Lead Security Engineer

VDart Inc

Not Interested
Bookmark
Report This Job

profile Job Location:

Chicago, IL - USA

profile Monthly Salary: Not Disclosed
Posted on: Yesterday
Vacancies: 1 Vacancy

Job Summary

Position: Lead Security Engineer

Duration: 6 Months Contract to Hire

Location: 231 S. LaSalle Chicago IL (2 days onsite/3 days remotely)

Job Details:

As the Lead Cyber Security Engineer you will be the technical authority for our defensive posture. You will lead the investigation of emerging threats against our assets and identities specifically managing P1 and P2 incidents. This role is perfect for a Blue Teamer with a deep understanding of infection mechanisms who enjoys digging through code to find malicious attacks.

Beyond technical execution you will be a mentor to a team of four security professionals driving the maturation of our SOC playbooks and automating away technical burdens through custom scripting.

Key Responsibilities

  • Incident Leadership: Lead the triage validation and full-lifecycle remediation of complex security events (P1/P2). Document and communicate findings to both technical and executive stakeholders.
  • Malware & Forensic Analysis: Serve as the SME for malicious activity. Use your knowledge of memory forensics packet analysis and reverse engineering to analyze exploitation techniques and infection mechanisms.
  • Detection Engineering: Develop and deploy detection signatures and response actions. Build automation to hunt for advanced threats that evade traditional signature-based logic.
  • Mentorship & Standards: Direct and mentor a team of 4 engineers. Create and maintain Standard Operating Procedures (SOPs) SOC playbooks and secure configuration standards.
  • Automation (SOAR): Leverage Python (primary) PowerShell and C# to build automations that connect multiple security applications and automate manual incident handling processes.
  • Azure/Defender Mastery: Maintain a layered defense strategy strictly within the Microsoft Security stack leveraging Microsoft Defender for Endpoint/Office/Identity and Azure Sentinel.

Minimum Qualifications

  • Experience: 5 years in a SOC Incident Response or Threat Detection team.
  • Must possess an active Security Clearance.
  • Technical Proficiency: Advanced understanding of TCP/IP network services cryptography and cloud-based attacks.
  • Scripting/Coding: Ability to read write and analyze Python PowerShell and C# to identify malicious code and build automations.
  • Blue Team Focus: Deep experience in host cloud and network-based forensics.

Preferred Qualifications

  • 7 years of experience in Cloud-centric Incident Response.
  • Experience in software design development or DevSecOps.
  • Familiarity with threat emulation or purple teaming (Red Team exposure).
  • Certifications: GCFA GCIH GNFA GREM OSCP or equivalent.
Position: Lead Security Engineer Duration: 6 Months Contract to Hire Location: 231 S. LaSalle Chicago IL (2 days onsite/3 days remotely) Job Details: As the Lead Cyber Security Engineer you will be the technical authority for our defensive posture. You will lead the investigation of emerging th...
View more view more

Key Skills

  • Splunk
  • IDS
  • Network security
  • Computer Networking
  • Identity & Access Management
  • PKI
  • PCI
  • NIST Standards
  • Security System Experience
  • Information Security
  • Encryption
  • Siem