Summary
Penn State University is seeking a Cybersecurity Systems Engineer to protect its information systems and security infrastructure. The role designs, implements, monitors, and maintains security controls across networks, endpoints, servers, cloud environments, applications, and identity platforms while supporting incident response, threat detection, compliance, and security operations.
Responsibilities
- Review, investigate, and respond to complex alerts and threat activity related to compromised devices as well as alerts escalated from Tier 1
- Correlate data across endpoints, networks, and logs to scope an attack
- Create dashboards, saved searches, and other SIEM content related to compromised device activity
- Design, evaluate, implement, and maintain detection and prevention methodologies in response to current threats and minimize false positives to improve alert fidelity
- Investigate received Indicators of Compromise (IOCs) from various agencies to ensure they are not present in the environment
- Assist with the forensic preservation of digital evidence, including hard drives
- Maintain accurate security documentation and update it as needed
- Assess and monitor the effectiveness of security controls
- Keep up to date on cybersecurity trends and industry best practices
- Assist in developing and revising organizational security policies, standards, processes, and guidelines
Skills
- * Degree in Information Security, Risk Management, Information Technology, Cybersecurity, or related field or discipline
- * Experience evaluating, implementing, and maintaining cybersecurity detection and prevention methodologies to address evolving threats and reduce false positives
- * Experience developing and maintaining SIEM content, including dashboards, saved searches, queries, and alerts related to compromised devices and suspicious activity
- * Experience investigating Indicators of Compromise (IOCs) from internal and external sources to identify potential threats within an organization's environment
- * Experience investigating and responding to complex security alerts and threat activity
- * Experience with security monitoring, incident response, threat detection, and analysis using SIEM, EDR, or other cybersecurity tools
- Bachelor's Degree
- 1+ years of relevant experience; or an equivalent combination of education and experience accepted
- Applicants must be authorized to work in the U.S
- * CISSP
- * CISM
- * CompTIA Sec+
- * CompTIA CySA+
Qualifications
Must Haves
- * Degree in Information Security, Risk Management, Information Technology, Cybersecurity, or related field or discipline
- * Experience evaluating, implementing, and maintaining cybersecurity detection and prevention methodologies to address evolving threats and reduce false positives
- * Experience developing and maintaining SIEM content, including dashboards, saved searches, queries, and alerts related to compromised devices and suspicious activity
- * Experience investigating Indicators of Compromise (IOCs) from internal and external sources to identify potential threats within an organization's environment
- * Experience investigating and responding to complex security alerts and threat activity
- * Experience with security monitoring, incident response, threat detection, and analysis using SIEM, EDR, or other cybersecurity tools
- Bachelor's Degree
- 1+ years of relevant experience; or an equivalent combination of education and experience accepted
- Applicants must be authorized to work in the U.S
Nice to Haves
- * CISSP
- * CISM
- * CompTIA Sec+
- * CompTIA CySA+
Benefits
- Comprehensive medical, dental, and vision coverage
- Robust retirement plans
- Substantial paid time off, including holidays, vacation and sick time
- 75% tuition discount, available to employees as well as eligible spouses and children