Insight Global logo

Sr. Security Engineer

Insight Global

Schiller Park, ILJobNo compensation foundTracked 3w agoSeen in employer's feed 4 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Schiller Park, IL
Work Authorization
Not specified

Requirements

Credentials this posting asks for.

Relevant Security Certifications

Job overview

Insight Global is hiring a Sr. Security Engineer. The Sr. Security Engineer supports Encore’s security operations by monitoring alerts, investigating incidents, and maintaining security platforms. Working with engineers and teams, they help detect threats, respond to events, and improve controls to protect confidentiality, integrity, and availability of systems across the organization.

Key focus areas include Monitor security alerts and network traffic to identify potential incidents, Perform triage and initial investigation of security events and suspicious activity, and Execute incident response activities according to documented playbooks.

Important skills include DNS Security, Endpoint Detection And Response, Phishing Analysis, Email Security, DLP, and Security Awareness Training.

Skills & qualifications

RequiredNice to have

Skills

DNS SecurityEndpoint Detection and ResponsePhishing AnalysisEmail SecurityDLPSecurity Awareness TrainingIdentity ProtectionCloud SecuritySecurity OperationsBlue Team TacticsIncident Response TacticsIDS/IPSFirewallsProxiesSIEMEDRCommunicationAnalytical SkillsRegulatory ComplianceRisk Management FrameworksLogical Thinking

Qualifications

1-3 Years General IT Experience1-3 Years Incident Response ExperienceRelevant Security Certifications

Full job description

Job Description

The Security Team is responsible for securing Encore’s infrastructure to ensure the confidentiality, integrity, and availability of systems and resources. The Security Operations Engineer works to prevent, detect, and respond to security events while also supporting the operation, maintenance, and continuous improvement of Encore’s security platforms and controls.

This role works closely with systems engineers, network engineers, application teams, and senior security engineers to maintain Encore’s global security posture. The Security Operations Engineer I monitors emerging threats, investigates security events, supports security tool deployments and enhancements, and coordinates with internal teams to reduce risk and improve resilience.

Key Job Responsibilities

Security Monitoring and Detection

  • Monitor security alerts, network traffic, and user risk/activity to identify and respond to potential security incidents.

  • Monitor data flows and user activities to detect and help prevent potential data loss.

  • Perform triage and initial investigation of security events and suspicious activity.

  • Identify false positives, tune detections under guidance, and recommend improvements.

Security Incident Management

  • Execute incident response activities according to documented playbooks and procedures.

  • Document incidents, findings, root causes, and remediation actions.

  • Investigate security events, categorize incidents, and escalate critical or complex issues as appropriate.

  • Assist with root cause analysis and participate in post-incident reviews.

  • Support containment, eradication, and recovery efforts during incidents.

Security Platform Operations

  • Support the operation, monitoring, and health of security platforms including SIEM, EDR/MDR, email security, DNS security, identity protection, and DLP.

  • Assist with SIEM onboarding, log parsing, tuning, and alert optimization.

  • Assist with configuration, testing, and deployment of new security tools and capabilities.

  • Participate in security platform upgrades, changes, and maintenance activities.

  • Follow change management processes for security system updates and enhancements.

  • Assist in troubleshooting security product issues and integration failures.

Reporting and Communication

  • Generate clear and concise incident reports, findings, and analysis summaries.

  • Communicate security risks, incidents, and recommended actions to stakeholders as appropriate.

  • Collaborate with cross-functional teams to align security operations with organizational objectives.

  • Contribute to documentation, runbooks, playbooks, and operational procedures.

  • Perform other duties as assigned.

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to [email protected] learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.

Skills and Requirements

  • 1-3 years of general IT experience (help desk or desktop support) .

  • 1-3 years of incident response experience.

  • 1-3 years of experience with: DNS security, Endpoint Detection and Response, Phishing Analysis, Email Security, Data Loss Prevention, Security Awareness Training, Identity Protection, Cloud Security.

  • Proficient in security operations, understanding of Blue Team and incident response tactics.

  • Familiarity with security technologies and tools: including IDS/IPS, firewalls, proxies, SIEM, EDR.

  • Outstanding communication and analytical skills.

  • Understanding of regulatory compliance and risk management frameworks.

  • Logical thinking ability to translate security requirements into precise plans to mitigate risk.

  • Relevant security certifications.

You've read the whole posting — now see how you match it.