Summary
RED SKY Consulting is an IT and Cybersecurity staffing solutions company with a rich history of providing technology talent. They are seeking a Cybersecurity Engineer to design, implement, and support the company’s overall information security infrastructure, with responsibilities including configuring security tools and monitoring cyber security health.
Responsibilities
- Configure, implement, maintain, and troubleshoot cyber security devices, tools, and solutions including Azure and Microsoft security products across the enterprise environment
- Monitor the health and performance of cyber security tools; tune configurations to optimize detection fidelity, reduce alert fatigue, and align monitoring to business-critical assets
- Conduct capacity planning for cyber security infrastructure, including compute, storage, and licensing requirements
- Lead and participate in the triage, containment, investigation, and documentation of security events and incidents
- Design and participate in cyber security exercises, including tabletop scenarios, incident response simulations, and red/blue team drills
- Identify and define system security requirements for on-premises and cloud-hosted systems
- Develop and maintain cyber security documentation, standard operating procedures, and protocols
- Collaborate with IT and business teams to investigate and resolve cyber security-related system issues
- Manage operational workflows including ticket submission and tracking, change management documentation, and participation in Change Approval Board (CAB) meetings
- Develop and maintain security metrics, dashboards, and reports; present findings to technical teams, leadership, and other stakeholders as appropriate
- Stay current on emerging threats, adversary TTPs, malware trends, forensic techniques, and the evolving threat landscape
- Perform job duties in a safe manner
- Attend work as scheduled on a consistent and regular basis
- Perform other related duties as assigned
Skills
- Strong hands-on experience with Microsoft security tools, specifically Defender XDR and Sentinel, including operational engineering and log management
- Good understanding of the Azure ecosystem, including cloud-based networking and infrastructure, for troubleshooting purposes
- Broad experience in security, potentially including other EDR products (CrowdStrike, Sentinel One), CSPM/CWPP, and network security fundamentals (firewalls, WAFs)
- Approximately 5-7 years of overall experience, demonstrating the ability to work independently and contribute effectively from the start
- Willingness and ability to work PST hours and regularly attend evening meetings (5 PM - 7 PM PST) with teams in Asia
- At least 21 years of age
- Proof of authorization to work in the United States
- Bachelor's degree in Computer Science or related field, or 3 years of hands-on experience in a relevant technical discipline
- Must be able to obtain and maintain any certification or license, as required by law or policy
- Experience in at least 4 of the following: SIEM installation, implementation and maintenance; Microsoft native security platforms (Azure and various Microsoft security products); System Administration; Network Administration; Capacity planning; Network architecture; Cyber forensics; Data Loss Prevention; Firewall administration; IDS/IPS installation, implementation and maintenance; Vulnerability and security configuration scanning; Vulnerability management and penetration testing tools; Endpoint protection and anti-malware solutions; Cyber incident response; Secure configuration management; Threat intelligence; Security metrics and reporting
- Ability to think clearly, prioritize, and perform under pressure in a fast-paced, high-stakes environment
- Must be self-motivated and a team player collaborating with a team that spans the globe
- Demonstrates responsibility and accountability
- Must be able to communicate effectively with team members, management, senior management and consultants both verbally and in writing
- Must be able to read, interpret, and maintain network and system diagrams
- Ability to produce clear, accurate technical documentation and procedures for varied audiences
- Must be able to respond to calls as needed (24/7)
- Must be able to evaluate, implement, and integrate cyber infrastructure solutions within the existing environment
- Working knowledge of TCP/IP, network protocols, routing and switching, and network segmentation principles
Qualifications
Must Haves
- Strong hands-on experience with Microsoft security tools, specifically Defender XDR and Sentinel, including operational engineering and log management
- Good understanding of the Azure ecosystem, including cloud-based networking and infrastructure, for troubleshooting purposes
- Broad experience in security, potentially including other EDR products (CrowdStrike, Sentinel One), CSPM/CWPP, and network security fundamentals (firewalls, WAFs)
- Approximately 5-7 years of overall experience, demonstrating the ability to work independently and contribute effectively from the start
- Willingness and ability to work PST hours and regularly attend evening meetings (5 PM - 7 PM PST) with teams in Asia
- At least 21 years of age
- Proof of authorization to work in the United States
- Bachelor's degree in Computer Science or related field, or 3 years of hands-on experience in a relevant technical discipline
- Must be able to obtain and maintain any certification or license, as required by law or policy
- Experience in at least 4 of the following: SIEM installation, implementation and maintenance; Microsoft native security platforms (Azure and various Microsoft security products); System Administration; Network Administration; Capacity planning; Network architecture; Cyber forensics; Data Loss Prevention; Firewall administration; IDS/IPS installation, implementation and maintenance; Vulnerability and security configuration scanning; Vulnerability management and penetration testing tools; Endpoint protection and anti-malware solutions; Cyber incident response; Secure configuration management; Threat intelligence; Security metrics and reporting
- Ability to think clearly, prioritize, and perform under pressure in a fast-paced, high-stakes environment
- Must be self-motivated and a team player collaborating with a team that spans the globe
- Demonstrates responsibility and accountability
- Must be able to communicate effectively with team members, management, senior management and consultants both verbally and in writing
- Must be able to read, interpret, and maintain network and system diagrams
- Ability to produce clear, accurate technical documentation and procedures for varied audiences
- Must be able to respond to calls as needed (24/7)
- Must be able to evaluate, implement, and integrate cyber infrastructure solutions within the existing environment
- Working knowledge of TCP/IP, network protocols, routing and switching, and network segmentation principles
Benefits
- RED SKY Consulting Candidate and Client Referral Program!
- If you refer to us a Manager of people or skilled professionals, we will link your name to that person for 18 months.
- If we employ or place that individual or place people into that company thru that manager
- The RED SKY Foundation is being formed and will be providing fully funded college educations to underprivileged young adults in partnership with our clients starting 2022.