IT SENIOR PROFESSIONAL - SECURITY ENGINEER
6 days ago
Houston
Job Description Are you passionate about protecting organizations from cyber threats and helping shape the future of cybersecurity? Virtuo Group is seeking a skilled and motivated Cybersecurity Analyst to join our award-winning team. In this role, you’ll monitor, detect, and respond to security incidents, while working alongside experts who are dedicated to keeping our clients’ systems secure. If you thrive in a fast-paced, dynamic environment and enjoy solving complex challenges, this is the opportunity to make a real impact. Workdays & Hours: MONDAY – FRIDAY 8:00 AM – 5:00 PM* *Subject to Change / Remote is Not an Option DESCRIPTION OF DUTIES / ESSENTIAL FUNCTIONS Duties, functions and responsibilities of this position include: • Responsible for communicating cyber risks and recommendations to mitigate risks to the Chief Information Security Officer (CISO), • Facilitates department-specific system feeds into SOCs SIEM/SOAR platforms, • Manage/coordinate endpoint protection tools, IPS firewall rules, and integrate threat detection across environments, • Conducts basic malware analysis of attacker tools and identifies indicators of compromise (IOC)s, • Manage the Security Operations Center (SOC) mailbox, and monitor and analyze the emails for threats including phishing and malware, and escalates per procedures, • Participates in the investigations of information security incidents and may prepare reports on intrusions as required, • Proactively seek out suspicious activity and threats within the environment, act appropriately to contain and mitigate them, • Perform real-time detection, analysis, and response to threats via an EDR tool, • Analyze the latest malware discoveries/shifts to understand how/if it would be effective in the environment, • Create new alerts and investigation methods in relation to the ever-changing threat landscape, • Analyze attacks and trends facing HPD to better define proactive defensive measures, • Track, provide, and present analysis into observed attacks against HPD, • Assist with the development, deployment and support of data protection solutions, • Assist with the implementation of data security controls and design principles, • Assist with technology and software reviews based on data protection and endpoint risks, • Responsible for implementing and supporting security platforms related to: Security Orchestration Automation & Response (SOAR), Security Information Event Management (SIEM), • Manage SIEM platforms, agents, and apps\add-on log source integration upgrades, • Develop alerts, reports, data models, dashboards, and connectors in support of HPD cyber operations, • Recognize patterns and inconsistencies that could indicate complex cyber-attacks, • Develop SIEM correlation rules to detect new threats beyond current capabilities, • Assist with designing and documenting work processes, • Perform log file analysis as needed, • Contribute to CTI (Cyber Threat Intelligence) data gathering, reporting, and analysis activities, • Leverage automation and orchestration solutions to automate repetitive tasks, • Continuous optimization, tuning and monitoring of platforms, • Integration of platforms into SIEM, SOAR and/or API’s, • Identify credible, new intelligence, and subject matter resources relative to current and emerging threats, • Create written and verbal intelligence products for internal stakeholders to assist in proactively addressing cyber threats and mitigating risk, • Recognize, research, and analyze various threat actor groups/attack patterns and TTPs EDUCATION REQUIREMENTS Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Network Engineering, or a related field is preferred. An associate degree combined with substantial hands-on experience and/or relevant certifications may be considered in lieu of a bachelor’s degree, particularly in smaller municipal environments. A master’s degree in Cybersecurity, Engineering, or Systems Architecture is also considered. EXPERIENCE REQUIREMENTS 3–7 years of hands-on experience in security engineering, network engineering, or systems administration, with a strong focus on security. 1–3 years of experience implementing, tuning, and integrating security technologies, including SIEM, SOAR, EDR, firewalls, and related tools. LICENSE REQUIREMENTS Must be able to pass a criminal background check, obtain and maintain federally mandated security clearances where required. PREFERENCES The candidate must have the following knowledge, skills and abilities: • Knowledgeable of Cyber Kill Chain and Diamond Model of Intrusion Analysis, • Familiarity with CJIS, NIST 800-53, and NIST CSF, • Knowledge of SIEM, IDS, anti-virus/anti-malware and firewall technologies, • Understanding of networking and TCP/IP, • Experience with a wide variety of operating systems: Windows Server, Windows 10, Linux etc., • Ability to troubleshoot technical and security related issues, • Experience working in a rapidly changing, high intensity environment, • Avid, proactive learner and ability to work well in a team-based environment, • Strong interpersonal and writing skills SELECTION / SKILLS TESTS REQUIRED Organization may administer skills assessment test. EEO Equal Employment Opportunity Virtuo Group Corporation is committed to recruiting and retaining a diverse workforce and providing a work environment that is free from discrimination and harassment based upon any legally protected status or protected characteristic, including but not limited to an individual's sex, race, color, ethnicity, national origin, age, religion, disability, sexual orientation, genetic information, veteran status, gender identity, or pregnancy. Company DescriptionVirtuo Group is an award-winning cybersecurity firm trusted by over 50 organizations nationwide. We tackle crises and streamline daily workflows with agility, expertise, and dedication. As a service-disabled, minority, woman-, and veteran-owned small business, we value the discipline and commitment veterans bring and actively recruit disabled veterans for key roles. Our core values—agility, technical acumen, and exceptional service—guide every solution, project, and client interaction. Join us and make an impact where it matters most.Virtuo Group is an award-winning cybersecurity firm trusted by over 50 organizations nationwide. We tackle crises and streamline daily workflows with agility, expertise, and dedication. As a service-disabled, minority, woman-, and veteran-owned small business, we value the discipline and commitment veterans bring and actively recruit disabled veterans for key roles. Our core values—agility, technical acumen, and exceptional service—guide every solution, project, and client interaction. Join us and make an impact where it matters most.