Jobs and Careers
GU
IT Security Engineer -Associate Principal
GuidehouseUnited Statesfull_timeVerifiedPosted 10 Apr 2025
💰 $196,000/yr($118,000/yr – $196,000/yr)
About the role
Job Family:
IT Cyber Security
Travel Required:
Clearance Required:
What You Will Do:
This role plays a pivotal role within the Information Security Operations team and is dedicated to Security Operations and Incident Management/Response processes, SIEM engineering, Threat Hunting, Automation, Cyber Architecture, and Threat Intelligence.
This position is responsible for enhancing SIEM and tool monitoring, tuning, detection, and alerting across multiple domains, to support cyber incident response capabilities and tooling, with the goal of identifying, analyzing, and mitigating security threats across the Guidehouse environment to protecting Guidehouse and Client data within systems, networks, and cloud environments.
You will be mentoring and working with SOC analysts to increase knowledge and skill with detection techniques and other SecOps technologies. You may also participate on IT Security projects to enhance IT Security capabilities, improve monitoring coverage, drive detection and threat hunting efforts, leading to an overall improvement of enterprise cybersecurity posture.
The successful candidate applies technical knowledge and experience to drive innovation and performance improvement while demonstrating critical thinking, problem solving, and sound logic when assessing problems and opportunities in generating solutions. This position reports into the Director of IT Security Operations.
Job Function:
Solid understanding of platform, network, application, and cloud security fundamentals, threats, attack techniques, and mitigations
Experience interpreting vulnerability scan data and CVEs, assessing and responding to vulnerabilities, including a foundational understanding of risk management
Knowledge of cybersecurity concepts, and network/web protocols
Demonstrated knowledge of adversary TTPs (Tactics, Techniques and Procedures)
Designs and configures monitoring and alerts using SIEM, Azure Purview, Defender, CSPM, etc.
Experience with one or more of SIEMs, SOAR technologies, building/maintaining IR tools and processes, programming/scripting, threat hunting, SIEM detection engineering/tuning.
Assists in conducting risk assessments and security audits to identify vulnerabilities and recommending mitigations to enhance security posture
Demonstrates effective written and verbal communication skills; delivered in a professional, respectful, and timely manner
Produces high quality work product leveraging existing templates, tools, and methodologies that align to applicable professional standards and best practices
Clearly and concisely conveys more complex messages to IT Security Operations team; effectively presenting facts and recommendations
Identifies risk issues (e.g., technical, client service, engagement, team, internal and external) and escalate them to IT Security supervisors and senior leaders
Helps with issue resolution, risk mitigation and contingency planning in alignment with IT Security risk mitigation plans
Uses critical thinking, analysis, expertise, and collaboration to develop technical solutions and solve problems
Works in unstructured or unclear circumstances
Mentor, train, and guide IT Security technical staff across the organization, fostering a culture of technical excellence, continuous learning, and security-first principles.
Promotes the development of new technical knowledge and skills within IT Security Operations team
Takes ownership of tasks, resolving issues and escalating as appropriate
Presents themselves and the company in a manner that always promotes a positive lasting impression of high quality, promptness, and professional service
Draws from experience to propose solutions to meet needs, focusing the team accordingly
Builds a high level of trust with stakeholders by meeting and anticipating needs and expectations
Stays current on Azure and AWS events, trends, and issues in the news relevant to IT Security
Ensures prescribed IT Security policies, procedures, and standards are followed while identifying opportunities for system and process enhancements
Works independently on mid to large or complex projects and assignments, with minimal guidance and to influence parties within and outside the job function at an operational level regarding policies, best practices, and procedures
Advanced understanding and ability to apply standards, principles, theories, and technical concepts
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s