Engineer, IT Security (Incident Response)
Overall Job Summary
Engineer, IT Security (Incident Response) | SEIM | CISSP (Hybrid - 2 days Onsite)
Tractor Supply Company benefits include: Bonus, Flexible PTO, Fertility, 401k, ESPP, Relocation & more
This position is responsible for the protection of Tractor Supply’s networks, applications, systems, and data through security testing, threat hunting, and control validation. This position will also support incident response processes. The Security Engineer also provides support for all areas of IT as they strive to develop secure systems.
Essential Duties and Responsibilities (Min 5%)
- Work with both internal and external customers to understand business requirements and needs.
- Perform proactive investigations within the environment to identify suspicious or abnormal behavior
- Deploy automated validations of security controls through both red and blue-team style exercises
- Analyze and reverse engineer malware to determine potential risk and impact
- Assess the impact of vulnerabilities and help evaluate risk based on deployed controls
- Consume threat intelligence, assess against the TSC environment, and provide reports to Leadership with appropriate recommendations
- Perform forensic investigations following the appropriate chain of custody
- Mentor junior Team Members on relevant processes, tools, and procedures
- Participate in 24x7 on-call rotations.
- Maintain and manage technical relationships with vendors.
- Discover current technical standards and best practices (R&D).
- Deploy patches, updates, and configuration changes.
- Create and document standards.
Qualifications
Preferred knowledge, skills or abilities
- Perform incident investigations and responses across diverse endpoints and cloud environments.
- Collaborate with key internal partners such as IT, Legal, HR, and external services related to incidents.
- Document incident outcomes and report findings to leadership.
- Create and maintain incident response playbooks.
- Lead incident response readiness assessments and tabletop security exercises.
- Increase automation capabilities.
- Engineer and maintain SIEM rulesets.
- Create and maintain data loss prevention rules.
- Build detections to find cyber threats across various technologies and log sources proactively.
Disclaimer
This job description represents an overview of the responsibilities for the above referenced position. It is not intended to represent a comprehensive list of responsibilities. A team member should perform all duties as assigned by his/ her supervisor.
Nearest Major Market: Nashville