Detection Engineer
Remote - Nebraska, United States
Full Time Mid-level / Intermediate Clearance required USD 85K - 110K
Nelnet
Learn more about Nelnet businesses. Explore jobs and internships in a variety of fields and locations to serve areas across the globe.Nelnet is a diversified and innovative company committed to enriching lives through the power of service as a student loan servicer, professional services company, consumer loan originator and servicer, payments processor, renewable energy solutions, and K-12 and higher education expert. For over 40 years, Nelnet has been serving its customers, associates, and communities.
The perks of working at Nelnet go beyond our benefits package. When you join the Nelnet team, you're part of a community invested in the success of each individual. That support comes through in our work, as we are united by our mission of creating opportunities for people where they live, learn, and work.
Nelnet is a student loan servicer that's grown into a fiber internet pioneer, real estate investor, and software provider. But that's just the beginning. With 6,500 associates and growing, we take our business wherever superior customer experiences and ingenuity are needed.The perks of working at Nelnet go beyond our benefits package. When you join the Nelnet team, your part of a community invested in the success of everyone. That support comes through in our work, as we are united by our mission of creating opportunities for people where they live, learn, and work.
Nelnet’s Cybersecurity Log Operations Engineers operate as a shared service across multiple business lines representing a hybridized attack surface covering on premise and cloud-based elements. It is imperative that our engineers understand the business needs and be able to coordinate those with the organization’s security and operational goals.
This position requires work in support of the Company’s contract with the United States Department of Education (“ED”). As such, the United States Government requires that any applicant for this position must complete the United States Government security clearance. Effective June 1, 2018, ED has informed Nelnet that security clearance applications for foreign nationals are not being accepted or processed. Considering this direction from ED, Nelnet will be unable to hire applicants without United States citizenship for such positions.
JOB RESPONSIBILITIES:
• Monitors and works with logs in Google SecOps and Google Cloud Observability.
• Works closely with system owners to manage alert and security use case creation as well as operational alerting in the Cloud Observability projects.
• Collaborates on IT projects to ensure that security issues are addressed throughout the organization.
• Tunes alerts and use cases over the Use Case Management Life Cycle.
• Tunes alerts and alerting in GCP Projects utilizing Big Query, Log Analytics or Log Explorer tools.
• Participates in department-wide change control and IT governance processes, on behalf of the Nelnet Cyber Security Group (CSG).
• Stays up to date on the latest global vulnerability landscape and published compliance guidelines.
• Responds to audit findings, directing remediation, tracking progress, providing status reporting, and creating/maintaining evidence documentation.
• Develops and maintains documentation for security related systems.
EDUCATION:
Bachelor’s degree in cybersecurity, computer science, systems administration, information systems, or related areas. Or relevant work experience.
EXPERIENCE:
2+ years IT operations experience working with SIEM products and threat detection.
2+ years IT infrastructure experience preferably in a cloud environment.
- SIEM: Google SecOps experience preferred.
- SOAR: Google SecOps experience preferred.
Threat detection mechanisms.
Alarming/Alerting mechanisms.
Hands-on experience with SIEM, SOAR, and Database Monitoring products.
Experience with PowerShell, SQL, Python, BASH, Chef or Ansible a plus.
Desired Qualifications:
- Any relevant Cybersecurity certifications, such as: Security+, SSCP, CISSP, GSEC, GCIA, GCI, CEH, SEC 511, SEC 555 etc.
- Any relevant IT certifications specific to the Google, Amazon or Microsoft cloud ecosystems.
- Enterprise-level experience with:
- Google SecOps
- Google Cloud Observability
- Sysmon
- Syslog
- Linux
- Atlassian products Jira and Confluence
- ServiceNow, preferably including SNOW security related modules (VR, GRC, etc.)
COMPETENCIES – SKILLS/KNOWLEDGE/ABILITIES:
- Ability to work with a remote team via collaboration tools (Microsoft Teams, E-Mail, and Video Conferences).
- Is a self-starter and can consistently produce outstanding results with minimal supervision.
- Has exceptional troubleshooting skills and is detail-oriented.
- Is flexible and nimble in a fast-paced environment.
- Maintains a positive, customer-centric attitude.
Pay range for this role is $85,000-$110,000 annually, depending on experience.
#LI-CW1
Our benefits package includes medical, dental, vision, HSA and FSA, generous earned time off, 401K/student loan repayment, life insurance & AD&D insurance, employee assistance program, employee stock purchase program, tuition reimbursement, performance-based incentive pay, short- and long-term disability, and a robust wellness program. Click here to learn more about our benefits: LINK.
Nelnet is committed to providing a welcoming and respectful workplace where all associates have the opportunity to succeed. As an Equal Opportunity Employer, we ensure that all qualified applicants are considered for employment. Employment decisions are made without regard to race, color, religion/creed, national origin, gender, sex, marital status, age, disability, use of a guide dog or service animal, sexual orientation, military/veteran status, or any other status protected by federal, state, or local law. We value the unique contributions of every team member and believe that a positive work environment benefits everyone.
Qualified individuals with disabilities who require reasonable accommodations in order to apply or compete for positions at Nelnet may request such accommodations by contacting Corporate Recruiting at 402-486-5725 or corporaterecruiting@nelnet.net.
Nelnet is a Drug Free and Tobacco Free Workplace.
Tags: Analytics Ansible Bash CEH CISSP Clearance Cloud Compliance Computer Science Confluence GCIA GCP Governance GSEC IT infrastructure Jira Linux Monitoring PowerShell Python SecOps Security Clearance SIEM SOAR SQL SSCP Threat detection
Perks/benefits: Career development Conferences Equity / stock options Flex hours Flex vacation Health care Insurance Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.