Cyber Security Engineer II safeguarding systems at MSK, involved with complex technologies in cancer care security. Lead threat investigations and apply technical knowledge for security improvements.
Responsibilities
Assist with or lead threat investigations, incident response, and vulnerability management activities.
Provide rotating on-call support for enterprise security operations and documentation.
Act as a technical SME in incident detection, analysis, and response, leveraging data from Splunk, CrowdStrike Falcon, and Proofpoint TAP to support investigations and remediation.
Develop, tune, and maintain detection content — including SIEM rules, correlation logic, and alert playbooks — to improve fidelity and reduce mean time to detect (MTTD).
Apply deep technical knowledge to secure systems and network architecture across diverse platforms.
Work independently toward defined cybersecurity objectives while maintaining clear communication with stakeholders during active incidents and investigations.
Contribute actively to technical discussions within multidisciplinary engineering teams.
Strengthen solutions through hands-on development, design improvements, and implementation.
Support and execute security projects, enterprise architecture, POCs, and remediation efforts.
Develop and update organizational security policies, standards, and technical guidance.
Requirements
Hands-on experience with secure architecture across OS, cloud, network, database, and application layers.
Proficiency in at least one scripting or programming language (Python, Perl, Shell/PowerShell, C/C++, Assembly).
Experience participating in security incident response, vulnerability remediation, and security operations.
Ability to support enterprise security systems in a rotating on‑call schedule.
Hands-on experience with incident response lifecycle management — including containment, eradication, and recovery — within complex enterprise networks.
Experience with SIEM platforms, EDR tooling, and email security solutions; hands-on experience with Splunk, CrowdStrike Falcon, and Proofpoint is strongly preferred.
Working knowledge of threat intelligence frameworks (MITRE ATT&CK) and their application to detection and response operations.
Working knowledge of attacker methodology and penetration testing techniques.
Senior Infrastructure Security Engineer handling cloud security and infrastructure lifecycle for Zocks, a fintech startup. Responsible for security initiatives and compliance readiness in a rapidly growing team.
Data Center Security Officer ensuring safety and security for data center clients through patrols and monitoring. Conducting reports and maintaining client security requirements.
Cybersecurity Specialist overseeing the protection of clients' technology systems and networks. Implementing cybersecurity policies and conducting evaluations against cyber threats in a supportive working environment.
Providing security incident management for industrial environments at Telefónica Tech. Utilizing various monitoring platforms to enhance security posture.
Senior Cybersecurity Incident Responder at ZEISS handling technical incident response activities. Collaborating with cyber defense teams to ensure effective incident management and resolution.
Information Security Manager responsible for steering InfoSec programs globally at ZEISS. Leading cross - functional initiatives and risk management strategies in a high - tech environment.
Endpoint Security Engineer at Booz Allen designing and operationalizing data protection controls. Safeguarding sensitive data across enterprise systems and leading technical operations.
Senior Security Adviser handling governance and US integration tasks at Boeing. Liaising with US - based partners and coordinating crisis management for international security operations.
Lead Industrial Security Specialist at Boeing assessing compliance with security programs and implementing corrective actions. Involves extensive travel and oversight of security protocols across multiple locations.