Information Security Engineer
Gotham Technology Group · Virginia, United States
Apply & track with Apply EdgeThis technical role is responsible for managing, supporting, implementing, and troubleshooting the Firm's full suite of security products, while leading day-to-day incident investigation, security assessments, and audits.ResponsibilitiesManage core security infrastructure: IDS/IPS, firewalls, antivirus, web filtering, DLP, NAC, DDoS protection, third-party remote access, application whitelisting, and EDR solutionsOwn SIEM operations and privileged account management systemsInvestigate and resolve security events end-to-endConduct security audits, risk assessments, and firewall/network/system configuration reviewsRun vulnerability scans across networks, servers, systems, and applicationsProduce weekly security metrics reportsPartner with consultants, MSSP/SOC vendors, and third-party providers on security servicesContribute security architecture input to project reviewsEvaluate and test emerging security technologiesQualificationsDeep knowledge of security best practices across systems, networks, and telecommunicationsStrong analytical, troubleshooting, and root-cause investigation skillsExcellent communication, documentation (SOPs, guidelines, architecture diagrams), and project-planning abilitiesComfortable balancing security with business needs; works well independently and in teamsAble to manage multiple projects in a fast-paced environmentAvailable for on-call rotation, off-hour emergency calls, and occasional travelReports to and collaborates closely with the Director of Information SecurityTechnical ExperienceNetwork/Firewall: Cisco devices; Palo Alto (advanced); micro-segmentation (Illumio or similar)SIEM/IDS/IPS: Microsoft Sentinel; Vectra AI, Snort, Suricata, AlienVault, or similarEndpoint Security: CB Application Control, ThreatLocker, Microsoft Defender for EndpointVulnerability & Pen Testing: Nessus, Tenable, Rapid7 Nexpose, Cobalt Strike, QualysOffensive/Open-Source Tools: Kali Linux, Metasploit, Nmap, PowerShell Empire, Kerberoast, TrustedSec SETSystems: Windows (AD, DNS, DHCP, SQL), Linux (Ubuntu, CentOS, RedHat), server/workstation hardeningScripting: Python, PowerShell, VBPAM: CyberArk, BeyondTrust, or similarMicrosoft Cloud Security: M365 E5 security stack, Azure, Entra ID, Defender, Sentinel, Azure networking & governance