Overview
Skills
Job Details
Job Title: Information Security Engineer III
Location: Onsite, Cincinnati, OH.
Duration: 15+ Months (Extendable)
Must Have:
- networking (TCP/UDP, HTTP/HTTPS, DNS, CDN architecture), AWS, python, java
JOB DESCRIPTION
Job Summary:
The Security Engineer is responsible for supporting day-to-day data security operations and ensuring the availability, integrity, and compliance of security and networking infrastructure components. This role involves designing, implementing, and maintaining security systems and configurations across a variety of platforms, including Web Application Firewalls (WAF), Bot mitigation tools, API gateways, CDN, ALB, TLS certificates, and caching services. The Security Engineer will collaborate closely with application teams to integrate secure infrastructure solutions, monitor for threats, investigate security incidents, and enforce security policies and standards.
Primary Responsibilities:
- Participate in the planning, design, installation, and maintenance of security systems in support of security policies.
- Create and maintain security configurations on Web Application firewalls, Bot mitigation platforms, API gateways, certificates, proxy systems, logging, and other security devices.
- Analyze network traffic patterns to identify malioush traffic or misconfigured applications, create custom mitigations or tuning configurations as needed.
- Partner with application teams to securely integrate infrastructure services including CDN, WAF, Bot, ALB, TLS certificate management, and caching solutions. Ensure configurations align with security best practices, performance objectives, and compliance requirements.
- Create and review reports on event anomalies.
- Raise awareness of security policies and develop corresponding procedures.
- Defines security requirements and reviews systems to determine if they have been designed to comply with established security standards.
- Analyze business needs, researches and recommends solutions.
Qualifications:
- Degree or equivalent work experience in related discipline (Information Systems, Computer Science, Engineering, etc.)
- Experience in delivering information security infrastructure support and related services.
- Demonstrated experience in computer security combined with risk analysis, audit, and compliance objectives.
- Experience working with information security practices, networks, software, and hardware.
- Experience with Web Vulnerability.
- CISSP certification is preferred.