Job Description
· Monitor, investigate, and triage security alerts, distinguishing legitimate threats from false positives
· Ensure alerts are thoroughly analyzed, properly documented, and resolved in accordance with established procedures
· Utilize EDR/XDR platforms to proactively detect, investigate, and respond to security incidents
· Support incident response activities in partnership with senior security engineers
· Independently assess and research legacy environments to identify risks, opportunities for improvement, and potential solutions
· Proactively develop recommendations and bring well-researched findings, action plans, and next steps to leadership
· Create and maintain standard operating procedures (SOPs), process documentation, and audit-ready records
· Operate within a highly regulated environment, ensuring all activities align with change management, approval, and compliance requirements
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
· 4 years of experience in security engineering
· Hands-on experience working with EDR/XDR tools or antivirus software, such as Microsoft Defender
· Expertise with Active Directory
· Strong understanding of the SDLC processes
· Strong communication and attention to detail
· Minimum of a 2-year degree and equivalent working experience
Nice to Have Skills & Experience
· Expertise in SentinelOne, CrowdStrike Falcon, Microsoft Defender, Cisco Secure Endpoint, etc.
· Experience with Grey matter
· Previous experience with Vulnerability Management
· Knowledge of Privileged Access Management (PAM) and CyberArk
· Experience documenting SOPs
· Certifications such as CISSP or Security+
· Experience within cloud environments
· Background in Security Operations Center (SOC)
· Exposure to SCADA or Operational Technology (OT) environments
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.