Cybersecurity Engineer II
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
The Cybersecurity Engineer II responsibilities include monitoring, detecting, investigating, and responding to security incidents within our organization. The ideal candidate will also possess an Intermediate/working level of knowledge and skills in incident detection, analysis, response, and threat hunting as well as a solid understanding of cybersecurity principles and technologies. Provide support and guidance to IT for all customers and affiliate entities. Document work in the form of incident reports, policies, standards, network security diagrams, playbooks, and knowledge base articles in support of Payment Card Industry Compliance Data Security Standard (PCI-DSS), Health Information Trust Alliance (HITRUST), Health Insurance Portability and Accountability Act (HIPAA), and cybersecurity defense and protection due-diligence and due care. Nordic, Best in KLAS IT Services Firm and solely serving the healthcare industry, strives to empower healthcare providers to leverage technology and to realize digital transformation. All Nordic staff embrace Nordic's maxims and mission to serve our customers who care so well for us.
Responsibilities
- Monitoring and Detection
- Monitor security alerts and events from various sources, including but not limited to SIEM (Security Information and Event Management), antivirus software, intrusion detection systems, and log analysis tools, and cloud environments to identify potential security incidents.
- Conduct analysis of security events to determine their nature, scope, and potential impact on the organization's systems and data.
- Stay abreast of the latest cybersecurity threats, vulnerabilities, and trends to enhance the SOC's capabilities in threat detection and response by monitoring government, healthcare, and industry collaboration groups.
- Incident Response
- Conduct analysis of security incidents escalated from junior level analyst to determine the root cause, impact, and extent of the incident.
- Execute containment and mitigation strategies for confirmed security incidents, coordinating with relevant stakeholders and teams.
- Help coordinate incident response efforts, providing guidance and support to junior level analysts during incident investigations.
- Liaise with internal stakeholders, management, and external parties (if required) to ensure timely and effective resolution of security incidents.
- Prepare detailed incident reports, documenting the analysis, findings, actions taken, and recommendations for improvement.
- Contribute to the development and enhancement of incident response playbooks and standard operating procedures (SOPs) to enhance the efficiency and accuracy of incident response.
- Threat Hunting and Intelligence Analysis
- Participate in proactively threat hunting for potential security threats within the network and systems, using advanced tools and techniques.
- Analyze and interpret threat intelligence data to identify emerging threats and vulnerabilities, contributing to proactive defense measures.
- Support and Collaboration
- Collaborate with junior and senior SOC analysts and other IT security and operational teams to support incident response efforts.
- Assist in security awareness efforts and work with non-IT staff and leaders on cybersecurity-related issues.
- Provide assistance in implementing security measures or controls based on identified threats.
Requirements
- Intermediate/working knowledge of incident response and handling methodologies.
- Intermediate/working knowledge of adversarial tactics, techniques, and procedures.
- Intermediate/working understanding of threat hunting.
- Intermediate/working knowledge of different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks).
- Intermediate/working knowledge of cyber threats and vulnerabilities.
- Knowledge of network analysis tools to identify vulnerabilities. (e.g., fuzzing, Nmap, Nessus, etc.).
- Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., applicati
Benefits
Additional Information
Make a difference. Be happy. Grow your career. Exciting Opportunity on the Horizon - Join Our Talent Network! Nordic is gearing up for an exciting new project and anticipate opening a role that could be a great fit for Cybersecurity professionals. While the position isn't officially open yet, we're starting to build a pipeline of interested candidates who want to be among the first to hear when it is. If you're curious, motivated, and looking to be part of something impactful, we'd love to hear from you. Expressing interest now means you'll be the first to know when the role goes live-and gives us a chance to get to know you early.
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at nordic? Share your experience