Summary / Role Purpose
The Ansys Government Initiatives (AGI) Senior Cybersecurity Engineer is a direct report to the AGI Director of Cybersecurity and will perform cybersecurity analysis, triage functions and countermeasure develop required to safeguard the network and hosts. The AGI Senior Cybersecurity Engineer will administrator company security software and manage security infrastructure where applicable. They will act as a Subject Matter Expert (SME) to other functional units within the company as it pertains to security configurations, vulnerabilities and security best practices. The AGI Cybersecurity Engineer will also work with penetration tools at the AGI Directory of Cybersecurity’s discretion to perform internal assessments. They will also provide support as needed during surge operations for patching and remediation to ensure the company’s network and data is protected.
This position does not qualify for immigration sponsorship.
Key Duties and Responsibilities
- Oversee and ensure successful execution of all configuration, implementation and maintenance of host-based firewalls, intrusion prevention system (IPS), anti-virus (AV) software, SELinux, network firewalls, IPS, SIEMs and proxies
- Develop Standard Operating Procedures (SOPs) for various security tools utilized within the environment
- Oversee and ensure the successful development and deployment of countermeasures for network and hosts systems based on open source intelligence (OSINT) or behavioral analysis
- Monitor, tune and implement countermeasures in various security tools such as Trellix ePO, Palo Alto and QRadar
- Perform incident response and follow chain of custody processes during investigations
- Characterize and analyze network/host traffic to identify anomalous activity and potential threats to company resources
- Lead and perform malware analysis and reverse engineering of suspicious files
- Configuration, implementation and maintenance of data loss prevention (DLP) solutions to include implementation, administration and maintenance
- Lead and perform basic vulnerability/penetration testing upon request from the Directory of Cybersecurity
- Document cyber response finding and present them to leadership in a clear, concise manner
Minimum Education/Certification Requirements and Experience
- Bachelor’s degree in Computer Science/Bachelor’s Degree in Information Technology from an accredited college/university or related work experience
- Minimum of five (5) years of actively supporting IT or Cybersecurity Operations
- Minimum two (2) years performing Security Operations Center (SOC) functions such as incident responder, security investigator, advanced security analyst or security engineer/architect
- Proficiency in at least two (2) scripting languages
- Operational familiarity with Kali Linux
- Compliant with DoD IAT Level II
- Must be able to obtain or currently have a DoD or DHS Top Secret with SCI Eligibility
- Excellent communication and teamwork skills
- Detail oriented with a strong written communication skill
Preferred Qualifications and Skills
- Current technical understanding of hardware and software technology
- Organizational, communication, prioritization, and time management skills.
- Analytical, problem solving, and decision-making skills.
- Strong customer relationship management skills to include training for the user base.
- Can present information to groups
- Competent with a proven work history of working with Threat Intelligence.
- Competent with a proven work history of working with and selecting/building security tools (SIEM, vulnerability scanning, firewalls, etc.)