Cologix is seeking a Senior IT Security Engineer based in Denver, Colorado, to install, document, troubleshoot, and maintain network security infrastructure and software.
The role involves configuring security tools and applications to enhance detection and response capabilities, track performance of controls, streamline internal processes, and improve defensive controls.
Daily responsibilities include collaborative issue remediation on various IT-related issues such as cybersecurity risks, regulatory compliance, data protection, and user access.
The engineer will configure network security controls including firewalls, IDS/IPS, email gateways, WLAN, vulnerability scanners, and endpoint controls like EDR and DLP.
The position requires responding to security events, validating findings, and remediating gaps identified by vulnerability scanning and penetration testing.
The engineer will plan, design, implement, and support security tools for preventative controls, event detection, and incident response efforts.
Responsibilities also include creating and maintaining system documentation, security infrastructure topology, data flow diagrams, internal knowledgebase, and incident runbooks.
Proactive management of updates and patching of security applications and device software/firmware and hardware is required.
Participation in project planning and execution as an information security subject matter expert (SME) is expected, ensuring adherence to internal policy and security best practices.
The engineer will also participate in blue/purple team exercises, design and execute disaster recovery/business continuity/incident response tabletop exercises, and update processes and documentation based on lessons learned.
Requirements:
A computer science-related baccalaureate degree from an accredited college or equivalent experience is required.
Candidates must have a minimum of 5 to 8 years of experience in security within an enterprise environment.
Experience with vulnerability scanning applications, log management and alerting platforms, and packet analyzers is necessary.
Knowledge of network segmentation and/or security zones for data protection according to data classification is required.
The candidate should be a team player willing to establish strong working relationships across the business.
Willingness to share knowledge with co-workers and assist them in understanding technical and business topics is essential.
The candidate must be willing to learn new tools and technologies as needed.
A working knowledge of information systems security standards and practices, including access control, system hardening, system auditing, log file monitoring, security policies, and incident handling, is required.
Experience with Security Information and Event Management (SIEM) is necessary.
Familiarity with detection and response tools such as Network Behavior Anomaly Detection, Data Loss Prevention, Email Gateway services, Sandboxing, DDoS Mitigation, WAF, Forward/Reverse Proxies, and DNS Security is required.
Demonstrated hands-on security knowledge of platforms such as Windows, Apple IOS, and Linux is necessary.
A working knowledge of networking protocols, web technologies, and cloud computing is required.
The ability to interpret information security data and processes to identify potential Indicators of Compromise (IoC) is essential.
Candidates must be able to quickly understand complicated data flows to identify and validate security requirements.
The ability to work effectively, independently, and without supervision is required.
Clear communication of Information Security matters to executives, auditors, end-users, and engineers using appropriate language, examples, and tone is necessary.
Hands-on experience implementing and supporting Palo Alto firewalls is required.
One or more advanced professional security certifications such as CISSP, CASP+, GISP, or SecurityX (or requisite experience to attain within 12 months) is necessary, with Palo Alto Certifications being a plus.
Benefits:
Cologix offers a competitive benefits package for full-time employees, which includes medical, dental, and vision insurance.
Flexible spending account options are available.
Employees receive non-accrued paid time off (PTO) and company-paid holidays.
A 401k Retirement Plan is provided.
Short- and long-term disability benefits are included.
Employees have access to an Employee Discount Marketplace.
An Employee Recognition Platform is part of the benefits offered.
Individual compensation will be commensurate with the candidate's experience, and the position is eligible for an annual bonus.
The salary range for this position is $110,000 - $130,000 USD.