IT Security Engineer - W2

eTek IT Services, Inc.
Chicago, IL, US
Full-time

Job Description

Job Description

Role : Senior Security Engineer with Enterprises

Location : Chicago IL

Experience : 10+ years

W2 Contract

Required Skills

Experience with security concepts and engineering security vulnerability mitigation solutions in both Windows end user compute and mobile environments.

Broad infrastructure technology concepts around software, hardware, applications, end user interfaces, virtualization, business continuity, PCI compliance, internal auditing, reporting and total cost of ownership.

Solid grasp on security industry standards such as STIG / CIS / NIST

Additional Skills

Job Description

Top 3 skill sets required for this role :

Experience with security concepts and engineering security vulnerability mitigation solutions in both Windows end user compute and mobile environments.

Broad infrastructure technology concepts around software, hardware, applications, end user interfaces, virtualization, business continuity, PCI compliance, internal auditing, reporting and total cost of ownership.

Solid grasp on security industry standards such as STIG / CIS / NIST

Work Schedule : Remote, Hybrid, Onsite : Hybrid

o If hybrid : How many days onsite vs remote : Two days onsite

o What days will be in-office and remote (i.e. Monday, Tuesday, etc.) : First couple of months it will be required for the contractor to be onsite the same days of the week as the other Security Engineers in order to get acclimated and appropriately trained.

Typically, those days fall on Tue Wed or Wed Thu. Also, the locations will be at the Chicago Reservation Center at 11555 W.

Touhy Ave., Chicago, or Willis Tower in downtown Chicago. After the first couple of months, the contractor can work in the office any two days and at either location.

o What shift (if applicable) / Start Time : Shifts are flexible but within reason. Typical shifts are 8a - 5p 9a - 6p with one hour of unpaid lunch.

GENERAL JOB DESCRIPTION

Seeking an experienced senior level endpoint security engineer with Windows, iOS, MacOS, and Android enterprise expertise.

This position requires both technical as well as a non-technical policy-based skillset.

The security engineer will be responsible for the following :

  • Detecting, remediating, and mitigating workstation and mobile security vulnerabilities
  • Conduct extensive testing and supporting of critical applications and operating system updates against security vulnerabilities.
  • Evaluating business needs then performing the following based on those needs :

o Engineering a complete and secure end user experience,

o Coordinating user acceptance testing,

o Documenting and engineering solutions based on discoveries of vulnerabilities,

o Implementation and maintenance of security benchmark standards.

  • Understanding the balance of implementing security standards without production impact.
  • Work closely with various IT teams to mitigate security risks per corporate standards and SLAs.

PRIMARY DUTIES AND RESPONSIBILITIES

Manage a test group of over 1,000 endpoints, representative of all lines of business in the enterprise, to include alpha testing of new patches, application updates, operating systems, etc.

o Scope includes (but not limited to)

Applications : Java, Adobe Reader, Edge Chromium, Chrome, Firefox, WinSCP, Notepad++

Operating Systems / Patching : Windows, iOS, MacOS, and Android updates, and new feature functionality testing.

Hardware vulnerability analysis : Laptops, desktops, tablets, Macs, mobile devices.

o Responsibilities related to above include planning and coordinating application version releases, ongoing meetings, reporting results, troubleshooting, discussions with developers / vendors regarding upgrades, etc.

Prioritization of vulnerability remediations which includes mitigation strategies while simultaneously preventing productivity outages.

  • Candidate will work towards proactively providing an endpoint environment that is sufficiently hardened against vulnerabilities along with assuring that engineering efforts adhere to established corporate policy.
  • Implementation of best practices for hardening an endpoint environment including security framework standards (STIG / NIST / CIS).
  • Proactively detect and analyze system, applications, code, and hardware weaknesses pre-production. Make remediation and mitigation recommendations accordingly.
  • Ability to prepare and participate in corporate risk projects as well as IT audits related to PCI, HIPPA, etc. as necessary.
  • Understanding personal and team roles, contributing to a positive work environment by building solid relationships with team members, proactively seeking guidance, clarification, and feedback.
  • Apply enterprise vision and standards to all projects. Prepare detailed documentation of all engineered work and solutions.

QUALIFICATIONS

Education :

Bachelors, Current industry certifications and / or equivalent experience

Experience :

  • 5+ years of experience providing security engineering of desktop and mobility infrastructure in a large enterprise environment required with aptitude in the following areas : Active Directory, MDM, SCCM, GPOs, Windows 10 11, Kiosks, Virtual, Mobility (iOS, MacOS, Android), Reporting, strong documentation, and analytical skills.
  • Detection, prioritization, and mitigation strategies for CVE vulnerabilities on endpoint systems (including OS, 3rd Party Applications, GPOs, Registry modifications, etc.)
  • Understands and takes quick yet reliable action for zero-day vulnerabilities.
  • Successful track record on implementation of security benchmarks STIG / NIST / CIS settings for an enterprise with minimal user impact.
  • Engineering with focus on the key security concepts of Confidentiality, Integrity, and Availability.
  • Extensive regression testing for enterprise core applications, monthly critical security patches, OS updates, etc.
  • Broad infrastructure technology concepts around software, hardware, applications, end user interfaces, virtualization, business continuity, PCI compliance, internal auditing, reporting and total cost of ownership.

Preferred skills :

  • Qualys / Nessus (or equivalent vulnerability detection systems), Sandboxing technologies (Cisco Malware Analytics), Injection Hunter, Encryption Technologies, CVE database, CrowdStrike, SysTrack, etc.
  • Airline experience is ideal.
  • Some knowledge of application packaging and PowerShell Interpretation is ideal.
  • 30+ days ago
Related jobs
Promoted
eTek IT Services, Inc.
Chicago, Illinois

It is critical that this role be a technical partner to implement established standards and procedures which support the enterprise's managed infrastructure along with ensuring operational stability. Works effectively in a team to establish commonalities with IT peers across the enterprise. Comm...

Promoted
Solving IT
Chicago, Illinois

Lead report creation activities including compromise narratives and detailed technical findings with appropriate risk severity ratings, tactical and strategic recommendations to reduce risk levels, peer review of team’s deliverables. Interface with other information security departments, as well as ...

Promoted
MSDSONLINE dba VelocityEHS
Chicago, Illinois

The IT Security Engineer is a dynamic role responsible for fielding and monitoring network and security-related tickets while also assisting with compliance tasks. The IT Security Engineer has responsibilities where they will work with people on technical and non-technical teams. What are the benefi...

Promoted
1872 Consulting
Chicago, Illinois

The IT Security Engineer will focus on the IAM function of IT Security, identifying, delivering and supporting the technology used to deliver on all IAM initiatives, which is specifically designed to ensure the user identities, accounts, credentials and system access are fully and completely managed...

Solving IT
Chicago, Illinois

Lead report creation activities including compromise narratives and detailed technical findings with appropriate risk severity ratings, tactical and strategic recommendations to reduce risk levels, peer review of team’s deliverables. Interface with other information security departments, as well as ...

Next Step Systems – Recruiters for Information Technology Jobs Top IT Recruiting Firm
Chicago, Illinois

Keywords: Chicago IL Jobs, Network Security Engineer III, Cybersecurity, Network Engineering, Information Security, Cisco, Switches, TCP/IP, MPLS, BGP, VoIP, DHCP, DNS, Wifi, VLANs, Networking, Chicago Recruiters, Information Technology Jobs, IT Jobs, Chicago Recruiting. Essential responsibilities i...

Solving IT
Chicago, Illinois

Lead report creation activities including compromise narratives and detailed technical findings with appropriate risk severity ratings, tactical and strategic recommendations to reduce risk levels, peer review of team’s deliverables. Interface with other information security departments, as well as ...

Meridian IT
Chicago, Illinois

Assist with verifying received hardware inventory, performing initial equipment staging, assisting with physical deployment of switches, creating documentation during onboarding and maintaining it, performing software updates, scripted triaging of tickets;. The Senior Network Engineer will also be r...

Next Step Systems – Recruiters for Information Technology Jobs Top IT Recruiting Firm
Chicago, Illinois
Remote

Keywords: Chicago IL Jobs, Security Network Engineer, TCP/IP, Multicast, Multicasting, BGP, OSPF, OSI Layers, VPN, TCPDump, Wireshark, Netmon, AWS, GPS, Cisco ASA, Palo Alto, Networking, Network Architecture, Remote, Trading, Financial, Work From Home, Chicago Recruiters, Information Technology Jobs...

Promoted
SAIC
Chicago, Illinois

Systems Administrator in Chicago. Responsible for coordination and management of district support personnel including PC Support Technicians and System Administrators. Oversee and ensure the day-to-day operational maintenance and support of systems and direct team. Manage and maintain currently supp...