Job Closed

This listing is no longer active.

Gunnison Consulting Group

Gunnison Consulting Group is an IT company that offers both commercial and government customers high-quality consulting services. Since 1994, the firm’s goal

System Administrator - Crowdstrike

Location

United States

Posted

89 days ago

Salary

$103K - $113K / year

Seniority

Mid Level

No structured requirement data.

Job Description

System Administrator - Crowdstrike

Gunnison Consulting Group

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are seeking a skilled Cybersecurity System Administrator to support critical enterprise security operations. This individual will support cyber attack surface management and network defense with a strong emphasis on Crowdstrike. This is not a user-level position; hands-on system administration experience with one or both platforms is required. - Administer and maintain Crowdstrike, Armis, and/or Corelight security platforms at the enterprise level. - Configure, optimize, and troubleshoot policies, sensors, connectors, and agents. - Manage device onboarding, visibility, and enforcement across large-scale environments. - Monitor security alerts and implement mitigation or response actions. - Collaborate with cybersecurity teams to enhance detection capabilities and enforce security policies. - Document procedures, configurations, and operational playbooks. Qualifications - 5+ years in cybersecurity, with 2+ years in Crowdstrike, Armis, and/or Corelight administration (not just usage). - Ability to write documentation, SOPs, and contribute to platform integration and optimization. - Good interpersonal skills and comfort engaging with federal client leadership. - U.S. Citizenship required. - Familiarity with security frameworks like NIST, Zero Trust, or RMF is a plus. Requirements - Ability to obtain and maintain a Public Trust. Benefits - 3 weeks of Personal Leave your first year. - 11 paid Holidays each year. - 5 days of Flexible Time Off each year. - 401(k) company match at 50% up to 10% of your salary. - Medical, Dental and Vision Insurance. - Life and Disability Insurance. - Public Transportation Subsidies. - Certifications and Training Allowance - $2,500/year!

Job Requirements

  • 5+ years in cybersecurity, with 2+ years in Crowdstrike, Armis, and/or Corelight administration (not just usage).
  • Ability to write documentation, SOPs, and contribute to platform integration and optimization.
  • Good interpersonal skills and comfort engaging with federal client leadership.
  • U.S. Citizenship required.
  • Familiarity with security frameworks like NIST, Zero Trust, or RMF is a plus.
  • Ability to obtain and maintain a Public Trust.

Benefits

  • 3 weeks of Personal Leave your first year.
  • 11 paid Holidays each year.
  • 5 days of Flexible Time Off each year.
  • 401(k) company match at 50% up to 10% of your salary.
  • Medical, Dental and Vision Insurance.
  • Life and Disability Insurance.
  • Public Transportation Subsidies.
  • Certifications and Training Allowance - $2,500/year!

Related Categories

Related Job Pages

More Security Operations Jobs

Oracle logo

Director, Physical Security Programs, Policy, and Assurance (Hyperscale)

Oracle

Oracle, headquartered in Austin, Texas, is a global leader in computing solutions. The company specializes in database management systems, cloud-engineered systems, and enterprise

We are seeking a senior leader to drive Global Physical Security (GPS) programs, policy, and assurance across our hyperscale environment. This role will coordinate cross-functional stakeholders, ensure policy and process alignment, and oversee governance and documentation to support reliable, auditable, and scalable security operations in hyperscale data centers and facilities. Only Oracle brings together the data, infrastructure, applications, and expertise to power everything from industry innovations to life-saving care. And with AI embedded across our products and services, we help customers turn that promise into a better future for all. Discover your potential at a company leading the way in AI and cloud solutions that impact billions of lives. True innovation starts when everyone is empowered to contribute. That’s why we’re committed to growing a workforce that promotes opportunities for all with competitive benefits that support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs. We’re committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_mb@oracle.com or by calling 1-888-404-2494 in the United States. Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans’ status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.

United States
$139K - $291K / year
Job Closed
USAA logo

SIU Investigator (Mid-level) - California

USAA

Since 1922, USAA has offered a fully integrated array of financial services to active and former U.S. military members and their families. USAA's services include banking, investme

Why USAA? At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families. Embrace a fulfilling career at USAA, where our core values – honesty, integrity, loyalty and service – define how we treat each other and our members. Be part of what truly makes us special and impactful. The Opportunity We are looking for a SIU Investigator (mid-level). This is a Desk position. Within defined guidelines and framework, protects USAA and our members from potential fraudulent claims by investigating questionable, suspect claims activity in compliance with state insurance fraud-related laws and regulations and policies and procedures. The selected candidate will have a strong multi-line SIU investigation background. This position is remote eligible. However, you must currently live in California. What you'll do: - Applies knowledge and understanding of fraud schemes and investigation strategies on any questionable or suspect first or third part claims. - Participates in the development of fraud prevention strategies. - Applies knowledge of P&C insurance industry products, services, and processes in investigating claims to include P&C insurance policy contracts, coverages and internal claims handling process and procedures. - Applies knowledge of state laws and regulations pertaining to insurance fraud in investigating claims. - Collects evidence of potential fraud through field or remote interviews and thorough searches of investigative databases, internal resources, Internet resources, public records, and forensic tools. - Makes recommendations within defined authority guidelines. - Prepares and presents detailed and comprehensive verbal and written investigative reports summarizing the results of the investigation and recommended outcome. - Develops and maintains external relationships with industry, law enforcement and other contacts involved in fraud investigation, detection, and prevention. - May serve as a resource team member on specific matters through demonstrated skill or training. - Assists with the delivery of fraud awareness training initiatives in a defined environment. - Handles CAT duty responsibilities as business requires. - Ensures risks associated with business activities are effectively identified, measured, monitored, and controlled in accordance with risk and compliance policies and procedures. What you have: - Minimum High School Diploma or General Equivalency Diploma (GED). - 2+ years claims adjusting experience, or P&C SIU/Fraud Investigation experience OR 4+ years prior investigative law enforcement (to include military) or relevant fraud industry investigation experience. - Proven investigatory skills. - Experience obtaining statements from various parties to incidents, witnesses, and suspects. - Ability to gather broad range of evidence and draw conclusions based on the objective details related to the applicability of fraud. - Demonstrated ability to organize and prioritize workload, performing multiple tasks and devising solutions to problems. - Familiarity with using computers and various software packages to enter and extract data for analysis from relevant data sources and systems. - Knowledge of city, state and local regulations, legal concepts, understanding of contracts, case law, medical treatment, and medical terminology. What sets you apart: - SIU experience conducting low to complex P&C fraud investigations OR a combination of Claims and Law Enforcement Investigations OR Military Investigative experience. - Strong multi-line SIU experience - Designations such as CFE, CIFI, SCLA, ACLS, FCLS, LPCS, AIC, CPCU, CCLS, or other. - US military experience through military service or a military spouse/domestic partner Compensation range: The annualized range for this position is: $77,120 - $147,390. However, this is an hourly position. Compensation: USAA has an effective process for assessing market data and establishing ranges to ensure we remain competitive. You are paid within the salary range based on your experience and market data of the position. The actual salary for this role may vary by location. Employees may be eligible for pay incentives based on overall corporate and individual performance and at the discretion of the USAA Board of Directors. The above description reflects the details considered necessary to describe the principal functions of the job and should not be construed as a detailed description of all the work requirements that may be performed in the job. Benefits: At USAA our employees enjoy best-in-class benefits to support their physical, financial, and emotional wellness. These benefits include comprehensive medical, dental and vision plans, 401(k), pension, life insurance, parental benefits, adoption assistance, paid time off program with paid holidays plus 16 paid volunteer hours, and various wellness programs. Additionally, our career path planning and continuing education assists employees with their professional goals. For more details on our outstanding benefits, visit our benefits page on USAAjobs.com Applications for this position are accepted on an ongoing basis, this posting will remain open until the position is filled. Thus, interested candidates are encouraged to apply the same day they view this posting. USAA is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

United States
$77.1K - $147K / year
Job Closed
Magnet Forensics logo

Incident Response & Security Operations Engineer

Magnet Forensics

We provide organizations with innovative tools to investigate cyberattacks and digital crimes

OtherRemoteTeam 201-500Since 2009H1B No Sponsor

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description This isn’t just another security operations role. As the Incident Response & Security Operations Engineer, you will play a critical role in protecting Magnet Forensics by leading security incident response efforts, strengthening operational security practices, and ensuring that detection and response functions work effectively at scale. You will serve as the central authority during security incidents, coordinating response activities across Information Security, IT, Business Systems, and third‑party security providers. Your work will directly influence how quickly and effectively the organization identifies threats, responds to incidents, and reduces operational risk. This role blends incident leadership, security operations judgment, and continuous improvement. You’ll be empowered to make decisions, improve processes, and ensure security operations remain resilient as the organization grows. What You'll Do - Incident Response Leadership - Lead security incidents from initial triage through containment, remediation, recovery, and closure. - Assess alert severity, scope, and business impact to determine appropriate response actions. - Coordinate response efforts across IT, Business Systems, Compliance, Legal, and other stakeholders as needed. - Lead incident bridges and response coordination during active events. - Ensure incidents conclude with clear outcomes, documentation, and follow-through. - Availability to respond and investigate incidents as part of the 365/24/7 SOC/NOC. - Managed SOC & Security Service Oversight - Own the operational relationship with managed detection and response providers. - Review and validate alert quality, relevance, and escalation decisions. - Ensure third‑party security services align with Magnet’s risk tolerance and operational needs. - Drive improvements in alert routing, escalation paths, response workflows, and automation. - Act as the internal authority on what constitutes actionable security signal. - Security Operations & Vulnerability Effectiveness - Ensure vulnerability management and detection processes reduce exposure windows and support timely remediation. - Improve visibility into vulnerability trends and patching progress over time. - Identify and resolve operational bottlenecks that slow remediation or response efforts. - Partner with IT teams to improve workflows, ownership, and accountability. - Digital Investigation & Forensic Enablement - Learn and utilize Magnet Forensics Axiom as part of incident investigation and response activities. - Support investigations involving computer, mobile device, and cloud data using a unified forensic platform. - Apply Axiom workflows to interrogate and analyze digital evidence during security incidents. - Leverage Magnet Axiom microlearning to build practical, real‑world forensic capability. - Ensure investigative findings support incident understanding, decision‑making, and documentation. - Vendor & Tool Accountability - Serve as the escalation point for security tooling vendors when issues impact response timelines or risk reduction. - Hold vendors accountable to operational expectations and support commitments. - Evaluate tooling effectiveness from an operational and risk‑reduction perspective. - Ensure security tools integrate cleanly into existing workflows. - Documentation & Continuous Improvement - Produce clear incident documentation including root cause, impact, response actions, and lessons learned. - Lead post‑incident reviews and ensure corrective actions are tracked and implemented. - Identify recurring incident patterns and drive long‑term improvements to reduce repeat issues. - Cross‑Functional Communication & Readiness - Act as the primary security point of contact during incidents for IT and Business Systems teams. - Communicate clearly and calmly during high‑pressure situations. - Translate technical security findings into business‑relevant risk and impact. - Support readiness activities such as tabletop exercises and response testing. Qualifications - Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent practical experience. - Demonstrated experience leading or coordinating security incident response efforts. - Experience working in a co‑managed SOC or managed detection and response environment. - Broad security operations experience across endpoint, email, identity, vulnerability management, SaaS, and cloud environments. Requirements - Strong judgment in assessing alert severity, business impact, and escalation needs. - Ability to operate effectively with incomplete or ambiguous information. - Strong written communication skills, including incident summaries and RCA documentation. - Proven ability to coordinate across multiple teams during operational events. - Process‑oriented mindset with a focus on continuous improvement. Benefits - Generous time off policies. - Competitive compensation. - Volunteer opportunities. - Reward and recognition programs. - Employee committees & resource groups. - Healthcare and retirement benefits.

United States
Job Closed
Fresenius Medical Care logo

Principal Analyst Cyber Security Operations - SOAR

Fresenius Medical Care

Creating a future worth living. For patients. Worldwide. Every day.

OtherRemoteTeam 10,001+Since 1996H1B Sponsor

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description Fresenius Medical Care’s CSOC seeks a Principal Analyst to lead engineering and development of advanced enterprise-wide detection and threat analytics capabilities. The role drives security engineering strategy, AI enhanced detection logic, threat modeling, and continuous tuning across diverse platforms. It also leads SOAR engineering—building automations, integrating security tools, and creating workflows that reduce manual work and speed up response—while partnering closely with Security and Global IT teams. This is a U.S.-based remote position supporting Fresenius Medical Care’s Global Cyber Security Operations Center. Principal Duties and Responsibilities - Lead architecture, development, and maintenance of SOAR playbooks and automation pipelines. - Automate repetitive security operations and security engineering workflows (EDR, VM scanning, SIEM enrichment, IR actions). - Integrate security tools and platforms using APIs, scripting, and microservices. - Improve MTTR and reduce operational overhead through intelligent automation by closely partnering with Security Engineering, IT Operations, and Cloud Teams. - Develop KPIs to measure automation impact and report operational improvements. - Lead POCs for new automation platforms and evaluate opportunities for AI-based operations. - Provide mentorship and code reviews for automation engineers and analysts. - Partner with security engineering on telemetry strategy, logging requirements, and architectural standards for monitoring visibility. - Integrate AI/ML driven detection capabilities into existing pipelines, validating model performance and reducing false positives. - Maintain ingestion pipelines, parsing logic, normalization rules, and event taxonomies across critical log sources: identity, endpoint, cloud, network, application, and medical systems. - Lead the design, implementation, and optimization of enterprise-wide detection content, including correlation rules, behavioral analytics, machine learning assisted detections, and anomaly models. - Develop detection playbooks and logic focused on lateral movement, credential abuse, insider threats, privilege escalation, cloud compromise, and advanced persistent threats. - Tune, optimize, and enrich detection pipelines with contextual data (identity, asset, threat intelligence, vulnerability data). - Mentor analysts and engineers globally on detection logic development, data analytics, and platform best practices. - Serve as a senior escalation point for complex security incidents and investigations. Physical Demands and Working Conditions The physical demands and work environment characteristics represent those typically encountered while performing essential duties. Reasonable accommodation may be made as needed. This is a remote role with availability expected during core hours and during escalations as required. Supervision Provides technical leadership and mentorship to threat engineers, automation engineers, and security operations analysts globally. Does not directly manage staff. Education - Minimum Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent professional experience). Experience and Required Skills - 5+ years in automation engineering, SOAR engineering, or DevSecOps. - Strong scripting/programming experience (Python required; PowerShell, Go, or NodeJS a plus). - Hands-on experience with: - SOAR platforms (Cortex XSOAR, Splunk SOAR, Microsoft Sentinel automation) - API integrations and REST/JSON workflows - CI/CD tools (GitHub, GitLab, Azure DevOps) - Deep understanding of SOC processes, alerting workflows, and incident response. - Experience integrating EDR, VM, identity, and cloud security tools. Preferred - Experience with AI-driven automation or LLM-assisted workflow design. - Certifications: GCSA, GCFA, GCIH, scripting/DevOps certs. - Experience in hybrid or multi-cloud environments. Compensation The rate of pay for this position will depend on the successful candidate’s work location and qualifications, including relevant education, work experience, skills, and competencies. Annual Rate: $117,700.00 - $196,200.00 for Waltham, MA location. Benefits - Comprehensive benefits package including medical, dental, and vision insurance. - 401(k) with company match. - Paid time off. - Parental leave. - Potential for performance-based bonuses depending on company and individual performance.

United States
$117K - $196K / year
Job Closed