Cybersecurity Senior Engineer

1 week ago


London, Greater London, United Kingdom McDermott International, Ltd Full time
Job Description

Company Overview:

McDermott is a premier, fully-integrated provider of technology, engineering and construction solutions to the energy industry. For more than a century, customers have trusted McDermott to design and build end-to-end infrastructure and technology solutions—from the wellhead to the storage tank—to transport and transform oil and gas into the products the world needs today.

Job Overview:

IT Corporate Functions – Senior IT Pillar Specialist is responsible for being a strategic partner with Finance to help deliver IT solutions/projects that meet business objectives. This specialist will also be responsible for facilitation of quality systems support for finance end-to-end process including the close cycles (month-end, quarter & year-end), support of all subledgers and the GL.

Experience

  • 5+ years of experience with threat and vulnerability management (TVM) program and operations
  • 3+ years of experience working with threat intelligence feeds and IOCs

Education

High School Diploma w/10 years of experience in information security or college diploma with 6 years of information security experience

Additional

  • 10 years of IT experience
  • 7+ years in an information security role
  • 5+ years of experience with threat and vulnerability management program and operations
  • 3+ years of experience working with threat intelligence feeds and IOCs
  • 3+ years of experience in a security engineer role
  • 3+ experience with cloud vulnerabilities
  • 2+ years of experience with endpoint protection tools
  • 2+ years of experience with security information and event management (SIEM) tools
  • 1+ years of experience with perimeter security

Primary Functions

  • Operate within the global Cybersecurity Team within the Information Technology department
  • Ensure global alignment with Company's best practices for patch, posture, and vulnerability management
  • Maintain and improve the TVM program's operational performance, processes, and technology
  • Maintain awareness of cybersecurity threats, events, tactics, techniques, and procedures (TTPs)
  • Act as a trusted advisor within IT on vulnerabilities and patches
  • Collaboration with system owners and support teams to analyze and evaluate mitigation strategies, providing guidance and improving strategies/procedures
  • Work with SOC to ensure vulnerability assessments/scans (VA)) are complete and reliable
  • Determine impact to environment when new standards tools, or processes are implemented
  • Advise on product roadmap security features and practical implementation
  • Track emerging technologies and identify opportunities for improving overall Cybersecurity

Tasks and Responsibilities

  • Regular interaction with the Director of Cybersecurity and the Security Operations Team to review threat activity, adversary tactics, targeted vulnerabilities, and exposure risks
  • Daily monitoring for zero-day threats, patches, mitigations, and strategies.
  • Utilize threat intelligence to manage potential threats and reduce the likelihood of exploitation
  • Maintain technical expertise, apply applicable industry standards and best practices
  • Interact with system owners and IT teams to drive remediation or mitigation of identified vulnerabilities
  • Ensure necessary administration and support tasks are completed and direct others as necessary
  • Review monthly SOC VA reports for accuracy, trends, and advises on deviations from expected norms
  • Troubleshoot and resolve TVM related support tickets that have been escalated
  • Evaluate new tools and techniques to enhance the security posture
  • Administer and mature tool configurations, optimize performance, and feature utilization
  • Integrate tools to automate critical response tasks.
  • Evaluate TVM tool and patches, updates, and perform maintenance
  • Develop detailed documentation on TVM implementation, configuration, and processes
  • Plan, develop, and implement new security devices or services for TVM as needed
  • Identify, create and mature cybersecurity operations processes.
  • Assist with forensic investigations and incident response team (CIRT) needed
  • Assist with security awareness activities (communications, posters, events, assessments) as needed
  • Participate in incident runbook development
  • Escalate pertinent findings in a timely manner.
  • Support Compliance managers in providing Cybersecurity artifacts.
  • Align information cybersecurity operations with NIST CSF, and ISO 27001 controls

Other Expectations:

  • In-depth knowledge of system vulnerabilities, threat intel feeds and contextualization of vulnerabilities
  • Independently assess risks, for devise mitigation strategies for compensating controls
  • Demonstrable knowledge of common infrastructure and web application vulnerability categorizations such as CVE, CVSS, CWE
  • Cloud security posture and vulnerability management expertise
  • Experience executing attack defense tactics with security technologies including DNS, SMTP, firewall, and endpoint solutions.
  • Experience and participation as needed with security incident and investigations
  • Assist as needed with security awareness content such as communications, posters, presentations
  • Experience with security management/configuration cloud tools and services
  • Experience maintaining and troubleshooting: endpoint security, SIEM systems, network security, cloud security, and perimeter security tools.
  • Experience with Active Directory
  • Experience with Microsoft desktop and server operating systems, RedHat Linux and variants.
  • Able to bring projects to successful completion within appropriate timeline
  • Able to respond to emergencies 24 hours a day, 7 days a week, as needed
  • Strong analysis and problem-solving skills
  • Strong oral and written communication skills
  • Detail oriented in investigations and communications Able to handle confidential investigations with discretion
  • Able to multi-task and prioritize workload
  • Experience in a team-oriented, collaborative environment
  • Able to work after-hours and on call as needed
  • Certifications: CISSP, GSEC, CRISC, OSCP, GCTI, GEVA, Security+, Vendor Certifications


  • London, Greater London, United Kingdom McDermott International, Ltd Full time

    Company Overview: McDermott is a premier, fully-integrated provider of technology, engineering and construction solutions to the energy industry. For more than a century, customers have trusted McDermott to design and build end-to-end infrastructure and technology solutions—from the wellhead to the storage tank—to transport and transform oil and gas into...


  • London, Greater London, United Kingdom McDermott International, Ltd Full time

    Company Overview: McDermott is a premier, fully-integrated provider of technology, engineering and construction solutions to the energy industry. For more than a century, customers have trusted McDermott to design and build end-to-end infrastructure and technology solutions—from the wellhead to the storage tank—to transport and transform oil and gas...


  • London, Greater London, United Kingdom Secure Elements Full time

    Company Description: Secure Elements is an automotive cybersecurity start-up SME developing cybersecurity software solutions (SaaS) for engineering and security operations. Our SaaS application 'CRISKLE ' accelerates the adoption of an ISO/SAE 21434 and UNECE R155 compliant Cybersecurity Management System (CSMS), enabling organisations to effectively manage...


  • London, Greater London, United Kingdom Latitude Full time

    Cybersecurity Analyst (Active Public Trust Required) Latitude Latitude Inc is an organization providing staffing solutions and government services for companies and public sector. View company page Position Overview: As a Cybersecurity Analyst you will play a key role in monitoring, analyzing, and responding to cybersecurity threats and incidents. You...


  • London, Greater London, United Kingdom Latitude Full time

    We are seeking a Cybersecurity Analyst who will be responsible for supporting computer network defense, to include auditing the network for vulnerabilities, identifying relevant threats, recommending corrective actions, developing solutions for security issues, and investigating security incidents and breaches. Responsibilities Conducts network monitoring...


  • London, Greater London, United Kingdom Expert Employment Full time

    We are currently hiring for a Software Engineer position with a focus on areas like Cryptography, Cybersecurity, Network Threat Detection, and Data Analytics leveraging High Performance Computing.This role will require you to utilize advanced methods such as Artificial Intelligence for intricate Network traffic analysis to detect and evaluate potential cyber...


  • London, Greater London, United Kingdom Allen Recruitment Consulting Full time

    Are you a motivated and hardworking individual looking for a new challenge? Our client, a branded global cybersecurity company, is seeking mission-driven Sales Engineer to join their rapidly growing team to drive sales and build relationships with clients. Your main goal will be providing technical expertise to clients and prospects. You will work closely...


  • London, Greater London, United Kingdom FactSet Full time

    Cybersecurity Training and Awareness Lead (Hybrid) We seek a highly skilled and motivatedCybersecurity Training & Awareness Leadto develop, implement, and manage a comprehensive cybersecurity awareness training program across the firm. You will be pivotal in educating employees on cybersecurity best practices, promoting a security-conscious culture, and...


  • London, Greater London, United Kingdom HSBC Full time

    Global Head of Controls Cybersecurity If you're looking for a career where you can make a real impression, join HSBC and discover how valued you'll be. Digital Business Services is a pivotal part of the Group, providing essential operational and technical support to our global businesses and helping improve customer service and efficiency. Operations,...


  • London, Greater London, United Kingdom London Strategy Full time

    Cybersecurity Operational Technology (OT) ArchitectWe are looking for a skilled and experienced candidate to join our team as a Cybersecurity Operational Technology(OT) Architect. In this critical role, you will play a pivotal part in designing, implementing, and maintaining secure OT solutions. You will leverage your deep understanding of OT systems and...


  • London, Greater London, United Kingdom Johnston Vere Associates Limited Full time

    We have two key clients who are seeking experienced OT Cybersecurity professionals across the UK. Both are established engineering consultancies, operating across a wide range of industrial market sectors including energy, water treatment, transportation, O&G and chemical. Due to consistent project development across the UK, they are looking to expand...


  • London, Greater London, United Kingdom IC Resources Full time £105,000

    Join an exciting journey with a rapidly expanding AI-driven cybersecurity innovator. I am looking for a Senior Software Engineer to join my client's dynamic team. With a salary of up to £105,000 plus enticing stock options and hybrid working from London. As a Senior Software Engineer you'll contribute to a growing platform, playing a pivotal role in shaping...


  • London, Greater London, United Kingdom Careers In Group Full time

    A position has been created for an experienced and technically strong IT Audit leader, to join a 20 person internal audit function, leading a portfolio of cybersecurity and resilience audits and a small team of IT Audit professionals.Working on a very flexible hybrid basis between home and the offices in London, you will lead a team of specialists in the...


  • London, Greater London, United Kingdom Anson McCade Ltd - IT and Finance Recruitment Full time

    International Cybersecurity Programme Delivery Lead - LondonUp to £105,000 + Bonus + Extended Benfits packageAbout the role: International Cybersecurity Programme Delivery LeadWith strong stakeholder management and team leadership skills you will be leading teams and programmes of work comprising professional services and occasional technical deliveries....


  • London, Greater London, United Kingdom CMA CGM Full time

    CEVA Logistics provides global supply chain solutions to connect people, products and providers all around the world. Present in 170 countries and with more than 110,000 employees spread over 1,300 sites, we are well on our way to achieving our vision: to be a Top 5 global 3PL. We believe that our employees are the key to our success. We want to engage and...


  • London, Greater London, United Kingdom Cisco Systems Full time

    Please note this posting is to advertise potential job opportunities. This exact role may not be open today, but could open in the near future. When you apply, a Cisco representative may contact you directly if a relevant position opens.**What You'll Do Cisco Secure delivers intelligent Cybersecurity for the real world, providing the industry's most...


  • London, Greater London, United Kingdom Aatom Recruitment Full time

    Working on behalf of a Local Authority, Aatom Recruitment has a new opportunity for a Cybersecurity Vulnerability Management Analyst on a 3 months contract with the possibility of further extension. Main purpose of the role Cybersecurity Vulnerability Management Analyst is primarily responsible for vulnerability assessment, impact, and risk assessment,...


  • London, Greater London, United Kingdom McDermott International, Ltd Full time

    Company Overview:People power our future. That is why advancing a dynamic, inclusive environment, where everyone grows and thrives is critically important to us. Our ingenuity fuels daily life. Together, we've forged some of the most trusted partnerships across the energy value chain to make what was once just an idea a reality: laying subsea infrastructure...


  • London, Greater London, United Kingdom McDermott International, Ltd Full time

    Job Description Company Overview: People power our future. That is why advancing a dynamic, inclusive environment, where everyone grows and thrives is critically important to us. Our ingenuity fuels daily life. Together, we've forged some of the most trusted partnerships across the energy value chain to make what was once just an idea a reality: laying...


  • London, Greater London, United Kingdom NexGen Cloud Full time

    NexGen Cloud is a rapidly growing IaaS company focused on providing innovative cloud solutions and infrastructure services. Our GPU cloud infrastructure solutions accelerate development in industries such as Artificial Intelligence & Machine Learning, VFX & Rendering, Data Science & IoT, and Computer Aided Engineering & MDO.We are dedicated to helping our...