All jobs

Lead Security Engineer - Cyber Security

100% Remote Full-time Open now

Posting Type Remote Job Overview As a Lead Cyber Security Engineer, you will ensure the security of Relativity’s network and infrastructure. In this role, the main responsibilities will be to investigate and analyze emerging threats against our assets, identities, and clients. You will also provide actionable remediation guidance to end users and collaborate with highly skilled cyber experts to anticipate and mitigate evolving threats using world-class toolsets and next generation capabilities. Job Description and Requirements Responsibilities: Review, validation, and triage of alerts and technical analysis of log data from a diverse inventory of sensors, correlated signature logic, and threat intelligence sources. Assess the impact of security events by leveraging host, cloud and network-based indicators and evidence to deliver actionable incident escalations. Develop and deploy detection and prevention signatures with response actions as part of a layered defensive strategy leveraging multiple technologies and data types. Build automation to search through collected telemetry to detect and isolate advanced threats that evade existing security solutions. Create Standard Operating Procedures, SOC playbooks, configuration guides, and secure standards. Automate incident handling processes. Engage in the continuous research of emerging threats and apply appropriate countermeasures within the context of a rapidly changing environment. Serve as a subject matter expert in the mechanism and analysis of observed malicious activity. Clearly document and communicate investigation findings to both technical and executive stakeholders. Identify and automate away technical burden. Build automation to deploy, operate and connect multiple cyber security tools and applications. Preferred Qualifications: 7+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team for Cloud applications and corporate networks Exposure to threat detection development and tuning Experience in software design and development DevSecOps experience Ability to perform threat hunting, threat emulation, and/or purple teaming exercises Familiarity with industry standard security devices and their configuration Experience in reverse engineering malicious code to explore infection and propagation mechanisms Experience with threat intelligence tools and processes Certifications: One or more of the following certifications are preferred (GCFA, GCIA, GCIH, GNFA, GREM, OSCP, OSEP, OSED, OSWE, OSDA, OSCE3, CompTIA Security+, CCNA CyberOps, or CEH) 5+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team Strong cyber incident response skills (such as: Network forensics, memory forensics, and/or packet analysis) Ability to read, write and analyze PowerShell, C#, and Python Capability to independently manage the prioritization of complex security events Advanced understanding of common SOC/CIRT operational processes and documentation Advanced knowledge of TCP/IP, network services, cryptography, cloud, and web application attacks Ability to collaborate within a global cross-functional team to execute on high-level objectives and drive the maturation of Relativity’s security posture Deep understanding of infection mechanisms, malicious behavior, exploitation techniques, and mitigating controls Good understanding of tools, tactics, and procedures utilized by attackers to access private systems and data Strong analytical and problem-solving skills Minimum Qualifications: 5+ years of experience in a Security Operations Center, Incident Response, or Threat Detection team Strong cyber incident response skills (such as: Network forensics, memory forensics, and/or packet analysis) Ability to read, write and analyze PowerShell, C#, and Python Capability to independently manage the prioritization of complex security events Advanced understanding of common SOC/CIRT operational processes and documentation Advanced knowledge of TCP/IP, network services, cryptography, cloud, and web application attacks Ability to collaborate within a global cross-functional team to execute on high-level objectives and drive the maturation of Relativity’s security posture Deep understanding of infection mechanisms, malicious behavior, exploitation techniques, and mitigating controls Good understanding of tools, tactics, and procedures utilized by attackers to access private systems and data Strong analytical and problem-solving skills Ability to leverage programming and scripting languages to build automations and develop SOAR playbooks Relativity is committed to competitive, fair, and equitable compensation practices. This position is eligible for total compensation which includes a competitive base salary, an annual performance bonus, and long-term incentives. The expected salary range for this role is between following values: $150,000 and $226,000 The final offered salary will be based on several factors, including but not limited to the candidate's depth of experience, skill set, qualifications, and internal pay equity. Hiring at the top end of the range would not be typical, to allow for future meaningful salary growth in this position. Suggested Skills: Cybersecurity, Infrastructure Security, Network Security, Penetration Testing, Security Architecture Design, Security Audit, Security Information, Security Information and Event Management (SIEM), Security Operations, Vulnerability Management We’re solving big data challenges in the legal tech industry, and we’re always looking for more people to join us on the journey. At Relativity, you'll learn cross-functional skills to grow your career and have the chance to make a big impact on our customers, our industry, and our communities. We admire and value our employees, so it’s no surprise that our hiring process is designed to help us really get to know you – and for you to get to know us, too. Apply tot his job Apply To this Job

You might also like

Civil and Industrial Engineer 3 Locations

100% Remote Full-time

[Remote] Project Engineer SR (Industrial Engineer)

100% Remote Full-time

Director of Industrial Engineering

100% Remote Full-time

Industrial Engineer; d​/w​/m | Produktionsentwicklung​/ausbau

100% Remote Full-time

IT Cloud and Security Officer

100% Remote Full-time

Associate Product Safety Engineer -Industrial Machinery (Remote)

100% Remote Full-time

Senior Client Solutions Manager, Beauty - Influencer Marketing (Remote - US, EST hours)

100% Remote Full-time

Influencer and Creator Manager

100% Remote Full-time

Cybersecurity Compliance Consultant

100% Remote Full-time

Platform Infrastructure Engineer job at Advanced Micro Devices - AMD in San Jose, CA

100% Remote Full-time

Experienced Part-Time Remote Data Entry and Customer Service Representative – Delivering Exceptional Support and Seamless Communication up to $25/Hour at arenaflex

100% Remote Full-time

Chat Support Worker for Moms (Entry Level, Remote)

100% Remote Full-time

Enrolled Actuary, TPA Solutions

100% Remote Full-time

Pessoa Desenvolvedora Backend Pl.

100% Remote Full-time

Licensed Customer Service Representative

100% Remote Full-time

Health & Safety Senior Manager, Americas

100% Remote Full-time

HEDIS Over Reader Nurse – Remote – ...

100% Remote Full-time

Experienced Remote Data Entry Specialist – Driving Success with Accuracy and Efficiency

100% Remote Full-time

Experienced Full Stack Customer Support Specialist – Work From Home | arenaflex

100% Remote Full-time

[Remote-Position] American Airlines Remote From Home $27Hr

100% Remote Full-time