Security Engineer - Remediation
Thrive · Mabalacat, Pampanga, Philippines
IT Services and IT Consulting · 1,001-5,000 employees
About the role
The Security Engineer will assess vulnerabilities identified through security services and implement effective remediation strategies. They are also responsible for documenting remediation efforts and maintaining clear communication with clients regarding security outcomes.
What they look for
Requirements
Candidates must have a solid understanding of cybersecurity threats, vulnerability management, and system hardening techniques. Proficiency in GPO and Intune configurations, along with experience in hybrid infrastructure environments, is required.
Full description
About Us: Thrive is a rapidly growing technology solutions provider focusing on Cloud, Cyber Security, Networking, Disaster Recovery, and Managed Services. Our corporate culture, engineering talent, customer-centric approach, and focus on next-generation services help us stand out amongst our peers. We are committed to developing valuable skills that ignite passion and lead to a fulfilling career. If you're attracted to a "work hard, play hard" environment and seek the guidance and training necessary to build a lucrative career, welcome to Thrive!
Position Overview: Thrive is seeking a skilled Security Engineer for a Remediation role to join our team. This role is dedicated to addressing vulnerabilities and attack vectors identified through Thrive's Vulnerability Management and Pentesting services. The Security Engineer – Remediation will focus on remediation efforts for vulnerabilities not covered under existing Thrive services, such as those not included in patching or on assets that are not fully managed by Thrive.
Primary Responsibilities:
- Collaborate closely with the Infosec Ops Team to thoroughly assess vulnerabilities and attack vectors identified through Thrive's services and implement effective remediation strategies into the existing security framework.
- Document and maintain detailed records of remediation efforts, including methods used, outcomes, and any follow-up actions required.
- Provide clear and concise communication to clients regarding remediation efforts and outcomes, ensuring transparency and understanding.
- Stay informed about the latest security threats and remediation techniques to maintain Thrive's leading edge in cybersecurity services.
- Ensure all remediation efforts align with industry standards and best practices to uphold high security standards.
Qualifications:
- Solid understanding of cybersecurity threats, vulnerability management, and remediation techniques.
- Ability to analyze complex security issues and develop effective remediation strategies.
- Excellent written and verbal communication skills, capable of articulating technical concepts to non-technical audiences.
- Proven ability to work effectively within a team and collaborate with stakeholders to achieve security goals.
- Demonstrates a strong passion for cybersecurity and a commitment to maintaining high security standards.
Required Skills:
- Experience in vulnerability discovery, analysis, and remediation.
- Experience in full lifecycle of GPOs and Intune Configurations for system hardening and remediation. Includes scoping, testing, deploying and decommissioning policies.
- Experience with On-Prem, Cloud, and Hybrid infrastructure environments.
- Strong understanding of network protocols, operating systems and management of SSL certificates with a focus on security best practices.
- Familiarity with TCP/IP and application layer protocols (e.g., HTTP, SMTP, DNS).
- Ability to analyze large amounts of data from various sources to solve complex problems.
Preferred Skills:
- Knowledge of common Windows and Linux/Unix system calls and APIs.
- Understanding of Anti-Virus and malware protection techniques.
- Familiarity with programming languages for scripting and automation tasks.
- Knowledge of internal file structures for file formats commonly associated with malware (e.g., OLE, RTF, PDF, EXE).
- Certifications such as Net+, Sec+, Cysa+ or equivalent are strongly recommended.
- Full cycle experience call out might be better "scoping, testing and deploying/decommissioning...".