Security Operations Engineer
Remote - USA, United States
Full Time Senior-level / Expert USD 110K - 135K
- Remote-first
- Website
- @b_binsurance 𝕏
- Search
Brown & Brown Insurance
We craft insurance differently by using our experience, carrier relationships, and principled customer focus to deliver exceptional service and solutions.Built on meritocracy, our unique company culture rewards self-starters and those who are committed to doing what is best for our customers.
Brown & Brown is seeking a Security Operations Engineer to join our growing team.
The Security Operations Engineer will develop, implement and enhance a variety of security controls and tools to help defend the organization against cybersecurity threats. You will help identify cybersecurity risks in the environment and provide solutions for mitigation. You will work with different parts of the organization to help close security gaps. The ideal candidate will have 3-5+ years of security operations experience, with 3+ of those years being cybersecurity engineering experience.
How You Will Contribute:
Provide hands on technical expertise across various security technologies including Endpoint Detection & Response (EDR) tools, Intrusion Detection/Prevention Systems (IDS/IPS), Anti-phishing tools, Data Loss Prevention (DLP) tools, and XDR/SIEM infrastructure
Configure, troubleshoot, and test detection, prevention and response tools to improve performance
Create and update security tool detection rules to detect suspicious activity across endpoints, networks, and users
Create and update data loss prevention and detection rules and policies to properly classify and protect sensitive data or identify suspicious behaviors
Validate security controls are set up properly in the environment and provide resolution guidance where controls are not meeting standards
Review, improve and maintain security logging to XDR/SIEM, based on needs of the cybersecurity program
As part of the Incident Response process, serve as the subject matter expert to answer technical questions around security incidents and ensure all security incidents are tracked and remediated properly
Work cross functionally with various teams to provide security expertise in areas of Security Automation and Response platforms, SaaS, IaaS, PaaS and cloud environments
Maintain an understanding of emerging security threats and advanced threat actor capabilities
Integrate threat intelligence feeds and sources with organization’s security monitoring infrastructure
Select, develop, and manage the implementation of systems, tools, and processes that will keep the organization at the leading edge of security while proactively mitigating risks to the organization
Provide technical support to information security projects by researching, documenting, and implementing security solutions
Assist in risk assessment and action planning to increase the security posture of the organization
Update security documentation in accordance with organization’s cybersecurity policies and procedures
Licenses and Certifications:
At least one active security certification preferred: GCIH, GCIA, CISSP, CEH or related
Skills & Experience to Be Successful:
B.S. in Information Security, Computer Science, Computer Engineering or similar technical program or equivalent experience
3-5+ years in a hands-on technical role in information security supporting a large organization
Working knowledge of a wide range of current security technologies such as firewalls, proxies, network and host-based intrusion prevention, DLP, vulnerability assessment tools, network protocols, architecture, etc.
Strong understanding of security operations concepts such as perimeter defense, BYOD management, data loss protection, insider threat, kill-chain analysis, risk assessment and security metrics
Familiarity with attack paths, threat vectors, and attacker TTPs
Working knowledge of Information Security best practices and common security frameworks
Experience with securing Microsoft Entra ID/Hybrid environments (Preferred)
Development/scripting experience: Python and/or PowerShell (Preferred)
Ability to self-organize, prioritize activities independently, create documentation and reporting
Pay Range
110,000 - 135,000 AnnualThe pay range provided above is made in good faith and based on our lowest and highest annual salary or hourly rate paid for the role and takes into account years of experience required, geography, and/or budget for the role.
Teammate Benefits & Total Well-Being
We go beyond standard benefits, focusing on the total well-being of our teammates, including:
- Health Benefits: Medical/Rx, Dental, Vision, Life Insurance, Disability Insurance
- Financial Benefits: ESPP; 401k; Student Loan Assistance; Tuition Reimbursement
- Mental Health & Wellness: Free Mental Health & Enhanced Advocacy Services
- Beyond Benefits: Paid Time Off, Holidays, Preferred Partner Discounts and more.
Not reflective of all benefits. Enrollment waiting periods or eligibility criteria may apply to certain benefits. Benefit details and offerings may vary for subsidiary entities or in specific geographic locations.
The Power To Be Yourself
As an Equal Opportunity Employer, we are committed to fostering an inclusive environment comprised of people from all backgrounds, with a variety of experiences and perspectives, guided by our Diversity, Inclusion & Belonging (DIB) motto, “The Power to Be Yourself”.
Tags: Automation CEH CISSP Cloud Computer Science EDR Firewalls GCIA GCIH IaaS IDS Incident response Intrusion detection Intrusion prevention IPS Monitoring PaaS PowerShell Python Risk assessment SaaS Scripting SIEM Threat intelligence TTPs XDR
Perks/benefits: Career development Health care Insurance Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.