NuHarbor Security

NuHarbor Security

2 open positions available

1 location
1 employment type
Actively hiring
Full-time

Latest Positions

Showing 2 most recent jobs
NuHarbor Security

Vulnerability Management Engineer

NuHarbor SecurityAnywhereFull-time
View Job
Compensation$122K - 155K a year

Manage and optimize vulnerability management tools to identify, assess, and prioritize vulnerabilities, collaborating with teams to ensure remediation and improve security posture. | Requires 3+ years supporting vulnerability management, strong Linux/Windows skills, experience with CrowdStrike Spotlight and Tenable tools, and strong communication and analytical skills. | The Company Every day, NuHarbor Security improves the cybersecurity of our clients by making it stronger and easier to understand. Our comprehensive suite of security services, from strategic advising to 24-hour monitoring and management, provide an organizational view of security that is focused on results and recommendations that are valuable for both business and technical leaders. We’re growing quickly because our clients, and the general market, are looking for these outcomes and for the data it gives them to explain, promote, and justify, their security investment and mission. The Role The Vulnerability Engineer will drive the organization’s vulnerability management efforts, to identify, prioritize, and mitigate vulnerabilities across client's digital assets. This role involves assessing risk, generating comprehensive reports, and collaborating with technology and security teams to ensure swift remediation in alignment with business and compliance standards. The Vulnerability Engineer will streamline the vulnerability management processes and drive security-focused and best-practice recommendations to our clients. With a focus on platform optimization and continual improvement, this individual will enhance our client’s organization’s security posture. What you’ll do • Lives by the NuHarbor corporate values: Help Clients Win, Always Improve, Protect the House. • Help customers reduce their organizational risk by discovering, validating, and prioritizing vulnerabilities and associated remediations. • Lead efforts to configure, manage, and optimize vulnerability management tools to identify, assess, and prioritize vulnerabilities across an organization’s assets. • Work closely with technology and security teams to ensure timely remediation of vulnerabilities in accordance with organizational risk thresholds and compliance requirements. • Conduct regular risk assessments using vulnerability management tools to provide a clear understanding of the security posture across networks, web applications, and cloud infrastructure. • Generate and present detailed reports, including executive-level summaries, that outline vulnerabilities, risk scores, and remediation progress. • Analyze threat trends and advise on proactive measures for mitigation based on emerging threats that may impact the organization. • Develop and implement automation for scanning, reporting, and remediation workflows to improve efficiency and reduce response times. • Continuously evaluate and refine processes to ensure efficient delivery of services to the organization. • Act as a key point of contact for stakeholders across the organization regarding platform capabilities, findings, and best practices. • Work closely with security, risk, and IT operations teams to align vulnerability management activities with broader security initiatives. • Mentor junior security team members on vulnerability management best practices, assisting in their professional development. • Ensure that vulnerability platform and related integrations are maintained, updated, and optimized for peak performance. • Troubleshoot issues within the platform and work with support if necessary to resolve complex problems. • Stay current with the latest trends in vulnerability management. • Participate in the evaluation of emerging tools and technologies that could enhance or complement capabilities within the organization. • Use your advanced understanding of, and ability to communicate, security technologies to mitigate cyber risks. • Develop recommendations and enhancements to mature a client’s cybersecurity program. • Required to participate in 24x7 rotation. Your foundation. The requirements for this role: • Bachelor’s Degree in a related field and five (5) or more years in Information Technology. • In lieu of a degree, two (2) years of experience in a related technology field and relevant industry certifications are required. • Three (3) or more years of experience should have been directly supporting vulnerability management. • Strong Linux and Windows proficiency. • Strong understanding of security concepts and operations. • Strong understanding of networking concepts and architecture. • Experience with data visualization tools and strong analytical skills. • A minimum of two (2) years of CrowdStrike Spotlight experience. • Experience implementing, configuring, and managing vulnerability assessment tools including Tenable Nessus, Tenable.SC, Tenable.IO and Tenable NNM/PVS, and CrowdStrike Spotlight. • Experience in analyzing vulnerability scan results and asset data to prioritize remediation activities. • Experience performing vulnerability scanning in operationally sensitive environments. • Experience performing vulnerability scanning in public cloud environments. • Exhibit superior organizational skills to organize, analyze, develop, and deliver detailed reports. • Strong written and verbal communication skills. • Ability to meet deadlines for project-based tasks. • Must be a citizen of the United States. Additional capabilities that will differentiate you for this role: • Extensive experience with CrowdStrike Spotlight. • Log analysis using a SEIM product. • Experience in customer support. • Ability to manage multiple priorities in a fast-paced environment. • Strong analytical and technical skills. The Rewards What you can expect: • The engagement and support of company leadership who recognize the challenge of marketing a complex cybersecurity service in a chaotic market. • An organization that recognizes and rewards employee commitment and contribution to our customers’ satisfaction and success. • Growth in your career and capabilities as you help to chart a path to improving customer interactivity and service adoption. • A collaborative and driven working environment in a rapidly growing company and market. • A fun and social working environment where you are encouraged to be your true self. You can also expect base salary is targeted at $122,000 - $155,000 annually. *Salary based on Atlanta, GA salary data. Offer is based on candidate geography. Additionally, this role is eligible for the company bonus plan at a 10% target. We are purpose driven. We, as an organization, above anything else protect the house first and then help our customers win. If this sounds like the kind of organization you’d like to be a part of, we‘d like to hear from you. AAP/EEO Statement The Equal Employment Opportunity Policy of NuHarbor Security is to provide a fair and equal employment opportunity for all associates and job applicants regardless of race, color, religion, national origin, gender, sexual orientation, age, marital status or disability. NuHarbor Security hires and promotes individuals solely based on their qualifications for the job to be filled. NuHarbor Security believes that employees should be provided with a working environment which enables each associate to be productive and to work to the best of his or her ability. We do not condone or tolerate an atmosphere of intimidation or harassment based on race, color, religion, national origin, gender, sexual orientation, age, marital status, or disability. We expect and require the cooperation of all employees in maintaining a discrimination and harassment-free atmosphere.

Vulnerability Management
CrowdStrike Spotlight
Tenable Nessus
Security Operations
Incident Response
SOAR Automation
Verified Source
Posted about 1 month ago
NS

Senior Security Engineer

NuHarbor SecurityAnywhereFull-time
View Job
Compensation$85K - 130K a year

Serve as technical authority for engineering managed services, focusing on security platform architecture, configuration, maintenance, and mentoring. | Bachelor's degree, 5+ years IT experience including 3+ years engineering Splunk, US citizenship, scripting proficiency, and strong networking/security knowledge. | The Company Every day, NuHarbor Security improves the cybersecurity of our clients by making it stronger and easier to understand. Our comprehensive suite of security services, from strategic advising to 24-hour monitoring and management, provide an organizational view of security that is focused on results and recommendations that are valuable for both business and technical leaders. We’re growing quickly because our clients, and the general market, are looking for these outcomes and for the data it gives them to explain, promote, and justify, their security investment and mission. The Role The Senior Security Engineer is the senior technical authority on the NuHarbor Security Engineering team and the owner of the engineering layer that NuHarbor's managed services depend on. While Detection Engineering and SOC operations own the content and analysis built on top of our platforms, those functions cannot operate without the underlying environments being correctly architected, properly configured, performant, and maintained to best practice. The Senior Security Engineer owns that foundation. This role operates with a high degree of autonomy. The Senior Security Engineer self-directs toward the most complex and highest-impact work, drives client outcomes without requiring oversight, and serves as the senior technical escalation point and mentor for the broader engineering team. The role is anchored in Splunk, but a Senior Security Engineer is expected to apply their engineering discipline across any platform in NuHarbor's catalog and to ramp quickly on new technologies as the catalog evolves. What you’ll do Lives by the NuHarbor corporate values: Help Clients Win, Always Improve, Protect the House. Owns the systems engineering that keeps NuHarbor's co-managed platforms running correctly; architecture, configuration, performance, and maintenance to NuHarbor and vendor best practice, so that Detection Engineering and SOC Operations can function reliably on top of them. Ensures client data is properly onboarded, parsed, and normalized to the appropriate data model for each platform (e.g., Splunk CIM, Microsoft ASIM, Google UDM). Diagnoses and resolves complex architectural problems across managed environments, including those that block or degrade downstream detection and analysis. Self-assigns and drives the most complex and highest-impact work, operating independently without requiring direction. Drives the engineering ticket queue with quality, efficiency, and completeness, resolving issues fully rather than partially. Designs, implements, and maintains engineering solutions for multi-tenant scalability, repeatability, and standardization across NuHarbor's client base, solving problems in a way that is durable and portable rather than one environment at a time. Communicates with clients at an expert technical level, building the trust and delivery excellence that turns clients into raving fans. Performs the engineering and architecture work required to onboard new managed services clients and to sustain and mature existing ones. Supports, deploys, and manages the components of NuHarbor's security automation and case management platform(s), including integrations across the managed stack (SIEM, EDR, identity, ticketing), configuration to best practice, and multi-tenancy. Builds and maintains automation workflows and integrations that connect the platform to client environments, partnering with SOC and Detection Engineering on the response logic those workflows execute. Regularly meets with clients to drive objectives forward and proactively addresses issues before they escalate. Develops engineering recommendations and enhancements that improve the security posture and effectiveness of each client's managed platforms, and communicates them to client stakeholders. Provides technical direction, leadership, and mentorship that measurably raises the capability of the broader engineering team. Provides architectural review and oversight for client operational projects. Develops and improves onboarding and operational processes, and builds processes to support new technologies at the direction of Engineering Leadership. Helps design the engineering approach and operational processes for newly adopted technologies, in support of new and evolving service offerings. Maintains the industry and vendor certifications required to support the managed services catalog, and ensures managed platforms are patched and hardened in response to relevant vulnerabilities. Participates in a 24x7 on-call rotation; other duties as assigned by Engineering Leadership. Your foundation. The requirements for this role: Bachelor’s Degree and five (5) or more years in the Information Technology field. In lieu of a degree, two (2) years of experience in a related technology field and relevant industry certifications are required. Five (5) or more years engineering security platforms in a managed services, enterprise, or comparable operational environment. Three (3) or more years directly engineering and administering Splunk environments, including Splunk Enterprise Security. Demonstrated experience onboarding and normalizing data sources to a common data model (e.g., Splunk CIM). Strong Linux and Windows proficiency. Strong understanding of security concepts and operations. Strong understanding of networking concepts and architecture. Proficiency with data visualization tools and strong analytical skills. Proficiency scripting in at least one of PowerShell, Bash, or Python, with working familiarity across the others. Must be a citizen of the United States Additional capabilities that will differentiate you for this role: Splunk Enterprise Certified Architect and/or Splunk Certified Consultant. Microsoft AZ-500 and/or SC-100/SC-200. Google Professional Security Operations Engineer (PSOE). Hands-on engineering experience across one or more additional platforms in NuHarbor's catalog, e.g., Microsoft Sentinel, Google SecOps, CrowdStrike, Tanium; and the demonstrated ability to ramp quickly on new technologies. Experience engineering and supporting platforms in a multi-tenant MSSP environment. Experience engineering platforms in support of a 24x7 SOC or MDR operation. Experience with vulnerability management technologies. Experience with infrastructure-as-code and automation tooling (e.g., Terraform, Ansible, Automation Platforms). Experience supporting SLG or education clients. Bachelor's degree and seven (7) or more years in the Information Technology field. Excellent written and verbal communication skills, with the ability to make complex subjects understandable and to gain trust and achieve shared objectives. A track record of managing and prioritizing multiple projects simultaneously. An understanding of how businesses operate and how technical decisions affect business results. Passion for security and customer service. Base Salary for this role is targeted at $130,000 - 175,000 *Salary based on Burlington, VT salary data. Offer is based on candidate geography. Additionally, this role is eligible for the company bonus plan at a 10% target. The Rewards What you can expect: The engagement and support of company leadership who recognize the challenge of marketing a complex cybersecurity service in a chaotic market. An organization that recognizes and rewards employee commitment and contribution to our customers’ satisfaction and success Growth in your career and capabilities as you help to chart a path to improving customer experience and service adoption. A collaborative and driven working environment in a rapidly growing company and market. A fun and social working environment where you are encouraged to be your true self. You can also expect competitive salary and benefits, including paid time to give back in your community and generous PTO. We are purpose driven. We, as an organization, above anything else protect the house first and then help our customers win. If this sounds like the kind of organization you’d like to be a part of, we‘d like to hear from you. AAP/EEO Statement The Equal Employment Opportunity Policy of NuHarbor Security is to provide a fair and equal employment opportunity for all associates and job applicants regardless of race, color, religion, national origin, gender, sexual orientation, age, marital status or disability. NuHarbor Security hires and promotes individuals solely based on their qualifications for the job to be filled. NuHarbor Security believes that employees should be provided with a working environment which enables each associate to be productive and to work to the best of his or her ability. We do not condone or tolerate an atmosphere of intimidation or harassment based on race, color, religion, national origin, gender, sexual orientation, age, marital status, or disability. We expect and require the cooperation of all employees in maintaining a discrimination and harassment-free atmosphere.

Splunk Engineering
Security Architecture
Python Scripting
PowerShell Scripting
Bash Scripting
Direct Apply
Posted about 1 month ago

Ready to join NuHarbor Security?

Create tailored applications specifically for NuHarbor Security with our AI-powered resume builder

Get Started for Free

Ready to have AI work for you in your job search?

Sign-up for free and start using JobLogr today!

Get Started »
JobLogr badgeTinyLaunch BadgeJobLogr - AI Job Search Tools to Land Your Next Job Faster than Ever | Product Hunt