Lead Information Security Engineer
Lumen TechnologiesAbout the role
About Lumen
Lumen connects the world. We are igniting business growth by connecting people, data and applications – quickly, securely, and effortlessly. Together, we are building a culture and company from the people up – committed to teamwork, trust and transparency. People power progress.
We’re looking for top-tier talent and offer the flexibility you need to thrive and deliver lasting impact. Join us as we digitally connect the world and shape the future.
The Role
We are seeking a highly skilled cybersecurity professional to join our team. This role focuses on advanced cybersecurity operations, threat detection, incident response, and digital forensics. The ideal candidate will possess strong technical expertise across multiple cybersecurity domains, with an emphasis on cloud automation, scripting, data analysis, and custom threat detection.
The Main Responsibilities
Cloud Security & Forensics Investigation
- Develop and maintain effective playbooks for handling cloud-based incidents.
- Perform cloud-native automation to contain compromised or malicious resources.
- Create advanced queries, custom dashboards, and optimize search performance.
- Analyze PCAP files and network telemetry (NetFlow and SIEM).
- Parse structured and unstructured data.
- Create and tune rules for custom threat detection.
- Tune EDR solutions using custom detection logic.
- Advanced Scripting & Automation
- Proficient in Linux/Unix environments.
- Develop automation scripts for security operations and data handling.
What We Look For in a Candidate
- Mandatory: Experience with ExtraHop for network detection and response (NDR).
- Proficiency in SIEM technologies.
- Experience analyzing PCAP files.
- Expert-level knowledge of cloud incident response in AWS, Azure, and Google Cloud environments.
- Expertise in NetFlow analysis and correlation with other network telemetry.
- Understanding of Infrastructure as Code (IaC).
- Experience parsing structured and unstructured data.
- Experience creating and tuning custom threat detection rules.
- Proficiency in tuning EDR solutions with custom logic.
- Mastery of Python for automation, data handling, and log parsing (e.g., JSON, YAML).
- Familiarity with automation frameworks such as Ansible, SaltStack, or Terraform.
- Advanced Unix/Linux command-line skills (e.g., awk, sed, grep, cut).
- Experience with Unix forensics using tools like auditd, syslog, journald, etc.
- Bachelor’s degree in a related field or equivalent experience.
- Relevant certifications are a plus.
- Minimum of five years of field experience.
- Experience conducting intrusion investigations
Compensation
This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors.
Location Based Pay Ranges:
$103,711 - $138,281 in these states: AL, AR, AZ, FL, GA, IA, ID, IN, KS, KY, LA, ME, MO, MS, MT, ND, NE, NM, OH, OK, PA, SC, SD, TN, UT, VT, WI, WV, and WY.
$108,896 - $145,195 in these states: CO, HI, MI, MN, NC, NH, NV, OR, and RI.
$114,082 - $152,109 in these states: AK, CA, CT, DC, DE, IL, MA, MD, NJ, NY, TX, VA, and WA.
Lumen offers a comprehensive package featuring a broad range of Health, Life, Voluntary Lifestyle benefits and other perks that enhance your physical, mental, emotional and financial wellbeing. We're able to answer any additional questions you may have about our bonus structure (short-term incentives, long-term incentives and/or sales compensation) as you move through the selection process.
Learn more about Lumen's:
#LI-Remote
Requisition #: 339383
Background Screening
If you are selected for a position, there will be a background screen, which may include checks for criminal records and/or motor vehicle reports and/or drug screening, depending on the position requirements. For more information on these checks, please refer to the Post Offer section of our Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds. Free account required — sign up in 30sApply for this role