It's fun to work in a company where people truly believe in what they are doing!
As an IT Security Engineer at Neogen, I play a vital role in safeguarding our global enterprise. I am responsible for a wide range of security processes and technologies. I collaborate closely with global teams to continuously improve our security posture. I perform planned security assessments of public and internal applications, and collaborate with skilled teams to remediate the findings. When there is a security alert or concern, my teammates know they can reach out to me for advice or escalation. I understand the work my colleagues do, and help them understand their role in security. Whether it's coordinating vulnerability testing, advising on secure configuration standards, or conducting investigations, I know that my work is reducing security risks across the organization.
Job SummaryAs an IT Security Engineer at Neogen, I play a vital role in safeguarding our global enterprise. I am responsible for a wide range of security processes and technologies. I collaborate closely with global teams to continuously improve our security posture. I perform planned security assessments of public and internal applications, and collaborate with skilled teams to remediate the findings. When there is a security alert or concern, my teammates know they can reach out to me for advice or escalation. I understand the work my colleagues do, and help them understand their role in security. Whether it's coordinating vulnerability testing, advising on secure configuration standards, or conducting investigations, I know that my work is reducing security risks across the organization.
Essential Responsibilities- Perform and coordinate vulnerability assessments and risk analyses for web applications, corporate networks, business apps, and more.
- Document findings of those assessments, and follow up to ensure remediation and validation.
- Continuously identify threats and develop vulnerability remediation plans, demonstrating a clear reduction of risks to the organization.
- Collaborate with our skilled global systems, network, client support, applications, and development teams (and more!)
- Act as the point of escalation for security alerts and concerns.
- Investigate security incidents, conduct investigations, and participate in incident responses.
- Proactively maintain SEIM system(s), including log flow management.
- Lead security design, whiteboarding, and soundboarding sessions.
- Creatively develop content and activities related to Neogen's Security Awareness program.
- Evaluate new technologies and processes that enhance security capabilities and reduce threats.
- Develop automation to handle and track incidents, analyze logs, apply mitigations, and perform repeatable tasks.
- Stay up-to-date on all industry trends, threat intel, changes in security policies, technologies, and regulations.
- Perform other duties as agreed upon with the supervisor.
QualificationsTo perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Education and/or Experience- Preferred: Foundational background in IT infrastructure, system administration, enterprise networking, or software development (or multiple).
- Preferred: Purple team mindset, including experience with pentesting tools, web applications, SDLC processes
- Bachelor's or Associates Degree in computer science, engineering, cybersecurity, or technology from a four-year college or university, with at least 2 years related experience; or equivalent combination of education and applicable experience.
- Skilled in a majority of these security related tools and concepts: IDS/IPS, vulnerability management, firewalls, IAM, authentication, encryption technologies, secure network architectures, secure application architectures, components of OSI and how to secure each layer, security awareness training methods, endpoint security systems, secure coding practices, DAST and SCA, securing windows/linux operating systems, virtualization technologies, database platforms, cloud security posture management.
- Knowledgeable with security frameworks, defensive security, security-in-depth practices, and related audit procedures.
- Comfortable with automation, scripting, and leveraging APIs.
- Practical experience with security incident investigation and response preferred.
- Excellent attention to detail, organization, project management, documentation, communication and teamwork to effectively collaborate within and outside of IT groups.
- Certification(s) preferred but not required, e.g., CEH, CCNP, GSEC/GSOC/GCIA, SSCP.
Travel Requirements: Up to 5% - 15% as neededCome Be Part Of A Mission that Matters!
From inside the farm gate to our dinner plates, Neogen protects the world's food supply. Through a variety of animal healthcare products, to food safety solutions for dangerous bacteria, allergens, toxins, drug residues and much more, Neogen is there - and you can be too.