Cox Enterprises Logo

Cox Enterprises

Lead Cybersecurity Engineer

Posted 18 Hours Ago
Be an Early Applicant
Hybrid
Atlanta, GA
Senior level
Hybrid
Atlanta, GA
Senior level
As a Cybersecurity Lead Engineer, you'll manage SOC operations, lead incident response, conduct forensic analyses, enhance security policies, and mentor juniors.
The summary above was generated by AI

Join our Security Operations Center as a Cybersecurity Lead Engineer , where you'll be the technical expert driving our incident response efforts from escalation to resolution. This role reports directly to the Manager, Security Operations Center. You'll take proactive actions based on exposure, provide strategic recommendations to leadership, and continuously enhance our standard operating procedures and security tools.
Ideal candidates will showcase a strong blend of business acumen, technological expertise, and security proficiency. This is a unique opportunity to safeguard national critical infrastructure while working for a leading telecommunications company.
Primary Responsibilities:

  • Oversee and manage daily SOC operations, ensuring priorities and quality objectives are consistently met.
  • Lead incident triage and response efforts, reviewing and addressing escalated security events from Tier I/II analysts.
  • Direct technical activities across all phases of the incident response process: detection, assessment, containment, eradication, and recovery.
  • Conduct forensic analysis on compromised systems and coordinate with third-party resources as needed.
  • Perform in-depth incident analysis by correlating data from multiple sources to identify root causes and impacts.
  • Document and communicate findings, producing comprehensive after-action reports for the security team.
  • Develop and execute threat hunting strategies across the organization to proactively identify and mitigate threats.
  • Recommend and implement improvements to enhance the effectiveness and efficiency of threat intelligence, incident response, and scalability.
  • Lead technical incident response efforts, ensuring clear and active communication among stakeholders.
  • Collaborate with engineering teams to optimize enterprise monitoring platform configurations for effective threat detection and response, aligning with security policies and organizational goals.
  • Drive continuous evaluation and integration of monitoring platform configurations to enhance SOC capabilities and support efficient operations.
  • Partner with Security Engineering teams to enhance features and capabilities within existing security tools.
  • Execute projects under the guidance of Cyber Defense Leadership.
  • Train and mentor junior analysts, fostering their professional growth and development.
  • Develop, implement, and mature SOC policies and procedures to ensure robust security operations.
  • Stay informed on emerging threats and technologies, continuously adapting SOC strategies to address evolving security challenges.
  • Perform additional tasks and duties as directed by the CSOC Manager.


Minimum Requirements:

  • Bachelor's degree in a related discipline and 6 years' experience in a related field. The right candidate could also have a different combination, such as a master's degree and 4 years' experience; or 18 years' experience in a related field in lieu of degree.
  • 6+ years of technical experience in the information/cyber security field.
  • 2+ years of direct experience in an Incident Response role in large enterprise environments.
  • Experience in the application of Incident Response methodologies.
  • Strong knowledge and experience with the Windows and Linux operating systems.
  • Working knowledge of cloud technologies such as Amazon, Azure, and Google.
  • Experience using Python, PowerShell or equivalent automation and enrichment technologies.
  • Experience with Microsoft Graph API and KQL.
  • Strong knowledge of network protocols, web servers, authentication mechanisms, anti-virus, and server applications.
  • Ability to execute under pressure.
  • Ability to perform independent analysis, distill relevant findings and root cause.
  • Ability to communicate complex ideas clearly and effectively using written and verbal communication.


Preferred:

  • Cloud technology experience and associated incident response techniques.
  • Ability to perform forensics on Windows endpoints.
  • Experience with endpoint security agents (Microsoft Defender, CrowdStrike etc.).
  • Experience with threat hunting in cloud environments. Azure, AWS, GPC.
  • Experience with Fortinet, Palo and Juniper firewalls.
  • Experience with network forensics and associated toolsets, (Suricata, WireShark, PCAP, tcpdump, etc.) and analysis techniques.
  • Experience automating response operations through SOAR, Logic Apps, Defender Live Response or similar technologies.
  • Industry certification such as GCIH, CCIA, GIAC, CISSP, or CISM.


USD 119,600.00 - 199,400.00 per year
Compensation:
Compensation includes a base salary of $119,600.00 - $199,400.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.
Benefits:
The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave.
About Cox Communications
Cox Communications is the largest private telecom company in America, serving six million homes and businesses. That's a lot, but we also proudly serve our employees. Our benefits and our award-winning culture are just two of the things that make Cox a coveted place to work. If you're interested in bringing people closer through broadband, smart home tech and more, join Cox Communications today!
About Cox
Cox empowers employees to build a better future and has been doing so for over 120 years. With exciting investments and innovations across transportation, communications, cleantech and healthcare, our family of businesses - which includes Cox Automotive and Cox Communications - is forging a better future for us all. Ready to make your mark? Join us today!
Benefits of working at Cox may include health care insurance (medical, dental, vision), retirement planning (401(k)), and paid days off (sick leave, parental leave, flexible vacation/wellness days, and/or PTO). For more details on what benefits you may be offered, visit our benefits page .
Cox is an Equal Employment Opportunity employer - All qualified applicants/employees will receive consideration for employment without regard to that individual's age, race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender, gender identity, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law.
Statement to ALL Third-Party Agencies and Similar Organizations: Cox accepts resumes only from agencies with which we formally engage their services. Please do not forward resumes to our applicant tracking system, Cox employees, Cox hiring manager, or send to any Cox facility. Cox is not responsible for any fees or charges associated with unsolicited resumes.

Top Skills

Amazon
Azure
Google
Kql
Linux
Microsoft Graph Api
Powershell
Python
Windows

Similar Jobs at Cox Enterprises

17 Days Ago
Hybrid
Atlanta, GA, USA
Senior level
Senior level
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
Lead the design and maintenance of advanced cybersecurity detection capabilities, enhance incident response processes, and collaborate with teams to protect against threats.
Top Skills: BigQueryEdrGoNdrPythonS3SIEMSnowflakeSoarSplSplunkSQL
19 Days Ago
Hybrid
Atlanta, GA, USA
Senior level
Senior level
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
Lead the development of security tools, mentor junior developers, collaborate on security enhancements, respond to incidents, and research emerging threats.
Top Skills: AWSAzureBurpsuiteC#FortifyGCPGithub ActionsGoJavaNode.jsPythonTerraformTypescriptVeracodeWiz
21 Days Ago
Hybrid
Atlanta, GA, USA
Senior level
Senior level
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
The Lead Cybersecurity Engineer will develop a platform for continuous monitoring of critical cyber controls, lead data analytics and visualization efforts, and mentor team members.
Top Skills: GitPower BIPythonSnowflakeSQL

What you need to know about the Sydney Tech Scene

From opera to comedy shows, the Sydney Opera House hosts more than 1,600 performances a year, yet its entertainment sector isn't the only one taking center stage. The city's tech sector has earned a reputation as one of the fastest-growing in the region. More specifically, its IT sector stands out as the country's third-largest, growing at twice the rate of overall employment in the past decade as businesses continue to digitize their operations to stay competitive.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account