Cybersecurity Engineer
RailWorks CorporationAbout the role
Job ID: 19085
Benefits Offering
RailWorks is committed to helping our employees live better lives. We offer comprehensive benefits packages to eligible employees, including competitive pay, medical, dental and vision coverage, 401(k) with company match, and additional performance incentives.
Salary range: $100,000 – $150,000 / year, commensurate with experience and work location.
Position Summary
We’re looking for a motivated Cybersecurity Engineer with approximately 4-6 years of experience to help protect our systems, applications, and data. In this role, you’ll gain hands on experience and grow your technical skills across key areas such as threat detection, incident response, data protection, and user awareness. You will report to the Director of Security Operations.
This position also requires answering calls from our Security Operations Center (SOC) during weekends and off hours to ensure timely response to critical security alerts. The role is based out of our Farmingdale, New York office, with work primarily on site and occasional client visits.
Primary/Essential Responsibilities and Duties
1. Phishing Awareness & Incident Response
- Promptly respond to reported phishing emails, aiming for a rapid response time.
- Analyze email headers and URLs to confirm threats.
- Using Mimecast, block malicious indicators (e.g., URLs, domains, IPs) as necessary.
- Close incident tickets promptly and document actions taken.
- Conduct root cause analysis to identify gaps in email filtering and recommend improvements.
- Contribute to phishing awareness efforts by sharing trends and creating educational materials to reduce future risk and help foster a strong security culture across the organization on a weekly, monthly and annual basis.
2. End User Security Support
- Investigate and respond to suspicious end-user activity, such as abnormal login behavior, unauthorized software installations, or risky web activity
- Analyze endpoint alerts from EDR tools (e.g., Carbon Black) and escalate as needed based on threat severity
- Tune and adjust firewall policies (e.g., Palo Alto) to reduce false positives and strengthen network perimeter defense
- Support office-based network security by reviewing traffic logs, managing Cisco Umbrella policies, and blocking malicious domains/IPs
- Assist in implementing hardening controls such as disabling unused ports, enforcing MFA, and configuring secure group policies
- Help troubleshoot and optimize performance of security tools affecting users, such as antivirus, email filters, and endpoint agents
3. Security Monitoring
- Monitor and investigate alerts generated by the 24/7 Security Operations Center (SOC), ensuring timely and accurate triage of potential threats.
- Maintain ongoing communication with the SOC team to ensure they have the necessary visibility into RailWorks systems, networks, and logging sources.
- Regularly review and validate alert configurations, use cases, and tuning efforts to ensure the SOC is focused on actionable and relevant threats.
- Provide context, asset tagging, and escalation guidelines to help the SOC accurately prioritize and escalate critical events.
- Track SOC performance through metrics such as response time, alert accuracy, and incident resolution quality.
- Coordinate with the SOC on threat hunting, incident response, and reporting activities to ensure alignment with RailWorks’ security objectives.
- Document findings and outcomes from SOC investigations in daily and weekly reports for leadership visibility.
4. Threat Intelligence & Vulnerability Research
- Collaborate with IT to address vulnerabilities or misconfigurations.
- Using (Tenable) to stay informed about emerging threats and vulnerabilities relevant to the organization.
- Assist in prioritizing patches and implementing necessary security measures.
In Addition, we’ll trust you to:
- Policy & Compliance: Help maintain and enforce security policies and procedures to ensure compliance with fr
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s