Required Knowledge, Skills, and Abilities: Knowledge of securing AWS, Azure, or similar cloud environmentsExcellent documentation practicesPerform vulnerability management, coordinating with other teams to resolve findingsKnowledge of compliance frameworks: ISO 27001, NIST, HIPAA, HITRUSTUnderstanding of ITIL, Zero Trust, HITRUST, and ISO 27000 series frameworksExperience researching, building, and implementing defensive security systems that are used against internal and external attack vectorsExperience designing and building out application and network security monitoring to aid in detection or forensic investigationsBackground in intrusion detection, security investigations, and incident responseDeep understanding of the MITRE ATT&CK Framework and associated threat actor techniquesExperience "threat hunting," i.e. using threat intel to proactively and iteratively investigate potential risks and finding suspicious behavior in the environmentExperience investigating data for anomalies in order to identify suspicious behaviorExperience with Identity and Access Management (IAM), provisioning user accounts and accessSolid understanding of SIEM tools (LogRhythm, Splunk, etc.). This role may require travel of up to 25%.Responsibilities include, but are not limited to: Design and implement robust security architecturesAct as a mentor and escalation point to other members of the teamIterate security posture to better protect against attacks and detect new vectorsParticipate in efforts to mitigate and investigate security incidentsEvaluate and test new vendor and in-house network initiatives for security issuesEvangelize security practices through cross-functional work with engineering teams throughout the enterpriseSafeguard the enterprise through active operation and defense of critical infrastructureOther duties as assigned.