Cox Enterprises Logo

Cox Enterprises

Senior Cybersecurity Administration Engineer

Posted 17 Hours Ago
Be an Early Applicant
Hybrid
Atlanta, GA
Senior level
Hybrid
Atlanta, GA
Senior level
The Senior Cybersecurity Administration Engineer will support and administer Cybersecurity tools, focusing on Linux management, log ingestion, and EDR and SIEM optimization.
The summary above was generated by AI
Cox Communications is seeking a Senior Cybersecurity Administration Engineer to join our team. This engineer will be an inquisitive and adept Cybersecurity engineer with substantial Kubernetes application deployment experience to join our team. This role will focus on the support and administration of various Security Operations Center tools. The ideal candidate will exhibit strong Linux administration, troubleshooting, networking, and documentation skills. They will get to bring their own creative problem-solving perspective into an extremely capable and supportive team environment. They will have the opportunity to help plan the deployment of, deploy and support multiple cutting-edge Cybersecurity solutions, including SIEM, log pipeline, EDR and packet capture tools.
Key Responsibilities:
Linux Systems Management:
  • Support and secure Linux environments (RedHat, Ubuntu), implementing security best practices and hardening strategies.
  • Develop automation scripts to automate repetitive tasks and improve incident response, monitoring, and patch management.
  • Design and implement Ansible playbooks, roles, and inventories to automate the provisioning and management of both infrastructure and applications.
  • Troubleshoot system issues and fine-tune performance across Linux environments.
  • Assume the lead role in patching and certificate management for the stack's infrastructure and applications.
  • Deploy and support applications within Kubernetes.

Log Management & Ingestion:
  • Support log ingestion and management using Kafka, Elasticsearch, Logstash, and Kibana to ensure proper log flow and storage.
  • Create and maintain log collection pipelines, monitoring them for efficiency and scalability.
  • Ensure integration of monitoring tools like Zabbix with log management platforms to support comprehensive infrastructure visibility.
  • Assist various teams in on-boarding and troubleshooting log routes to our log collection solution.

EDR Management & Optimization:
  • Assist various teams in the installation, configuration and troubleshooting of EDR agents to enable SOC detection, response and remediation of endpoint threats.
  • Assist in supporting the EDR platform and ensuring proper integration and functionality of endpoint protection systems with other security tools.

SIEM Tools Management:
  • Administer and configure Security SIEM, including log ingestion and fidelity tuning.
  • Develop and maintain custom use cases, dashboards, and reports to support proactive threat hunting and incident detection.
  • Monitor the health and performance of the SIEM infrastructure, ensuring all relevant log sources are properly ingested and parsed.

Required Qualifications:
  • Bachelor's degree in a related discipline and 4 years' experience in a related field. The right candidate could also have a different combination, such as a master's degree and 2 years' experience; a Ph.D. and up to 1 year of experience; or 16 years' experience in a related field
  • At least 2 years of demonstrated expertise in application containerization within Kubernetes.
  • At least 1 years of hands-on experience in server hardware management, including Out of Band configuration and physical component diagnostics and replacement.
  • Knowledge of scripting languages such as Python or Bash
  • Experience with security SIEM log management, alerting and analysis. IBM QRadar experience is beneficial
  • Ability to work independently and as part of a team in a fast-paced environment.

Preferred Qualifications:
  • Industry certifications such as CISSP, CEH, CompTIA Security+, CKS or equivalent.
  • Familiarity with cloud security practices (AWS, Azure, Google Cloud).
  • Knowledge of advanced threat detection techniques and threat-hunting strategies.
  • Experience in managing and securing virtualized environments.
  • Strong expertise in Ansible automation, including experience with creating and managing playbooks, roles, and inventories.

USD 99,000.00 - 165,000.00 per year
Compensation:
Compensation includes a base salary of $99,000.00 - $165,000.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.
Benefits:
The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave.

Top Skills

Ansible
Bash
Edr
Elasticsearch
Ibm Qradar
Kafka
Kibana
Kubernetes
Linux
Logstash
Python

Similar Jobs at Cox Enterprises

Yesterday
Hybrid
Atlanta, GA, USA
Senior level
Senior level
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
The Director of Workforce Identity and Access Management will develop IAM strategies, oversee privileged access, ensure compliance, and manage teams.
Top Skills: EntraidFido2Identity Access ManagementLdapOauthOidcOktaPkiSailpointSAML
Yesterday
Hybrid
Atlanta, GA, USA
Expert/Leader
Expert/Leader
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
The Principal IAM Architect will design and implement IAM solutions, ensuring secure user access and managing IAM strategy aligned with organizational security needs. They will collaborate with engineering teams, mentor junior engineers, and recommend emerging technologies.
Top Skills: Active DirectoryApi AuthenticationAttribute-Based Access ControlAws IamAzure Active DirectoryCi/CdCloud IamFederated Identity ManagementGoogle Cloud IamIamIdentity GovernanceIdentity Lifecycle ManagementJavaScriptKerberosLdapMicroservicesMulti-Factor AuthenticationOauth 2.0OktaPing IdentityPowershellPrivileged Access ManagementPythonRole-Based Access ControlSAMLSingle Sign-On
Senior level
Automotive • Cloud • Greentech • Information Technology • Other • Software • Cybersecurity
The Cybersecurity Senior Engineer will manage security operations and incident response, focusing on threat detection, investigation, and collaboration with teams to enhance security posture.
Top Skills: AWSAzureEdrEndpoint SecurityGCPIpsSIEMSiem/SoarThreat Intelligence

What you need to know about the Ottawa Tech Scene

The capital city of Canada and the nation's fourth-largest urban area, Ottawa has proven a rapidly growing global tech hub. With over 1,800 tech companies, many of which are leaders in their sectors, the city's tech talent now makes up more than 13 percent of its total workforce. This growth is driven not only by the big players like UL Solutions and Dropbox, but also by a thriving startup ecosystem, as new businesses emerge to follow in the footsteps of those that came before them.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account