- Location
- Dakota Dunes, SD, US
- Type
- Full-time
- Department
- Engineering
- Education
- Bachelor
- Closing date
- Today
- Source
- iCIMS
Description
Overview
The Cyber Security Engineer is responsible for monitoring, administering, and continuously improving the organization's security monitoring and threat detection capabilities. This position supports SIEM, EDR/XDR, incident response, threat detection, vulnerability management, and cybersecurity operations across enterprise and production environments. As the cybersecurity program matures, this position will develop into a trusted technical resource capable of independently managing daily security operations and providing continuity for the organization’s cybersecurity function.
Responsibilities
Security Operations & Incident Response
- Monitor SIEM, EDR/XDR, and MDR platforms.
- Investigate alerts and suspicious activity.
- Lead and coordinate incident response activities.
- Conduct threat hunting and event analysis.
- Improve detection rules and alert tuning.
- Evaluate SIEM log coverage and onboarding.
- Participate in shared after-hours security monitoring and incident response coverage.
- Respond to and escalate security-related requests and incidents received from the IT Help Desk.
Vulnerability Management
- Coordinate vulnerability identification and remediation.
- Validate remediation efforts.
- Support risk reduction initiatives.
Security Engineering & Administration
- Support implementation of security tools and controls.
- Assist with cloud security initiatives.
- Develop procedures and documentation.
- Support compliance and audit activities.
Additional
- Ability to perform all essential job functions with or without reasonable accommodation.
- Perform all other duties as assigned.
- Must have regular and punctual attendance.
Qualifications
- Experience administering, monitoring, and investigating security events using SIEM platforms.
- Experience working with EDR/XDR technologies to detect, investigate, and respond to security threats.
- Knowledge of threat detection, incident response, and security monitoring practices.
- Understanding of network security fundamentals, endpoint security, and identity-based threats.
- Ability to analyze security alerts, identify root causes, and recommend remediation actions.
- Experience supporting Microsoft 365 and Azure security environments preferred.
- Understanding of operational technology (OT) and manufacturing environments preferred.
Demonstrated Competencies
- Ability to work independently with minimal supervision.
- Strong analytical, troubleshooting, and problem-solving skills.
- Ability to solve and communicate complex problems, and document findings clearly in writing.
- Sound judgment on when to act versus escalate.
- Solutions-oriented, results-driven self-starter.
- Strong organizational ability.
- Ability to prioritize competing demands and manage multiple projects simultaneously.
Physical Requirements
- Office Setting
Experience: Minimum of three (3) years of cybersecurity, systems administration, network administration, infrastructure support, or a closely related IT discipline with demonstrated security responsibilities.
Education: Associate's degree or Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field preferred. CompTIA Security+ certification or equivalent foundational cybersecurity certification. Equivalent combination of education, certifications, and relevant experience will be considered.