Senior Information Security Engineer

Job not on LinkedIn

🔥 1 minute ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Hanover

Hanover

51 - 200 employees

Founded 1996

🎯 Recruiter

💼 Consulting

Recruitment • Consulting

Hanover is an executive search and talent consultancy focused on serving firms across financial services. Through executive search, leadership development, coaching, board services, outplacement and strategic consulting, Hanover helps clients identify, place and develop senior talent and design talent strategies. The firm positions itself as a growth partner to financial services organisations, combining market intelligence, sector expertise and people-centred delivery. It operates offices in London, New York, Chicago and Los Angeles and works across sectors such as asset management, banking, insurance, fintech, private equity and wealth management.

📋 Description

• Manage, maintain, and optimize the on‑premise SIEM platform, including log ingestion, parsing, correlation rules, dashboards, and alerting. • Ensure SIEM availability, performance, and scalability to support enterprise security monitoring needs. • Develop and tune detection rules, correlation logic, and use cases aligned with threat intelligence and organizational risk. • Oversee log source onboarding, configuration, and validation across servers, applications, network devices, and security tools. • Conduct regular SIEM health checks, capacity planning, and lifecycle management. • Administer and maintain on‑premise IDS/IPS platforms, ensuring accurate detection and prevention of malicious activity. • Tune signatures, policies, and rulesets to reduce false positives while maintaining strong detection coverage. • Monitor IDS/IPS performance, availability, and event trends to identify anomalies or operational issues. • Coordinate with network and security teams to implement policy updates, rule changes, and architectural improvements. • Ensure both SIEM and IDS/IPS solutions are aligned with security governance frameworks, compliance requirements, and organizational policies. • Maintain documentation for system configurations, processes, runbooks, and governance controls. • Support audit activities by providing evidence, reports, and system configuration details. • Participate in incident response activities by providing SIEM/IDS/IPS insights, event analysis, and technical expertise. • Evaluate emerging threats and recommend enhancements to detection logic and monitoring capabilities. • Collaborate with architecture and leadership teams to align SIEM and IDS/IPS strategies with long‑term security objectives. • Identify opportunities to automate processes, improve detection fidelity, and enhance operational efficiency.

🎯 Requirements

• Minimum 5 years of hands‑on experience administering, managing, and maintaining: • An on‑premise SIEM security solution, and • An on‑premise IDS/IPS security solution • Demonstrated experience ensuring high availability, governance alignment, and operational effectiveness of security monitoring technologies. • Strong understanding of SIEM architecture, log ingestion pipelines, correlation logic, and event normalization. • Expertise with IDS/IPS technologies, signature tuning, network traffic analysis, and threat detection methodologies. • Proficiency with security log formats (syslog, JSON, CEF, LEEF, etc.). • Familiarity with network protocols, firewall rules, and enterprise network architecture. • Experience with Linux/Windows server administration as it relates to security tooling. • Ability to analyze security events, identify patterns, and support incident response. • Strong analytical and problem‑solving abilities. • Excellent communication skills for cross‑team collaboration. • Ability to work independently in a remote environment while managing multiple priorities. • Detail‑oriented mindset with a commitment to governance, documentation, and operational discipline. • Preferred Qualifications (Optional Enhancements) • Industry certifications such as: • GIAC (GCIA, GCDA, GCED, GMON) • CompTIA Security+ / CySA+ • CISSP or equivalent • Experience with automation (Python, PowerShell, or similar). • Familiarity with threat intelligence platforms and frameworks (MITRE ATT&CK, NIST CSF).

🏖️ Benefits

Apply Now

Similar Jobs

🔥 3 minutes ago

The Hanover Insurance Group

5001 - 10000

🛡️ Insurance

🤝 B2B

👥 B2C

Senior Information Security Engineer managing on-premise SIEM and IDS/IPS technologies for enterprise security. Overseeing organization’s security governance and ensuring threat detection capabilities remain robust.

🇺🇸 United States – Remote

🔥 Funding within the last year

💰 $500M Post-IPO Debt - The Hanover Insurance Group on 2025-08

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🔥 28 minutes ago

CrowdStrike

5001 - 10000

🔒 Cybersecurity

☁️ SaaS

🤖 Artificial Intelligence

Senior Product Security Engineer supporting endpoint protection at CrowdStrike. Focus on finding and fixing design flaws and vulnerabilities in applications.

🔥 52 minutes ago

Premier Mortgage Resources, LLC

51 - 200

💸 Finance

🏠 Real Estate

AI Security and Development Specialist at PMR developing AI-driven automations for marketing technology and collaborating with Tech/IT on security standards.

🔥 1 hour ago

Nuvision Federal Credit Union

201 - 500

🏦 Banking

💸 Finance

Senior Information Security Administrator managing security systems for a credit union. Protecting information systems and maintaining compliance across multiple locations in the United States.

🇺🇸 United States – Remote

💵 $90.5k - $138.3k / year

💰 $2.5M Grant - Nuvision Federal Credit Union on 2023-04

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🔥 1 hour ago

mPulse

501 - 1000

🏥 Healthcare

☁️ SaaS

🤝 B2B

Network Security Engineer at mPulse designing and implementing security infrastructure for healthcare network. Focused on safeguarding against cyber threats and unauthorized access.