Talent.com
Security Operations Engineer (Threat Detection & Penetration Testing) (New York)
Security Operations Engineer (Threat Detection & Penetration Testing) (New York)Bask Health • New York, NY, US
[error_messages.no_longer_accepting]
Security Operations Engineer (Threat Detection & Penetration Testing) (New York)

Security Operations Engineer (Threat Detection & Penetration Testing) (New York)

Bask Health • New York, NY, US
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.part_time]
[job_card.job_description]

About This Role

You will be leveraging your security operations experience to analyze and respond to security notifications, events, and inquiries. You will be performing initial triage of potential security incidents through log and data analysis to determine whether or not activity is a substantiated or valid threat, assessing severity and potential impact, taking pre-approved remediation measures to contain a threat, and escalating findings to investigators for further review and analysis. You will use your knowledge of cyber threats and the results of your analysis to coordinate with partner teams to improve threat detection through tuning and creation of new use cases, to improve capabilities through enriching existing data and creation of new data feeds, and to improve triage accuracy, consistency and timeliness through automation. This role plays a critical part in threat detection and response, ultimately reducing the likelihood of security breaches and protecting sensitive company information.

  • Analyze and investigate activity on company devices that could represent a security threat
  • Work cross-functionally with the Security teams to develop solutions for analyzing security events at scale and protecting Bask networks, systems, and data
  • Interpret disparate data sources to report on trends and support investigative requests
  • Collect requirements for enhancements to detection models and response systems
  • Leverage existing systems and data to perform analyses and promote process improvements
  • Provide actionable insights to help identify, prevent, detect, and respond to anomalous or potentially malicious user activity
  • Collaborate effectively with teammates, lead projects, mentor others, and develop and champion quality operational standards across the team
  • Provide expert technical guidance on threat detection and penetration testing methodologies.
  • Drive the organizational security vision by prioritizing and overseeing the execution of projects aligned with our security roadmap.
  • Collaborate cross-functionally with security engineering teams to enhance detection systems, implement countermeasures, and ensure comprehensive protection of Stripe's networks, systems, and data.
  • Develop, document, and implement strategies, playbooks, and capabilities to advance our threat detection and penetration testing functions.
  • Continuously improve security processes by integrating feedback from penetration tests and threat detection activities into our security architecture.
  • Coach and mentor individual contributors, championing a culture of learning and excellence within the team.
  • Oversee employee onboarding and offboarding creating and deactivating accounts, managing permissions, and ensuring smooth transitions.
  • Maintain and improve SSO / identity management across platforms (Okta, Google SSO, etc.).
  • Enforce IT security standards : MFA, password policies, VPNs, credential rotation, and endpoint protection.

Requirements

  • 5+ years experience in information technology or cyber security roles including security operations / incident response
  • 2+ years experience analyzing large data sets to solve problems and / or manage projects related to security event triage and / or workplace investigations
  • B.S. or M.S. in Cyber Security and Information Assurance, Data Analytics, Computer Science or related field, or equivalent experience
  • Working knowledge of SQL
  • Experience managing Google Workspace , SSO , and IAM systems.
  • Basic knowledge of scripting or programming in Python and Kali Linux
  • Advanced Javascript knowledge (2+ years)
  • Working knowledge of AWS Lambda, EventBridge, DynamoDB, and SQS
  • Proven experience with log querying and analysis (e.g. first or third party applications, system / data access, event logs), digital forensics, or incident response using one or more industry standard SIEM Platforms (Splunk, Sentinel, Chronicle, Elastic, etc.)
  • Proficiency using analytical methods to inform detection systems or guide strategic response
  • Strong cross-functional collaboration and written / verbal communication skills
  • Ability to think creatively and holistically about identifying and reducing risk in a complex environment
  • High level of judgment, objectivity, and discretion
  • Preferred Qualifications

  • Prior experience working with high volume data in a security operations environment
  • Experience with data processing and analysis tools (e.g. Jupyter Notebooks, Databricks)
  • An adversarial mindset, understanding the goals, behaviors, and TTPs of threat actors
  • Ability to leverage threat intelligence and / or hunting concepts in an enterprise environment
  • Experience in one or more of the following areas : user and entity behavior analytics (UEBA), SOAR / security automation, security information event management (SIEM), data loss prevention (DLP), Information Security, or Data Privacy
  • One or more security certifications through a recognized industry provider : GIAC, ISACA, ISC2, OffSec, CompTIA, etc.
  • [job_alerts.create_a_job]

    Security Engineer • New York, NY, US

    [internal_linking.similar_jobs]
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    Relativity • New York, NY, United States
    [job_card.full_time]
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Sr Technical Security Engineer (New York)

    Sr Technical Security Engineer (New York)

    ektello • New York, NY, US
    [job_card.part_time]
    Technical Security Engineer, W2 remote.Strong understanding of secure architecture for thick clients, including local storage protection, inter-process communication, JavaScript engines, OS-level s...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior AI Security Engineer / Architect (New York)

    Senior AI Security Engineer / Architect (New York)

    Glocomms • New York, NY, US
    [job_card.full_time] +1
    Glocomms is partnered with a premier hedge fund to identify a Senior Security Engineer / Architect with deep expertise in AI Security. The ideal candidate will be a technical leader with a passion for...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Lead

    Security Lead

    fun.xyz • New York, NY, US
    [job_card.full_time]
    Midtown, New York, NY (In-person Mon–Thurs, with Optional Remote Fridays ).Engineering – Security & Infrastructure.For a blockchain-first global economy to exist, value exchange mus...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Product Security Engineer

    Senior Product Security Engineer

    StubHub • New York, NY, US
    [job_card.full_time]
    StubHub is on a mission to redefine the live event experience on a global scale.Whether someone is looking to attend their first event or their hundredth, we're here to delight them all the way...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Lead Penetration Testing & Security Automation

    Lead Penetration Testing & Security Automation

    MUFG • Jersey City, NJ, United States
    [job_card.full_time]
    A global financial institution is seeking a Penetration Testing Team Leader in Jersey City, NJ.You will manage, mentor, and lead a team responsible for conducting penetration tests and vulnerabilit...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Engineer, Threat Detection - Advanced Security Solutions

    Senior Engineer, Threat Detection - Advanced Security Solutions

    Presidio Networked Solutions, LLC • New York, NY, United States
    [job_card.full_time]
    Presidio, Where Teamwork and Innovation Shape the Future.AtPresidio, we're at the forefront of a global technology revolution, transforming industries throughcutting-edge digital solutions and next...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Security Engineer I, Platform Security

    Senior Security Engineer I, Platform Security

    Oscar Health • New York, NY, US
    [job_card.full_time]
    We're hiring a Senior Security Engineer I, Platform Security to join our Security team.Oscar is the first health insurance company built around a full stack technology platform and a relentless...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Security Engineer

    Senior Security Engineer

    Secur-Serv • New York, NY, United States
    [job_card.full_time]
    This range is provided by Secur-Serv.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Direct message the job poster from Secur-Serv.You will prov...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Engineer, Operating Systems

    Security Engineer, Operating Systems

    Menlo Ventures • New York, NY, United States
    [job_card.full_time]
    Anthropic’s mission is to create reliable, interpretable, and steerable AI systems.We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Security Engineer (Product)

    Senior Security Engineer (Product)

    Headway • New York, NY, United States
    [job_card.full_time]
    The Trust team at Headway is focused on security and privacy for all of Headway’s customers - therapists, patients, and payers (ex : insurance companies and health systems).As an early member on the...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    System Security Engineer

    System Security Engineer

    New York City Department of Investigation • Manhattan, NY, United States
    [job_card.full_time]
    The New York City Department of Investigation (DOI) is one of the oldest law enforcement agencies in the country; its mission is to combat municipal corruption. DOI serves the people of New York Cit...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Engineer

    Security Engineer

    Arch • New York, NY, US
    [job_card.full_time]
    Arch is a Series B financial technology company that automates the management of private investments, improving access, understanding, and the human experience of investing across asset classes.Pri...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Engineer

    Security Engineer

    Taskrabbit • New York, NY, US
    [job_card.part_time]
    Taskrabbit is a marketplace platform that conveniently connects people with Taskers to handle everyday home to-do's, such as furniture assembly, handyman work, moving help, and much more.At Tas...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Specialist Solutions Engineer - Security

    Specialist Solutions Engineer - Security

    AHEAD • New York, NY, US
    [job_card.full_time]
    AHEAD builds platforms for digital business.By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digi...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Security Engineer

    Senior Security Engineer

    Copia Automation • New York, NY, US
    [job_card.full_time] +1
    Copia Automation brings modern developer tools to industrial automation.Our product provides Git-based source control for automation professionals. We are a well-funded startup and with a growing li...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Security Engineer

    Security Engineer

    The Rockridge Group • New York, NY, US
    [job_card.temporary]
    Company X is seeking an exceptional Security Engineer to join its IT Security Team in our New York office.This person will join a distributed, highly collaborative team that is responsible for the ...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Security Engineer II

    Security Engineer II

    Columbia Bank • Fair Lawn, NJ, US
    [job_card.full_time]
    Responsible for the day-to-day security operations and ownership over one or more security practice areas at Columbia Bank. The individual will serve as a technical operations subject matter expert ...[show_more]
    [last_updated.last_updated_30] • [promoted]