À propos
Provide rotatingon-call support for enterprise security operations and documentation.
Act as a technical SME in incident detection, analysis, and response,leveragingdata from Splunk, CrowdStrike Falcon, and Proofpoint TAP to support investigations and remediation.
Develop, tune, andmaintaindetection content - including SIEM rules, correlation logic, and alert playbooks - to improve fidelity and reduce mean time to detect (MTTD).
Apply deep technical knowledge to secure systems and network architecture across diverse platforms.
Work independently toward defined cybersecurityobjectiveswhilemaintainingclear communication with stakeholders during active incidents and investigations.
Contribute actively to technical discussions within multidisciplinary engineering teams.
Strengthen solutions through hands-on development, design improvements, and implementation.
Support and execute security projects, enterprise architecture, POCs, and remediation efforts.
Develop and update organizational security policies, standards, and technical guidance.
Key Qualifications Hands-on experience with secure architecture across OS, cloud, network, database, and application layers.
Proficiencyin at least one scripting or programming language (Python, Perl, Shell/PowerShell, C/C++, Assembly).
Experienceparticipatingin security incident response, vulnerability remediation, and security operations.
Ability to support enterprise security systems in a rotating oncall schedule.
Hands on experience with incident response lifecycle management - including containment, eradication, and recovery - within complex enterprise networks.
Experience with SIEM platforms, EDR tooling, and email security solutions; hands-on experience with Splunk, CrowdStrike Falcon, and Proofpoint is strongly preferred.
Working knowledge of threat intelligence frameworks (MITRE ATT&CK) and their application to detection and response operations.
Working knowledge of attackermethodologyand penetration testing techniques.
Core Skills Strong problem-solving ability with the capacity to improve solutions andoperateat subsystem-level depth.
Effective collaborator who can confidently contributeintechnical team conversations.
Ability to understand complex technical discussions and generate actionable insights.
Commitment to ongoing learning and staying current with new security technologies and methods.
Clear communicator able to document architectures, processes, and assessments thoroughly.
Dedicated to professional growth through continuous learning of emerging threat landscapes, tactics, and security technologies.
Experience developing or refining incident response playbooks, detection use cases, and SOC operational procedures.
Additional Information: Schedule: 9:00 AM - 5:00 PM EST, Monday-Friday.Rotatingon-call
Location:Hybrid: 3 times a week on site between NYC andNew Jerseylocations
Reporting To:Associate Director, SecurityThreatand IncidentManagement
Helpful Links: Compensation Philosophy
Benefits
Pay Range: $121,400.00 - $200,400.00 FSLA Status: Exempt
Closing : At MSK, we believe in fair, competitive pay that reflects your job, experience, and skills. MSK is an equal opportunity and affirmative action employer committed to diversity and inclusion in all aspects of recruiting and employment. All qualified individuals are encouraged to apply and will receive consideration without regard to race, color, gender, gender identity or expression, sexual orientation, national origin, age, religion, creed, disability, veteran status or any other factor which cannot lawfully be used as a basis for an employment decision. Federal law requires employers to provide reasonable accommodation to qualified individuals with disabilities. Please tell us if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment.
Compétences linguistiques
- English
Avis aux utilisateurs
Cette offre provient d’une plateforme partenaire de TieTalent. Cliquez sur « Postuler maintenant » pour soumettre votre candidature directement sur leur site.