Lead Security Operations Engineer

Chicago, IL, United States

Job Description


We offer a flexible working policy that supports the health and well-being of our iManage employees. As an organization, we value collaborating and learning from our peers in person, while providing the necessary flexibility for our employees to have a meaningful work-life balance. Please reach out to learn more.

Being a Lead Security Operations Engineer at iManage Means\xe2\x80\xa6

You will primarily be responsible for the design, implementation, and routine monitoring of all security systems in a hybrid, private & public, cloud operation, as well as with the integrations between that environment and other security systems including enterprise SIEM, EDR, and vulnerability management. This group of engineers are the ones that bring our security services to bear on the challenges encountered by our customer facing cloud products, services, and teams. You will continue to build, as well as support, a modern SaaS security stack that includes Windows, Linux, Terraform, Ansible, Git, Splunk, CRIBL, Qualys, Defender, O365, AWS, Azure and many other technologies.

Here is what one of our leaders, Senior Manager of Cloud Security Operations ( ), has to say about the role: \xe2\x80\x9cAs the lead, you will be tasked with organizing and tracking the work & resources needed to achieve the assigned objectives, act as the main technical point of contact for systems integrations, and implement the solutions developed. You will be able to leverage, and grow, your technical skills while also learning and building leadership skills. The role is designed to allow technical knowledge & abilities to flourish and not be burdened with heavy amounts of administrative overhead. You will have direct input into team staffing, assist with performance reviews and help maintain project work schedules, but not have the managerial overhead associated with those.\xe2\x80\x9d

iM Responsible For\xe2\x80\xa6

  • Designing and implementing automated security processes and controls to increase operational effectiveness and to reduce manual processes.
  • Inspecting issues as they arise in automation, version control, and overall security and suggesting necessary steps to solve those quickly.
  • Driving integrations with infrastructure and automation orchestration platforms through proven architectural patterns (e.g. APIs).
  • Managing version control with security best practices in mind such as scanning repos for secrets and storing secrets in vaults.
  • Contributing to increasing the maturity of automation and systems development life cycle.
  • Creating and reviewing scripted inputs for SIEM data ingestion.
  • Interfacing with infrastructure and other teams throughout the organization with the objective to provide high quality and low friction, security operations services.
  • Participating with product & service Agile/Scrum teams, leading our efforts in those.
  • Preparing and documenting standard operating procedures.
  • Acting as part of the incident response team providing troubleshooting, analysis and forensics when needed.
  • Continuously monitoring threat and vulnerability sources and analyzing the data for potential risks to the overall safe operations of the organization.
  • Using adversarial threat-based tactics, techniques, and procedures to identify potential new SIEM data sources, build detection logic, and formulate responses.
iM Qualified Because I Have\xe2\x80\xa6
  • 5+ years of experience in cloud security or related area.
  • Proven experience designing and building security controls for private and public cloud environments.
  • Good understanding of, and experience with, DevOps, SRE and SDLC methods, tooling, processes, procedures, and the security needs around them.
  • Inspected issues in automation, version control, and overall security and suggested necessary steps to solve those quickly.
  • Practical experience managing and securing containers using Docker, Kubernetes and Mesos as well as third-party container security products such as Sysdig or Twistlock.
  • Hands on automation experience using Ansible, Puppet, Chef and/or Salt.
  • An understanding of logging solutions such as Elastic Logstash, Apache Kafka & syslog.
  • Splunk Enterprise experience in either platform administration or analyst roles as well as a cursory understanding of Splunk Enterprise Security.
  • In depth, and hands on, *NIX experience including CentOS/RedHat, Debian/Ubuntu and BSD including kernel level knowledge & experience.
  • Firm understanding of PKI & encryption technology, especially SSL/TLS.
  • Experience with federated authentication services including SAML, OAuth and/or OpenID.
  • Software Defined Network experience (Layers 2 & 3 including routing protocols).
Bonus Points If I Have...
  • Direct experience deploying Splunk Enterprise in a public cloud environment.
  • Knowledge of MITRE ATT&CK and Cyber Kill Chain frameworks.
  • Experience in firewall administration, Palo Alto & Panorama preferred, including functions such as firewall ACL\xe2\x80\x99s, DNS block lists and VPN.
  • Exposure to EDR solutions such as CrowdStrike, Carbon Black or TANIUM.
  • One or more of the following certifications: AWS or Azure certifications, Docker certifications, ISC2 Cloud Security Certification (CCSP), or SANS GIAC certifications.
Don\'t meet every qualification listed above? Studies show that women and people of color are less likely to apply to jobs unless they meet all qualifications. At iManage, we are committed to building a diverse and inclusive environment, and encourage everyone to show up as their full authentic selves. We welcome those that come with a growth mindset and a hunger for learning; so, if you are excited about this role but your past experience doesn\'t align perfectly with every qualification we encourage you to apply anyways!

iM Getting To\xe2\x80\xa6
  • Join a supportive, experienced team with an inclusive, encouraging, and vibrant culture.
  • Have flexible work hours that allow me to balance my \xe2\x80\x98me time\xe2\x80\x99 with my work commitments.
  • Collaborate in a modern open plan workspace, with a gaming area, free snacks, drinks and regular social events.
  • Focus on impactful work, solving complex, real challenges utilizing the latest technologies and protocols.
  • Own my career path with our internal development framework. Ask us more about this!
  • Learn new skills and earn certifications with access to unlimited courses in LinkedIn Learning.
  • Join an innovative, industry leading SaaS company that is continuing to grow & scale!
iManage Is Supporting Me By...
  • Creating an inclusive environment where I can help shape the culture not just by fitting in, but by adding to it.
  • Providing a market competitive salary that is applied through a consistent process, equitable for all our employees, and regularly reviewed based on industry data.
  • Rewarding me with an annual performance-based bonus.
  • Offering comprehensive Health/Vision/Dental/Life Insurance, and a 401k Retirement Savings Plan with a company match up to 4%.
  • Giving access to HealthJoy, a healthcare concierge service, to help me maximize my health benefits.
  • Granting enhanced leave for expecting parents; 20 weeks 100% paid for primary leave, and 10 weeks 100% paid for secondary leave.
  • Providing me with a flexible time off policy to take the time off that I need. Be it for vacation, volunteering, celebrating holidays, spending time with family, or simply taking time to recharge and reset.
  • Caring for my mental health and well-being with multiple company wellness days and free access to the Healthy Minds app for mindfulness, meditation and more.
About iManage\xe2\x80\xa6

iManage is dedicated to Making Knowledge WorkTM. Over one million professionals across 65+ countries rely on our intelligent, cloud-enabled, secure knowledge work platform to uncover and activate the knowledge that exists inside their business content and communications.

We are continuously innovating to solve the most complex professional challenges and enable better business outcomes; Our work is not always easy but it is ambitious and rewarding.

So we\xe2\x80\x99re looking for people who love a challenge. People who are happiest when they\xe2\x80\x99re solving problems and collaborating with the industry\xe2\x80\x99s best and brightest. That\xe2\x80\x99s the iManage way. It\xe2\x80\x99s how we do things that might appear impossible. How we develop our employees\xe2\x80\x99 strengths and unlock their potential. How we find meaning in everything we do.

Whoever you are, whatever you do, however you work. Make it mean something at iManage.

iManage provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

Learn more at:

Please see our privacy statement for more information on how we handle your personal data:

#LI-Hybrid

#LI-SB1

Powered by JazzHR

iManage

Beware of fraud agents! do not pay money to get a job

MNCJobz.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.


Related Jobs

Job Detail

  • Job Id
    JD4317684
  • Industry
    Not mentioned
  • Total Positions
    1
  • Job Type:
    Full Time
  • Salary:
    Not mentioned
  • Employment Status
    Permanent
  • Job Location
    Chicago, IL, United States
  • Education
    Not mentioned