20054 - Security Engineer III
Location : West Point, GA
CBU : KAGA
Company Overview
Hyundai AutoEver America (HAEA), a subsidiary of Hyundai and Kia Motor Companies, provides premier IT services across North America. We seek a Cyber Security / Network Engineer II to support our network and cybersecurity operations, ensuring a secure and reliable IT environment.
Purpose
The Security Engineer III participates in all aspects of information systems and network security including intrusion detection, incident response, vulnerability assessment, application security and compliance with the corporate information security policy. Primarily be responsible for implementing, operating and improving security technologies including DLP, Antivirus, IPS / IDS, End Point Protection, Database Activity Monitoring, Web Application Firewall and processes.
Essential Functions
- Design, build, test and deploy new security technologies, which include the development of the operational manual and run books
- Provides technical security operations engineering services to support and update existing security systems and works to automate processes related to security implementations, monitoring, and enforcement
- Investigates, recommends, evaluates, deploys and integrates operational security tools and techniques to improve our ability to protect corporate assets and infrastructure
- Participate in technical risk assessments and security exposure analyses of systems, networks and business applications
- Analyze network security elements and overall network security architectural designs to ensure secure and optimal system and network performance and cost effectiveness
- Oversee the installation, configuration and supportive processes of security technologies
- Participate in or lead the Incident Response activities
- Interact with internal and external clients on security operations requirements, identifies security process and develops strategies / solutions to security issues
- Keep fully abreast of trends and changing technologies as they relate to IT and Network Engineering and Information Security fields
- Lead or assist in periodic or ad-hoc security reports that provide relevant situational awareness to our senior stakeholders
- Security Operations / Administration
- Monitor and manage our networks and infrastructure environment for attacks, malicious software and possible intrusions, which includes the follow up of complete remediation of infected systems
- Provide on-call (after hours) support per the established rotational schedule
- Implement changes to our security technologies / infrastructure in accordance with standard and change control policies / procedures
- Evaluate, implement, tune and operate Security Solutions such as IPS, Vulnerability scanning tools, encryption capabilities, etc.
- Monitor and recommend improvements of security technologies and their various reports
- Risk Management / Security Audit / Assessment Support / Ad-hoc support
- Support security audit / assessment related activities and compliance reviews# - Performs other task, duties and projects as assigned
- Provide Ad-hoc support as required.
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.
Job Requirements
Bachelor's Degree in Computer Science, Information Systems or related field, or equivalent experience7 years of IT relevant experience or equivalent combination of experience plus at least 3 years of experience performing Security Engineering / Planning / OperationsExperience in medium to complex computing environments, with advanced knowledge in security technologies and servicesHands-on experience with at least two or more of the following Enterprise Security TechnologiesNetwork Intrusion Prevention / DetectionVirtual Private Networks; SSL, IPSec and Site-to-SiteEnterprise Class Stateful Inspection FirewallsNetwork Access Controls in context to Identity managementWindows Server OS & Desktop OSNetwork Packet InspectionDirectory Services including LDAP, AD and Secure Authentication TechnologiesExperience in implementing Information Security technologies and / or processes required.Experience in defining Information Security strategies and frameworksExperience integrating security technologies into corporate operations frameworks.Ability to communicate effectively with client staff at all levels, from technical to executiveMulti-task oriented in a team environment ## Demonstrated ability to pay close attention to detailKnowledge of Information Security risk assessment methodologies and standardsExperience developing technical documentation, including reports, proposals, statements of work, and whitepapersAbility to work independently, undertaking and completing project tasks on schedule with minimal supervisionCertifications
CISSP, CISSP-ISSAP, SANS, or other professional certification applicable to security engineering are preferred.Salary Range - $79,000 - $112,959