Current Statistics
1,807,564 Total Jobs 361,405 Jobs Today 19,487 Cities 222,713 Job Seekers 146,819 Resumes |
|
|
|
|
|
|
Senior, Software Engineer, Full Stack - Salisbury Maryland
Company: Capital One Location: Salisbury, Maryland
Posted On: 11/12/2024
Center 3 (19075), United States of America, McLean, VirginiaPrincipal Associate, Cyber Security Log ManagementCapital One is looking for a Principal Associate to join our Cyber Security Log Management team. This team is responsible for enabling comprehensive cyber monitoring by ensuring standard log events are generated across Capital One. We achieve our mission by setting security logging strategy and requirements and influencing enterprise technology teams to deliver.What you'll do: - Assist in developing and communicating our minimum logging requirements across our applications, infrastructure (cloud, network, databases), and endpoints (workstations, servers). Maintain close ties to developers across the company ensuring we provide clear logging standards.
- Review and assess security logging as delivered by enterprise teams versus requirements and standards. Ensure adherence to standard schemas, log design, log transportation deployments, and log quality.
- Review cybersecurity logs to ensure that the most accurate and relevant log data is collected.
- Establish technical best practices for security logging (event generation, delivery, storage).
- Track logging compliance from enterprise teams and escalate non-compliance of logging to executive leadership.
- Execute logging controls on a regular basis, following playbooks and collecting evidence.
- Identify and document enterprise risks and issues, including dimensioning risk and collecting stakeholder feedback. -
- Collect, track, and report logging metrics to leadership. Collaborate with stakeholders to automate log compliance tracking and enforcement, including developing dashboards and executive reports.About You:
- You understand security logging & monitoring needs for a Cyber Operations team at a tactical level and have experience in hands on technical design and implementation of logging
- You have experience implementing high-visibility and high-impact enterprise cybersecurity projects with cross-functional teams including planning, development and management of technical requirements, design, validation, and non-compliance escalation
- You demonstrate strong assessment and analytical skills in the security logging domain, strong judgment skills determining adherence to security policies, and experience with governance, risk, and controls. -
- You are trusted to lead through ambiguity and can work with a leader to identify and focus on highest priority work.
- You consistently deliver excellence autonomously.
- You look outside of your team to create synergies and open, working relationships with technology groups and other stakeholders, sharing customer and engineering benefits for security logging to gain buy-in.
- You have experience with security logging projects and programs across a technology environment, contributing to logging strategy with architects, developers, and data experts.
- You have experience with program management and influencing matrixed technology teams to deliver requests.
- You have passion and expertise in one or more of the following areas: security operations, security log analysis, cloud security, network security, application security, network security and exploitation, and host and endpoint security.Basic Qualifications:
- High School Diploma, GED or equivalent certification
- At least 4 years of experience working in cybersecurity or information technology
- At least 2 years of experience in cybersecurity operations
- At least 1 year of experience working with Linux, Unix, or Windows operating systems
- At least 1 year of experience with public cloud environments (AWS, Azure, or Google Cloud Platform)Preferred Qualifications:
|
|
|
|
|
|
|