Principal Security Engineer
A global law firm is seeking a Principal Security Engineer to join their team. The Principal Security Engineer, under the direction of the Director of Security Engineering and Operations, is responsible for managing the Firm's information security systems and processes, assuring enforcement of security policies, managing the information security threat lifecycle, analyzing and responding to security events escalated by the Security Operations Center (SOC) and coordinating actions to limit risks identified through our automated systems. The Senior Security Engineer is accountable for providing expertise and support in the areas of security engineering, incident response, and risk management. Duties include:
- Provide subject matter expertise in information security as it relates to networks and systems
- Manage the Firm's security technology including but not limited to: anti-virus, vulnerability scanning, intrusion detection, content filtering, and insider threat systems
- Review security events from all monitoring environments not integrated with the firm SIEM, and those events escalated by the SOC, on a daily basis, and follow defined incident response processes in their analysis and reporting
- Monitor appropriate venues for threats to the security of the firm's environment
- Provide notification to all impacted parties related to the actions needed to mitigate threats and manage the threat lifecycle in totality
- Manage and lead evaluations of the firm's environment by external 3rd parties
- Produce recommendations that integrate any findings with the business needs of the firm
- Maintain knowledge of the information security needs of firm clients and implement measures to satisfy those requirements in the most efficient manner
- Keep abreast of emerging security technologies and discipline developments
- Make appropriate recommendations that meet the firms needs
- Design and build operational environments that scale to meet the needs of our security products and assure appropriate reliability
- Support general troubleshooting related to information security tasks and provide support to end users as needed
- Provide other teams with security consulting services, including responding to requests for additional information and assisting with specific projects
- Perform related duties as assigned by supervisor
- Maintain compliance with all company policies and procedures
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances.