IT Security Engineer
Job Description
Colony Brands, Inc. is hiring an onsite IT Security Engineer in Monroe, WI to build and run the information security program, manage controls, and support incident response and compliance.
Responsibilities
- Develop and implement a comprehensive information security program
- Select and deploy technical security controls aligned to security requirements
- Define processes and standards that ensure security configurations remain maintained
- Define and promote information security policies, processes, and standards through secure technology design
- Monitor compliance against company policies and applicable law(s)
- Investigate and report security violations and incidents
- Report and advise on information security issues to confirm internal controls are appropriate and operating as intended
- Analyze information and processes to balance normal vulnerability levels with investment, staffing, and end-user capability
- Serve as a subject matter expert and provide security guidance to the business
- Partner with project teams to facilitate and implement new systems, policies, and processes
- Coordinate with a managed service SOC on centralized logging and identification of security incidents or misconfigured security controls
- Coordinate and conduct responses to information security incidents, including the ability to begin forensic investigation as part of the incident response process
- Prepare documentation, business notifications, and security alerts
- Conduct daily review and interaction related to security alerts from EDR (Endpoint Detection & Response), SIEM (Security Incident & Event Management), phishing identification tools, and service tickets
- Research, recommend, and develop security and risk mitigation solutions
Requirements
- Bachelor’s degree in MIS, Computer Sciences, Information Technology, or related discipline
- 3+ years of related business experience
- Broad and in-depth understanding of information security and information technology auditing
- Commitment to continuous improvement and knowledge growth, including staying current with security technologies
- Documented ability using security systems including vulnerability scanners, logging software, Multi Factor Authentication, and experience with SAML Federation
- Experience with patch management processes
- Experience with diverse desktop and server environments, networking, and operational security technologies on-prem and in the cloud (AWS preferred)
- Solid written and verbal communication skills at all comprehension levels
- Experience driving Security Awareness programs is desired
- CISSP certification is preferred
- Experience working with small to mid-size companies is helpful
- PCI, SOC1, Audit and/or HIPPA experience is a plus
Technologies
- EDR (Endpoint Detection & Response)
- SIEM (Security Incident & Event Management)
- Phishing identification tools
- Vulnerability scanners
- Logging software
- Multi Factor Authentication
- SAML Federation
- Patch management processes
- AWS
- Forensic investigation
Benefits
- Medical/Dental/Vision insurance
- Wellness Program including Onsite Healthcare
- Superb Retirement Plans (401K & a company-funded Pension Plan)
- Extensive Paid Time Off (PTO) benefits
- Seven 4-day work weeks in the summer months to provide additional time off
- Educational Assistance
- Company Profit-Sharing
- Company Product Discounts
- Location: Monroe, WI (onsite)
- Job Category: IT
- Employment Type: Regular/Full-Time
- Visa Sponsorship: Not eligible