Cybersecurity Engineer
We are seeking an experienced *Cybersecurity Engineer* with strong hands-on expertise in *vulnerability management, Microsoft security technologies, Azure Security, endpoint security, and security operations*. The ideal candidate will be responsible for identifying, assessing, remediating, and monitoring security vulnerabilities across enterprise workstations, servers, cloud environments, and endpoints.
Key Responsibilities
* Manage enterprise vulnerability assessment and remediation using *Rapid7 InsightVM / Insight Vulnerability Management*.
* Monitor and investigate security alerts using the *Microsoft Security Portal and Microsoft Defender* suite.
* Implement and maintain security controls across *Microsoft Azure* environments.
* Perform *workstation and server patching*, vulnerability remediation, configuration management, and security hardening.
* Analyze and remediate findings from *penetration tests, vulnerability assessments, security audits, and compliance assessments*.
* Support day-to-day *SOC and security operations*, including security monitoring, investigation, incident response, and remediation.
* Work with *PAM (Privileged Access Management)* and *PEM (Privileged Endpoint Management)* solutions to secure privileged accounts and endpoints.
* Implement and support *DLP (Data Loss Prevention)* and endpoint security controls.
* Collaborate with infrastructure, cloud, application, and IT operations teams to identify and resolve security vulnerabilities.
* Track vulnerability remediation activities, maintain security dashboards and reports, and provide regular remediation status updates.
* Investigate security incidents and coordinate remediation activities with relevant technical teams.
* Develop and maintain security documentation, procedures, remediation plans, and operational runbooks.
* Assist with improving security posture through continuous vulnerability assessment, risk analysis, and security hardening initiatives.
Required Skills & Experience
* Hands-on experience with *Rapid7 InsightVM / Insight Vulnerability Management*.
* Strong experience with *Microsoft Defender and Microsoft Security Portal*.
* Strong knowledge of *Microsoft Azure Security* and cloud security concepts.
* Experience with *vulnerability management, patch management, and security remediation*.
* Experience addressing findings from *penetration testing, vulnerability assessments, and security audits*.
* Understanding of *SOC operations, security monitoring, incident investigation, and incident remediation*.
* Experience with *PAM and/or Privileged Endpoint Management (PEM)* technologies.
* Knowledge of *Data Loss Prevention (DLP)* and endpoint security solutions.
* Strong understanding of *Windows servers, workstations, endpoint security, and security hardening*.
* Ability to work with infrastructure and application teams to resolve security issues.
* Strong analytical, troubleshooting, documentation, and communication skills.
Preferred Qualifications
* Experience with *Microsoft Sentinel* or other SIEM platforms.
* Knowledge of *Azure identity and access management, Microsoft Entra ID, Defender for Cloud, and Defender for Endpoint*.
* Knowledge of security frameworks such as *NIST, CIS Controls, or ISO 27001*.
* Relevant cybersecurity certifications such as *Security+, CySA+, CISSP, CEH, or Microsoft Security certifications*.
Role Focus
*Vulnerability Management | Rapid7 InsightVM | Microsoft Defender | Azure Security | Patch Management | Security Hardening | SOC Operations | PAM/PEM | DLP | Endpoint Security | Incident Remediation*
Work Location: Hybrid remote in Andes, NY 13731