Remote job
Cybersecurity Engineer I
Job details
About this role
Role overview This entry-level engineering role supports the day-to-day operation of enterprise security solutions while helping identify, investigate, and resolve security events detected by those systems. The work blends monitoring, ticket-driven operational tasks, incident response participation, and ongoing tuning of controls within a regulated financial environment.
Responsibilities - Review logs and reports from in-place security tools and other endpoints, interpreting activity implications and escalating as needed. - Participate in investigations into anomalous activity and serve as a first responder for potential security events. - Rotate through the cybersecurity ticket queue to ensure efficient handling of requests. - Maintain operational configurations of in-place security solutions against established baselines and best practice. - Participate in vulnerability assessments, penetration tests, and security audits. - Support incident response activities, including planning and testing exercises, and recommend or implement enhancements to existing security solutions.
Requirements - Two or more years of direct cybersecurity experience, ideally as an engineer or similar role maintaining safeguards at a financial institution. - Direct experience maintaining and operating current security platforms. - One or more relevant certifications such as GIAC (GSEC, GCIH, GMON, GCIA, GSOC, GCED, GCDA) or CompTIA (Security+, CySA+), or equivalent credentials. - Strong security mindset with understanding of financial-sector regulatory requirements and security best practice. - Proven analytical and problem-solving ability, with capacity to prioritize under pressure. - Clear written and oral communication and a collaborative, detail-oriented working style.
Benefits and work setup - Telecommuting-eligible roles require a secure, distraction-free home office and reliable private internet (cable or fiber preferred). - Some travel may be required for meetings.