Full Time
TBD
40
Apr 17, 2025
APPLY HERE
Job Description: Network Security Engineer - Vulnerability & Compliance Focus
Location: Remote
Company: Support Tech LLC
About Support Tech LLC:
Support Tech LLC is a dynamic and growing company focused on providing comprehensive technical and field support services. We specialize in technology deployment, point-of-sale system support, or a broader range of IT services. Our commitment is to deliver efficient, high-quality solutions with a strong focus on on-time service, customer satisfaction, and nationwide reach. We pride ourselves on our experienced team, 24/7 availability, and a turn-key approach to ensure seamless technology integration and ongoing support for our clients. This is an exciting opportunity to join a team dedicated to excellence in the tech support industry.
Job Summary:
Support Tech is seeking a highly motivated and skilled Network Security Engineer with a strong focus on vulnerability management, penetration testing, and global risk and compliance. The ideal candidate will be responsible for ensuring the security and integrity of our network infrastructure, identifying and mitigating vulnerabilities, and ensuring adherence to relevant security standards and regulations. This role requires a deep understanding of network security principles, hands-on experience with vulnerability assessment and penetration testing methodologies, and familiarity with frameworks related to global risk and compliance. Experience with Rocket Cyber tools and services is highly desirable.
Responsibilities:
Vulnerability Management:
Develop, implement, and manage a comprehensive vulnerability management program, including regular scanning, assessment, prioritization, and remediation tracking.
Conduct internal and external vulnerability assessments and penetration testing activities to identify security weaknesses.
Analyze vulnerability scan results and penetration testing findings to provide actionable recommendations for remediation.
Collaborate with IT teams to implement security patches and configuration changes to address identified vulnerabilities.
Maintain up-to-date knowledge of emerging threats, vulnerabilities, and security best practices.
Penetration Testing:
Plan, execute, and report on penetration testing engagements against network infrastructure, systems, and applications.
Utilize a variety of manual and automated penetration testing tools and techniques.
Document findings clearly and concisely, providing detailed remediation steps and recommendations.
Work with development and operations teams to ensure identified vulnerabilities are effectively addressed.
Global Risk and Compliance:
Assist in the development and implementation of security policies, standards, and procedures aligned with relevant global risk and compliance frameworks (e.g., ISO 27001, SOC 2, GDPR, HIPAA, PCI DSS).
Participate in security audits and assessments, providing evidence of compliance and addressing any identified gaps.
Contribute to risk assessments and the development of mitigation strategies for network security risks.
Stay informed about changes in relevant regulations and compliance requirements.
Rocket Cyber Expertise (Highly Desirable):
Utilize and manage Rocket Cyber platform and services for threat detection, monitoring, and i
Configure and maintain Rocket Cyber sensors and integrations.
Analyze alerts and reports generated by Rocket Cyber to identify and respond to potential security i
Leverage Rocket Cyber capabilities for vulnerability scanning and management.
Contribute to the optimization and effectiveness of our Rocket Cyber deployment.
Network Security Operations:
Monitor network security infrastructure (firewalls, intrusion detection/prevention systems, VPNs, etc.) for security events and anomalies.
Participate in i
Contribute to the development and maintenance of network security documentation and diagrams.
Collaborate with other IT teams on security-related projects and initiatives.
Provide security guidance and training to other IT staff.
Qualifications:
Bachelor's degree in Computer Science, Information Security, or a related field. Equivalent experience may be considered.
Minimum of [Insert Number] years of experience in network security roles with a strong focus on vulnerability management and penetration testing.
Proven experience conducting vulnerability assessments and penetration testing on network infrastructure and systems.
Strong understanding of network protocols, security principles, and common attack vectors.
Familiarity with various security tools and technologies, including vulnerability scanners (e.g., Nessus, Qualys), penetration testing frameworks (e.g., Metasploit, Kali Linux), and network monitoring tools.
Knowledge of global risk and compliance frameworks such as ISO 27001, SOC 2, GDPR, HIPAA, and PCI DSS.
Experience with security audits and compliance assessments.
Excellent analytical, problem-solving, and communication skills (both written and verbal).
Ability to work independently and as part of a team.
Strong attention to detail and a commitment to continuous learning.
Preferred Qualifications:
Experience working with Rocket Cyber platform and services.
Relevant security certifications such as OSCP, CEH, CISSP, CISA, or CompTIA Security+.
Experience with cloud security (AWS, Azure, GCP).
Scripting skills (e.g., Python, Bash, PowerShell).
Experience with security automation and orchestration tools.
To Apply:
Interested candidates are encouraged to submit their resume and cover letter to [Insert Application