Skip to content

System Security Engineer

Bethesda, MDSecurity EngineeringHybrid2+ YOE
Summary

Manages firewalls, IP, vulnerabilities, and compliance for NCBI systems at NIH. Performs log analysis, incident response, threat hunting, and network security troubleshooting with 2+ years experience in firewalls and vulnerabilities.

About the role

Duties & Responsibilities

  • Firewall management.
  • IP management.
  • Vulnerability/System compliance management.
  • Analyze architecture and system functionality for a broad range of technologies.
  • Log analysis for incident remediation/threat hunting.
  • Troubleshooting security and network problems.
  • Provide support in the areas of information assurance, vulnerability assessment, enterprise protection planning, security monitoring, incident response, cyber security, and cyber threat analysis.
  • Participate in formal incident response efforts coordinating responses to major intrusions or exploits. Incident investigations include intrusions, illegal software usage, etc.
  • Determine Security Incident Event Management (SIEM) pattern analysis based on threat intelligence feeds.

Requirements

  • Bachelor's degree or 4 yrs of equivalent experience.
  • Minimum 2+ years hands on firewall management experience.
  • Minimum 2+ years hands on vulnerability management experience.
  • Working knowledge and demonstrated experience in network design, network security, and firewall technologies. Experience with Fortinet, Symantec endpoint protection, and Arista/Cisco ACLs preferred.
  • Experience with testing and identifying network and system vulnerabilities using tools such as Tenable.SC and BigFix.
  • Experience with log analysis.
  • Experience with Splunk preferred.
  • Good understanding of computing security, authentication techniques, operation procedures and general practices in an enterprise IT infrastructure.
  • Demonstrated self-initiated ability for analyzing, debugging, and tracking security issues.
Skills
FortinetSymantecAristaCisco ACLsTenable.SCBigFixSplunkSIEMFirewall ManagementVulnerability Management