Location: Herndon, VA

Job ID: 5750


Capital TechSearch is seeking Security Engineer. As core team member of the group responsible for content development and management of various security products. This role is also responsible for ensuring the effective use of application, integration and operation of key security products utilized within Global Security.
Job Responsibilities:
  • Configure and tune Intrusion Prevention System (IPS) and NGFW devices
  • Work with clients to plan, design and implement security profiles and distribution to control IPS and NGFW devices
  • Actively assist with IDS/IPS troubleshooting efforts, including log analysis and network captures/analysis. Escalate events and unusual activity of note for further incident response investigation to the SOC. Work with vendors to resolve problems via ticketing portals and escalate issues to team lead and/or management as needed
  • Evaluate, test and implement security policies, digital vaccines and security filters to ensure we are getting the most out of the security products
  • Respond to alerts and messages, alerting if necessary staff and escalating issues as appropriate. Open, update, monitor and close assigned trouble tickets
  • Collaborate with other teams to support malware analysis, intrusion detection & response, and threat intelligence
  • Create, modify, test and deploy custom IDS/IPS policies and signatures derived from analysis
  • Maintain up-to-date documentation on network infrastructure diagrams, procedures, and policies
  • Perform post mortem/root cause analysis, identify areas of improvement and provide recommendations based on findings
  • Provide tier 1 Email troubleshooting support due to security settings and/or filters
  • Engage with various business units to assess, report, and help reduce Cyber Security risk
  • Identify needs for automation and orchestration
  • Actively develop and update operational Playbooks

Job Qualifications:
  • 5 years’ experience in Information Technology
  • 3 years’ experience managing large scale enterprise firewalls deployments
  • 2 years’ experience with Email Security
  • 2 years’ experience working with Email technologies with a strong understanding of SMTP, DNS, SPF, DMARC, DKIM. Including troubleshooting Mail Transfer Agent (MTA) systems, mail relaying and routing.
  • Enterprise IDS/IPS experience particularly with SourceFire , TippingPoint and/or Palo Alto a must
  • High level understanding of information security products and technologies (Intrusion Detection/Prevention, Firewall, Advanced Threat, etc.)
  • High level understanding of TCP/IP Routing and Networking knowledge
  • Experience with one or more technologies (PAN, SMS, WildFire)
  • Proficient in data/packet capture, analysis and troubleshooting
  • Knowledge of regular expressions
  • Splunk SPL experience a plus
  • Ability to work independently
  • Superior customer service skills and demonstrated success working directly with customers
  • Strong written and verbal communication skills
  • Sound problem resolution, judgment, negotiating and decision making skills
  • Strong work ethic and commitment to accomplish assigned tasks
Eligible to work for any employer in the USA


To be immediately and seriously considered for this exceptional opportunity please apply below. Your responses will be held in the strictest confidence.

Please call our office if you have any questions. Capital TechSearch, Inc. is an Equal Opportunity Employer.


Apply for this position

  • Accepted file types: doc, docx, pdf, txt.
    File types permitted: .DOC, .DOCX, .PDF, or .TXT
  • Accepted file types: docx, doc, pdf, txt.
    docx, doc, pdf, or txt files
  • Add any additional information in the notes that describes your value and fit for the position. Additional considerations may include your availability, compensation, and if you are not local to the position, your interest in relocating.

By clicking "Apply" you agree to receive new job updates, information and news from Capital TechSearch, Inc. You can always unsubscribe from our communications at any time.