Security Engineer Ii - Cyber Security Operations Center
Bozeman, Montana, Us
Key Responsibilities -Assist in development and deployment of corporate information security strategy, as well as deployment, administration, configuration, and support of security-related systems to the fullest.-Enhance security operations team accomplishments and competence by planning the delivery of solutions; answering technical and procedural questions for less experienced team members; teaching improved processes; and mentoring team members.-Proactively monitor and utilize Cyber Defense tools to detect and react to anomalies within the network.-Assists in effective Data monitoring and Data Loss Prevention procedures.-Continually research the cyber threat landscape and tactics used by Advanced Persistent Threats. -Investigate cyber incidents using SIEMs, packet captures, reports, data visualization, and pattern analysis tools.-Respond to cyber incidents by collecting, analyzing and preserving digital evidence to assist with the Incident Responders in remediation of critical information security incidents.-Improve and challenge existing processes and procedures in a very agile and fast moving information security environment.Key Skills & Attributes:-Advanced understanding of networking, application communications, intrusion detection systems (Snort, Suricata, Bro) and tools (tcpdump, Wireshark, Nmap, etc.).-Scripting experience with the following: Bash, PowerShell, and Python-A subject-matter expert in security disciplines such as authentication and authorization models, data loss protection methods, and DNS.-Extensive experience providing leadership and counsel to both business & technical audiences.-Ability to effectively translate and present solutions in business or management terms-Collaborate in a team environment and mentor less experienced staff.-Technical security expertise in a variety of systems and platforms. -Experience with Vormetric, Alienvault USM, Security Onion, and other security tools.