and develops security requirements using risk assessments, threat modeling, testing, and analysis of existing systems. Develops security integration plans to protect existing infrastructure and to incorporate future solutions. Designs action plans for policy creation and governance, system hardening, monitoring, incident response, disaster recovery, and emerging cybersecurity threats.

The position is a hands-on engineering role with responsibilities for building technical controls as well as acting as a cyber security subject matter expert. In this role the incumbent will collaborate closely within the IT infrastructure team to ensure security controls are present in all technical systems. The Sr. Cyber Security Engineer will be responsible for the full security stack including identifying security issues, protecting existing systems, detecting anomalies, responding to incidents, and facilitating their recovery. Successful candidates will have an expert understanding of IT infrastructure, cyber security tools, cyber security theory and data management. The Sr. Cyber Security Engineer will be an experienced cyber security practitioner with demonstrated knowledge of threat management, threat intelligence, log telemetry, network, server, and endpoint security.

Ideal candidates will have prior hands-on experience as both a system engineer and as a cyber security engineer. Candidates will be able to work in a multi-disciplined team handling multiple projects and priorities. The Sr. Cyber Security Engineer is responsive to changes in business and risk and is on the forefront of emerging technologies, driving new and better solutions to industry security needs.
Essential Duties and Responsibilities:

  • Design and build enterprise-class security systems for both production and corporate environments.
  • Use and maintain software, such as firewalls and data encryption programs, to protect sensitive information.
  • Check for vulnerabilities in computer and network systems.
  • Recommend security enhancements to management or senior IT staff.
  • Proactively seek security gaps with respect to current and projected business direction and spearhead solutions to address those gaps.
  • Design and contribute heavily to network architecture including firewalls, WAFs, network segmentation, VLANs, VPNs, and DoS/DDoS mitigation.
  • Create solutions that enhance cloud security using available cloud controls/products, third party products, and/or custom-developed systems.
  • Understand corporate authentication and authorization systems including AD, LDAP, ADFS, Azure MFA and how to design secure corporate systems with them.
  • Understand corporate enterprise tools such as Microsoft Office 365 (A5).
  • Develop security standards and best practices for the university.
  • Innovate new security systems to address the unique needs of the platform.
  • Lead multi-disciplined teams though security initiatives and projects.
  • Review and approve security architecture for new projects or changes to existing systems.

EDUCATION:

  • Bachelor’s degree (B.A., B.S.) in computer science, information technology, cyber security or closely related field from an accredited institution.

  • Network Certifications: CCNA (or similar)
  • Security Certifications: Security +, CISSP, OSCP (or similar)

EXPERIENCE:

  • 5 years or more experience within Information Technology
  • At least 2 years specifically managing Information Security within an enterprise.

TECHNICAL KNOWLEDGE:

  • Experience working with various NIST compliance standards.
  • Must be detail oriented; able to detect cyberattacks and watch for minor changes in performance.
  • Ability to respond to security alerts and uncover and fix flaws in computer systems and networks.
  • Able to effectively communicate information security needs and potential threats to technical and nontechnical audiences within the university.
  • Expert knowledge in managing Fortinet, Palo Alto, or similar next gen Firewalls.
  • Solid experience managing a virtualized environment using HyperV, Vmware or similar.
  • Expert knowledge of access logging, centralized logging, and monitoring/alerting of security log events such as ELK or Splunk.
  • Knowledge of practical encryption methodologies and practices within an enterprise.
  • Experience with securing Infrastructure As a Service Platforms such as Azure or AWS.
  • Detailed knowledge of network and infrastructure security issues and considerations.
  • Expert knowledge Expert knowledge of incident response, threat modeling, and mitigation.
  • Expertise in identifying security design gaps in existing and proposed architectures and recommend changes or enhancements.

COMPLEXITY:

  • The ability to perform highly detailed work with sustained attention and care while providing/obtaining information on numerous inquiries is paramount to success in this position.

PHYSICAL DEMANDS:

  • The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
  • Occasional stooping. Frequent standing. Constant walking, sitting, climbing, reaching high/low levels, finger movement, feeling, speaking clearly, hearing conversationally, and seeing far and near.

WORK ENVIRONMENT:

  • The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
  • Occasionally required to work in confined space.

MENTAL DEMANDS:

  • The mental demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
  • Frequent variety of unrelated tasks. Constant calculating, interrupted work, a variety of interrelated tasks, and use of sustained concentration, reasoning, judgment, resourcefulness, analytical ability, and ingenuity.

Special Requirements:

As a health professions institution of higher education, Charles R. Drew University of Medicine and Science seeks to protect the health and safety of the University community. As a condition of enrollment and employment, proof of the newest COVID-19 booster will be required for CDU students, faculty, and staff entry to the CDU campus. Please note that vaccination requirements may change as our Federal, State, and local public health laws change.

For answers to questions regarding COVID-19 vaccinations or campus protocol, kindly visit the CDU Return to Campus website https://www.cdrewu.edu/Return-to-Campus or email the Campus Nursing Office at nurseofficer@cdrewu.edu.

Requests for disability and religious accommodations from faculty and staff will be evaluated consistent with the law and University policies and procedures.

  • Excellent benefits: Medical, dental, vision, retirement plan, vacation accrues on first day of employment, wellness programs, 17 paid holidays per year, up to 16 hours of paid time off to participate in community service and much more.

Full Time – Hybrid. Must live in Southern California

EEO Statement: Charles R. Drew University is committed to Equal Employment Opportunity. Applicants will be considered without regard to gender, race, age, color, religion, national origin, sexual orientation, genetic information, marital status, disability or covered veteran status.

Fair Chance Statement: Charles R. Drew University of Medicine and Science will consider qualified applicants, including those with criminal histories, in a manner consistent with state and local “Fair Chance” laws.

Job Category
Computer and IT
Job Type
Full Time/Permanent
Salary
USD 120,000.00 - 140,000.00 per year
Country
United States
City
Los Angeles
Career Level
unspecified
Company
Charles R Drew University of Medicine and Science
JOB SOURCE
https://recruiting2.ultipro.com/CHA1037CHRS/JobBoard/7fb6ae1e-e3f6-44ac-8694-2577af27ab6b/OpportunityDetail?opportunityId=a8ec327c-c499-49a4-a650-0618fb06d274