Information Security Senior Associate managing HSAM's cybersecurity toolset and vulnerability remediation. Collaborating on security policies, incident response, and program development in a regulated environment.
Responsibilities
Configure, tune, and manage HSAM’s cybersecurity toolset, including but not limited to endpoint detection and response (EDR), SIEM, vulnerability management, and data loss prevention (DLP) tools.
Maintain and apply security policies and rules within cybersecurity platforms in alignment with HSAM standards and regulatory requirements.
Conduct periodic security configuration reviews of technology systems and platforms against internal policies, industry best practices, and vendor hardening guidelines.
Identify configuration gaps across technology systems, document findings, and coordinate with platform owners to remediate.
Support a criticality-based review cadence for technology platform security configurations.
Work cross-functionally to support security configuration needs and related enhancements.
Support identity and access management (IAM) operations, including user access reviews, conditional access policy maintenance, and identity governance.
Assist with the improvement of HSAM’s existing cybersecurity toolset and execute toolset enhancements, as appropriate.
Support vulnerability scanning operations, including scan execution, result triage, and remediation tracking.
Assist with the management of patching cadence and remediation timelines, ensuring open findings are tracked to closure.
Monitor SOC alerting and assist with tuning detection rules to reduce noise and improve signal quality.
Assist with incident triage, investigation, and documentation under direction of the CISO.
Help maintain and update incident response runbooks and playbooks.
Assist with monitoring threats and taking preventative measures to protect HSAM’s environment.
Assist in maintaining a program aligned to applicable security standards, regulations, and industry best practices.
Support the mitigation of information security risks within HSAM in a manner that meets compliance and regulatory requirements.
Provide input to and assist with updates of policies, procedures, and other program-related documentation.
Provide technical input into firmwide risk meetings and participate in security strategy meetings, as appropriate.
Generate technical evidence and artifacts to support compliance audits and third-party assessments.
Assist with technical writing, internal communications, and documentation related to security controls and configurations.
Provide technical support for third-party assessments as needed.
Attend meetings and serve on committees, as requested.
Maintain and increase knowledge and skills through attendance at meetings, conferences, training seminars, and in-service training sessions.
Requirements
3-5 years of experience in information security with hands-on experience administering security tools and infrastructure in a regulated environment.
Bachelor’s Degree in a technical discipline such as Information Security, Computer Science, Information Systems, or related field.
Security Officer responsible for maintaining safety at WarHorse Casino. Enforcing policies, responding to incidents, and providing customer service to guests.
Manager overseeing global cybersecurity risk management at Warner Bros. Discovery. Driving risk assessments and mitigation activities while collaborating with business stakeholders.
Cyber Security Engineer at MSSP responsible for protecting client assets and information using advanced security measures. Collaborating with teams to analyze threats and recommend mitigations.
Security Engineer developing and delivering security awareness programs and hands - on IAM configurations at CFC. Playing a key role in strengthening the organization's security posture.
Lead strategic capture efforts for National Security Space programs at Blue Origin, working closely with U.S. Government and industry partners. Develop proposals, track programs, and represent the company in national security forums.
Senior Security Architect defining and assessing Severn Trent's security strategy and architecture. Leading a team of security architects to ensure effective cyber security and resilience.
Associate Director overseeing security for the F135 Security Team at Pratt & Whitney. Responsible for compliance and coordination with U.S. Government and foreign partners in security operations.
Advisor in IT Security preventing suspicious transactions and assisting with compliance at Desjardins Group. Utilizing extensive knowledge of security and analytical skills to guide clients and develop solutions.
Security Engineer at PAMP Technologies responsible for global security management and incident response. Collaborating with teams in Bangalore and worldwide to bolster security infrastructure.
(Senior) Information Security Advisor leading global cybersecurity strategy for Knauf, a building materials manufacturer. Responsibilities include guiding IT and business on security regulations and risk management.