
Security Engineer
- Pittsburgh, PA
- $115,000-135,000 per year
- Permanent
- Full-time
- Security Engineer will administer and provide subject-matter expertise in Palo Alto Panorama, PANOS, Prisma, and Wildfire
- Lead and refine security event management processes, develop SOPs, and conduct incident response activities including orchestration, investigation, and reporting
- Collaborate with managed security service providers to improve processes and relationships
- Manage security technologies such as CrowdStrike EDR/NGAV, Identity Protection, NG-SIEM, SEG, PAM/VPAM, EPM, and vulnerability scanning tools
- Develop cloud migration strategies and controls including CNAPP, CI/CD pipelines, DevOps guardrails, and Azure CSP monitoring
- Perform threat and vulnerability analysis and coordinate remediation efforts with technical teams
- As a Security Engineer, you will stay informed on emerging threats and participate in threat modeling and reporting
- Deliver scalable and reliable security solutions that align with organizational goals and minimize risk
- Create and deliver end-user security awareness training and simulations
- Contribute to security governance by developing policies, procedures, metrics, and ensuring compliance
- Provide consulting, project support, cross-training, and troubleshooting assistance to IT staff, clients, and vendors
- Minimum five (5) years of experience in Information Security with a strong IT background
- Experience in process improvement for security operations
- Hands-on experience with platforms such as EDR, PAM, MFA, SIEM, and NGFW
- Experience with technologies from providers like CrowdStrike, Palo Alto, Tenable, and Azure
- Familiarity with diverse security processes and tools
- Expertise in malware detection and remediation
- Knowledge of network design, operations, and monitoring; Windows/Linux server and database security
- Understanding of ISO/IEC 27001:2022 ISMS standards
- Proficient in IP networking and public cloud security principles
- Proficiency in scripting and query languages including Python, PowerShell, CQL, and XQL
- Effective communication skills with both technical and non-technical stakeholders
- Skilled in security event management and incident response
- Ability to identify and mitigate security technology risks