Cyber Security Engineer

Posted 2 days ago

access searchTinley Park (IL)

SENIORITY

Senior

Apply

About the role

Position Overview: Our client is seeking a Cyber Security Engineer to support enterprise security operations, threat detection, and incident response across a complex technology environment. This position will play a hands-on role in monitoring security events, investigating potential threats, improving detection capabilities, and maintaining the technologies and processes that support the organization's security operations. The ideal candidate will bring strong technical security experience, sound judgment, and the ability to collaborate effectively with teams across IT, infrastructure, operations, and business functions.
Key Responsibilities: Monitor and investigate security events and alerts, identifying potential threats and determining appropriate response actions. Participate in incident response activities, including investigation, containment, remediation, escalation, and post-incident analysis. Support and improve security monitoring capabilities across enterprise IT and operational technology (OT) environments. Maintain and enhance SOC technologies, including SIEM, log management, network security, and related security platforms. Develop, tune, and improve detection rules and security monitoring processes to reduce false positives and identify emerging threats. Assist with security assessments and risk analysis to identify vulnerabilities and develop appropriate security requirements and controls. Maintain detailed incident documentation, including findings, root cause, remediation activities, lessons learned, and recommended improvements. Identify opportunities to automate security monitoring, detection, and response activities. Develop and maintain security procedures, playbooks, standards, and technical documentation. Track and report SOC performance metrics and security operations KPIs. Provide technical guidance related to network security and next-generation firewall technologies. Continuously evaluate emerging security technologies, threats, and industry practices to improve the organization's security posture.
Qualifications: Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field; equivalent professional experience may be considered.3–5+ years of experience in a SOC, security operations, incident response, or related cybersecurity environment. Experience supporting security operations across multiple locations, business units, or complex enterprise environments. Strong hands-on experience with SIEM and security monitoring technologies. Working knowledge of network security concepts, firewalls, intrusion detection/prevention, endpoint security, and vulnerability management. Experience analyzing security alerts and determining appropriate escalation and remediation. Strong understanding of incident response methodologies and security best practices. Experience working with both IT and/or OT environments is highly desirable. Excellent analytical, troubleshooting, communication, and documentation skills.
Preferred Certifications: CompTIA Security+CompTIA Network+CompTIA CySA+ or CASP+GIAC certificationsCISM or comparable security certification

Before you apply

Applying takes about a minute. These four things decide how fast it moves after that.

Your profile is current

It's what we read first. Occupations, seniority and locations matter more than a long history.

Two examples you can talk through

Not a portfolio — just two pieces of work where you can explain the decisions and what you'd change.

A number in mind

What you're on now and what would make you move. We negotiate better when we know both.

Your notice period

Employers plan around it, and it's the question that stalls offers most often.

Once you apply, someone reads it and calls you before anything reaches the employer — usually within two working days.

More like this