Talent.com
Lead Security Engineer - Cyber Security
Lead Security Engineer - Cyber SecurityRelativity • Chicago, IL, United States
[error_messages.no_longer_accepting]
Lead Security Engineer - Cyber Security

Lead Security Engineer - Cyber Security

Relativity • Chicago, IL, United States
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Posting Type

Remote

Job Overview

As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure. In this role, the main responsibilities will be to investigate and analyze emerging threats against our assets, identities, and clients. You will also provide actionable remediation guidance to end users and collaborate with highly skilled cyber experts to anticipate and mitigate evolving threats using world-class toolsets and next generation capabilities.

Job Description and Requirements

Responsibilities:

  • Review, validation, and triage of alerts and technical analysis of log data from a diverse inventory of sensors, correlated signature logic, and threat intelligence sources.

  • Assess the impact of security events by leveraging host, cloud and network-based indicators and evidence to deliver actionable incident escalations.

  • Develop and deploy detection and prevention signatures with response actions as part of a layered defensive strategy leveraging multiple technologies and data types.

  • Build automation to search through collected telemetry to detect and isolate advanced threats that evade existing security solutions.

  • Create Standard Operating Procedures, SOC playbooks, configuration guides, and secure standards.

  • Automate incident handling processes.

  • Engage in the continuous research of emerging threats and apply appropriate countermeasures within the context of a rapidly changing environment.

  • Serve as a subject matter expert in the mechanism and analysis of observed malicious activity.

  • Clearly document and communicate investigation findings to both technical and executive stakeholders.

  • Identify and automate away technical burden.

  • Build automation to deploy, operate and connect multiple cyber security tools and applications.

Preferred Qualifications:

  • 7+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team for Cloud applications and corporate networks

  • Exposure to threat detection development and tuning

  • Experience in software design and development

  • DevSecOps experience

  • Ability to perform threat hunting, threat emulation, and/or purple teaming exercises

  • Familiarity with industry standard security devices and their configuration

  • Experience in reverse engineering malicious code to explore infection and propagation mechanisms

  • Experience with threat intelligence tools and processes

  • Certifications: One or more of the following certifications are preferred (GCFA, GCIA, GCIH, GNFA, GREM, OSCP, OSEP, OSED, OSWE, OSDA, OSCE3, CompTIA Security+, CCNA CyberOps, or CEH)

  • 5+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team

  • Strong cyber incident response skills (such as: Network forensics, memory forensics, and/or packet analysis)

  • Ability to read, write and analyze PowerShell, C#, and Python

  • Capability to independently manage the prioritization of complex security events

  • Advanced understanding of common SOC/CIRT operational processes and documentation

  • Advanced knowledge of TCP/IP, network services, cryptography, cloud, and web application attacks

  • Ability to collaborate within a global cross-functional team to execute on high-level objectives and drive the maturation of Relativity's security posture

  • Deep understanding of infection mechanisms, malicious behavior, exploitation techniques, and mitigating controls

  • Good understanding of tools, tactics, and procedures utilized by attackers to access private systems and data

  • Strong analytical and problem-solving skills

Minimum Qualifications:

  • 5+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team

  • Strong cyber incident response skills (such as: Network forensics, memory forensics, and/or packet analysis)

  • Ability to read, write and analyze PowerShell, C#, and Python

  • Capability to independently manage the prioritization of complex security events

  • Advanced understanding of common SOC/CIRT operational processes and documentation

  • Advanced knowledge of TCP/IP, network services, cryptography, cloud, and web application attacks

  • Ability to collaborate within a global cross-functional team to execute on high-level objectives and drive the maturation of Relativity's security posture

  • Deep understanding of infection mechanisms, malicious behavior, exploitation techniques, and mitigating controls

  • Good understanding of tools, tactics, and procedures utilized by attackers to access private systems and data

  • Strong analytical and problem-solving skills

  • Ability to leverage programming and scripting languages to build automations and develop SOAR playbooks

Relativity is committed to competitive, fair, and equitable compensation practices.

This position is eligible for total compensation which includes a competitive base salary, an annual performance bonus, and long-term incentives.

The expected salary range for this role is between following values:

$150,000 and $226,000

The final offered salary will be based on several factors, including but not limited to the candidate's depth of experience, skill set, qualifications, and internal pay equity. Hiring at the top end of the range would not be typical, to allow for future meaningful salary growth in this position.

Suggested Skills:

Cybersecurity, Infrastructure Security, Network Security, Penetration Testing, Security Architecture Design, Security Audit, Security Information, Security Information and Event Management (SIEM), Security Operations, Vulnerability Management
[job_alerts.create_a_job]

Lead Security Engineer Cyber Security • Chicago, IL, United States

[internal_linking.similar_jobs]
Senior Azure Cloud Security Engineer

Senior Azure Cloud Security Engineer

Gulf Coast Automation Group • Chicago, Illinois, United States
[filters.remote]
[job_card.full_time]
[filters_job_card.quick_apply]
Senior Azure Cloud Security Engineer.Join a large, complex healthcare organization as a Senior Information Security Engineer within the Information Security department.This role is responsible for ...[show_more]
[last_updated.last_updated_variable_days]
Network Security Engineer

Network Security Engineer

VDart Inc • Chicago, IL, United States
[job_card.temporary]
[filters_job_card.quick_apply]
Job Title: Network Security Engineer Job Location: Chicago, IL Job Type: Long-term Contract [show_more]
[last_updated.last_updated_variable_days]
PAM/HashiCorp Security Engineer

PAM/HashiCorp Security Engineer

Request Technology, LLC • Chicago, IL, United States
[job_card.full_time] +1
Senior Executive Recruiter at Request Technology.Direct message the job poster from Request Technology, LLC.Hybrid, 3 days onsite, 2 days remote.We are unable to sponsor as this is a permanent full...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Security Engineer

Information Security Engineer

MetroSys • Chicago, IL, US
[job_card.full_time]
[filters_job_card.quick_apply]
About the Role MetroSys is seeking a skilled Information Security Engineer II to support and lead efforts around vulnerability management within a dynamic, enterprise-scale environment.This individ...[show_more]
[last_updated.last_updated_30]
Senior SLED Security Solutions Engineer – Central US

Senior SLED Security Solutions Engineer – Central US

Proofpoint • Chicago, IL, United States
[job_card.full_time]
A leading cybersecurity firm is seeking a Senior Sales Engineer for State and Local Government accounts, primarily in the Central U.This role involves collaborating with sales teams and providing t...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Energy OT Director: Network & Security Leadership (Hybrid)

Energy OT Director: Network & Security Leadership (Hybrid)

Career Developers • Chicago, IL, United States
[job_card.full_time]
A staffing and consulting firm seeks a Director of Network Infrastructure Operational Technologies to lead OT functions in a hybrid environment.The role involves providing strategic direction, ensu...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Kubernetes, Container Security & AI Runtime Protection Cybersecurity Engineer

Kubernetes, Container Security & AI Runtime Protection Cybersecurity Engineer

Huntington National Bank • Chicago, IL, United States
[job_card.full_time]
This employer will not sponsor applicants for the following work visas: F-1 student, H-1B worker, O-1 worker, TN worker, E-3 worker.Applicants must be currently authorized to work in the United Sta...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
VP, Product Security Architecture Leader

VP, Product Security Architecture Leader

Synchrony Financial • CHICAGO, Illinois, United States
[job_card.full_time]
The VP, Product Security Architecture will lead the strategy, design, and execution of Synchrony’s product and application security architecture program, ensuring security is embedded into the life...[show_more]
[last_updated.last_updated_1_day] • [promoted]
Cyber SDC - Attack & Penetration - Exp Staff - Consulting - Location OPEN

Cyber SDC - Attack & Penetration - Exp Staff - Consulting - Location OPEN

EY • Chicago, IL, United States
[job_card.full_time]
Senior Consultant, Offensive Security – Cyber SDC (Attack & Penetration) – Consulting – Location Open – EY.As a Senior Consultant in Offensive Security within EY’s Service Delivery Center, you will...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cloud Security Engineer

Cloud Security Engineer

Sidley Austin LLP • Chicago, IL, United States
[job_card.full_time]
Cloud Security Engineer role at Sidley Austin LLP.This range is provided by Sidley Austin LLP.Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Th...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Lead Consultant, Network Security

Lead Consultant, Network Security

Computacenter • Chicago, IL, United States
[job_card.full_time]
Provide technical governance and assurance of complex solutions that span across multiple technical streams.This role has a network security focus.Partner with business leaders to deliver services ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cloud Security Engineer

Cloud Security Engineer

UL Solutions • Chicago, IL, United States
[job_card.full_time]
This role is Hybrid, 3 days a week to any local, US based UL Solutions Office.We are seeking a highly skilled Cloud Security Engineer with strong Application Security expertise to join our security...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Global Cybersecurity Architect — Strategy & Risk

Global Cybersecurity Architect — Strategy & Risk

McDonald's • Chicago, IL, United States
[job_card.full_time]
A global fast-food corporation is seeking a Senior Cyber Security Solution Architect.This role involves developing cybersecurity strategies, conducting architecture reviews, and collaborating with ...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Information Security Engineer / Analyst

Information Security Engineer / Analyst

KonnectIT • Chicago, Illinois, US
[job_card.full_time]
[filters_job_card.quick_apply]
Information Security Engineer / Analyst.The ideal candidate will bring expertise in.IPS/IDS, vulnerability management, incident response, and risk assessment.This role is critical to ensuring the c...[show_more]
[last_updated.last_updated_30]
Specialist Solutions Engineer - Security

Specialist Solutions Engineer - Security

AHEAD • Chicago, IL, United States
[job_card.full_time]
AHEAD builds platforms for digital business.By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digi...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Penetration Testing Engineer - Network Security

Penetration Testing Engineer - Network Security

Evolvesec • Chicago, IL, United States
[job_card.full_time]
The Penetration Testing Engineer – Network Security is a hands-on client facing offensive security role responsible for executing network, cloud, and adversary-emulation engagements under establish...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Application Security Engineer

Application Security Engineer

Beyond Finance, Inc. • Chicago, IL, United States
[job_card.full_time]
At Beyond Finance, we've made it our mission to help everyday Americans escape the endless cycle of crippling debt and step into a brighter financial future.Through compassionate, individualized ca...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Senior Information Security Engineer / Analyst

Senior Information Security Engineer / Analyst

KonnectIT • Chicago, Illinois, US
[job_card.full_time]
[filters_job_card.quick_apply]
Senior Information Security Engineer / Analyst.The ideal candidate will have advanced expertise in.IPS/IDS, vulnerability management, incident response, risk and security assessments, and scripting...[show_more]
[last_updated.last_updated_30]