CybersecurityJobs.io
← Back to all jobs

Job Description

The Security Engineer role is responsible for the day-to-day execution of Trean Corporation’s cybersecurity operations program. The position focuses on monitoring and investigating security alerts, supporting incident response activities, performing risk and vulnerability assessments, and improving security controls and operational processes.

Location and Work Model

  • Location: Wayzata, MN
  • Work arrangement: Hybrid
  • Onsite requirement: Minimum three days per week at a designated Trean office location

Compensation

  • Salary: USD 100,000 - 115,000 per year

Key Responsibilities

  • Monitor and investigate security alerts and suspicious activity across the enterprise environment.
  • Analyze suspected cybersecurity events and perform triage, containment, eradication, and recovery activities.
  • Manage cybersecurity incidents through the incident response lifecycle, including investigation, documentation, escalation, and post-incident review.
  • Act as a primary reviewer and analyst for security alerts, security-related requests, security incidents, and risk assessments, ensuring timely investigation, documentation, remediation recommendations, and follow-through.
  • Review and resolve security-related tickets, requests, and reported security concerns.
  • Perform application, vendor, infrastructure, and technology risk assessments and recommend mitigation steps.
  • Review security questionnaires, technology implementations, and proposed business or technology changes to identify security risks and control gaps.
  • Assess security vulnerabilities, system misconfigurations, and control weaknesses, coordinating with stakeholders to drive remediation.
  • Research emerging cyber threats, attacker tactics, techniques, and procedures (TTPs), and recommend improvements to security controls and defenses.
  • Develop and maintain security procedures, response playbooks, technical documentation, and operational standards.
  • Identify opportunities to improve cybersecurity processes, incident response workflows, ticket handling procedures, and operational efficiency.
  • Recommend and help implement enhancements to security controls, monitoring capabilities, and security processes based on lessons learned, risk assessments, and emerging threats.
  • Participate in projects and technology initiatives to ensure security requirements and risks are addressed.
  • Support evaluation and secure adoption of emerging technologies, including artificial intelligence solutions, within the organization.

Required Qualifications

  • Education: Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field, or an equivalent combination of education and experience.
  • Experience: 2-4 years in cybersecurity, security operations, incident response, or a related information security role.
  • Demonstrated experience performing day-to-day security operations, including alert triage, incident investigation, security ticket review, remediation tracking, and resolution of security-related requests.
  • Experience supporting or participating in cybersecurity incident response activities, including investigation, containment, eradication, recovery, and documentation.
  • Experience conducting or participating in technology, application, vendor, or cybersecurity risk assessments.
  • Experience identifying security vulnerabilities and control weaknesses and recommending remediation.
  • Knowledge of current cybersecurity threats, attack techniques, defensive security principles, and industry best practices.
  • Understanding of information security concepts including identity and access management, endpoint security, vulnerability management, security monitoring, and incident response.
  • Strong analytical and problem-solving skills, with the ability to assess risk, prioritize work, and recommend practical solutions.
  • Ability to assess and manage multiple security events, incidents, assessments, and requests in a fast-paced environment.
  • Ability to learn new technologies, evaluate security risks, and recommend process and security control improvements.
  • Strong written and verbal communication skills, including the ability to document findings and communicate technical information to technical and non-technical audiences.
  • Ability to work independently with sound judgment and collaborate effectively with cross-functional teams.
  • Ability to work in a hybrid environment with a minimum onsite presence of three days per week at a designated company office location.
  • Demonstrated integrity and trustworthiness, with the ability to maintain strict confidentiality when handling sensitive company, customer, employee, and cybersecurity-related information.

Preferred Qualifications

  • Experience conducting application, vendor, or technology risk assessments.
  • Experience supporting security engineering initiatives and implementing security controls.
  • Security certifications such as Security+, CySA+, SSCP, GSEC, GCIH, or equivalent.
  • Experience in a regulated industry such as insurance, financial services, healthcare, or a similar environment.
  • Experience identifying opportunities to improve security processes, workflows, and operational effectiveness.
  • Exposure to cloud security, identity and access management, artificial intelligence technologies, or security automation.
  • Experience reviewing vendor security questionnaires, technology implementations, or application security assessments.

Ideal Candidate Profile

  • Currently works in a security operations, SOC, or cybersecurity analyst role.
  • Reviews security alerts, investigates incidents, and manages security-related tickets as part of daily responsibilities.
  • Has participated in risk assessments, security reviews, vendor reviews, or vulnerability management activities and can take ownership of those activities.
  • Demonstrates strong analytical thinking, attention to detail, and sound judgment.
  • Maintains a high level of integrity and discretion when handling sensitive and confidential information.
  • Shows interest in expanding technical skills, contributing to security improvements, and growing into a more senior cybersecurity role over time.

Working Conditions

  • Professional office environment.
  • Uses standard office equipment and requires normal office physical demands with some light lifting.
  • Full-time position with benefits.
  • Hybrid work model with a minimum onsite presence of three days per week at a designated Trean office location.

Position Notes and Disclaimer

  • This job description is not a contract of employment and includes major responsibilities but not all responsibilities.
  • Trean Corporation may change and update the job description as necessary.
  • Employment with Trean Corporation is at-will, meaning employment may be terminated at any time by either the employee or the company, with or without cause or advance notice.
  • Trean will not sponsor applicants for work visas.

Similar Jobs