| Job Summary: The Cyber Security Engineer will be responsible for the operation, maintenance, and security of an Active Directory forest supporting multiple enterprise forests. The engineer will be responsible for protecting the highly privileged accounts and their associated credentials. The engineer will also work with team members to enhance security monitoring tools with contextual information. The engineer must be able to review vulnerability scans and provide an assessment of the vulnerabilities as they relate to the environment. The engineer will review various sources for security information and threats and determine the potential impact to the environment.  Risk assessment techniques are a plus. | 
| Essential Functions of the Job: 
Ability to manage and maintain an Active Directory forest infrastructureAbility to troubleshoot common Windows and Active Directory issuesAbility to locate and assimilate new information to provide context for security eventsExcellent English language skills, both written and verbalExcellent technical writing skillsExcellent interpersonal, communication, consultative and project management skillsStrong judgment and analytical abilityAbility to implement and support privileged accounts throughout the enterprise | 
| Analytical/Decision Making Responsibilities: 
Ability to recognize and research attacks and attack patternsAbility to prioritize events so that the most impactful are addressed firstAbility to work effectively with clients, management staff members, venders and consultantsProject planning and project leadership skillsAbility to interface with cross-functional technology teamsAbility to deliver projects on time and on budgetPerform advanced analysis, troubleshooting, problem isolation of customers and partners issues and requests | 
| Knowledge and Skills Requirements: 
Strong knowledge of information security technologiesServer 2019 / 2022 (Core and Standard versions), Windows 11 maintenance & troubleshootingActive Directory Maintenance & Troubleshooting (object backup/restore, disaster recovery)Active Directory Multi Forest Management within TrustsGroup Policy Management, Troubleshooting, DesignDNS, DFS, WSUS, CA, SCOM, Hyper-VTCP/IP network expertiseExperience with host based intrusion detection/prevention (IDS/IPS)Knowledge of Cloud Computing & Security (Azure)Knowledge of PowerShell scriptingKnowledge of IPsec desiredKnowledge of PKI desiredknowledge of Microsoft’s Active Directory administrative tiers and the ESAE Administrative Forest Design model is a plusExperience with 24x7 support is a plusStrong research skillsExcellent team skills and integrity in a professional environmentExcellent social, communication and technical writing skills Demonstrated integrity in a professional environmentKnowledgeable in legal issues within information security environments (i.e., data privacy)Excellent teaming skillsExceptional social, communication, and technical and general writing skills | 
| Supervision Responsibilities: 
Must be self-motivated and able to work independently, often unsupervisedSupervisory responsibility over a team of 4 to 8  L3 specialists, engineers, and technical leads of varying skills and experienceResponsible for providing guidance to colleagues/counselees where required through established coaching and feedback processesResponsible for co-developing annual plans with counseleesParticipation in firm’s performance management and development processInvolved in interviewing and hiring decisions for prospective staff   | 
|     | 
| Job Requirements: | 
| Education: Bachelors or Masters Degree in Computer Science, Computer Information Systems, Engineering or related field. ALLOWABLE SUBSTITUTION: The equivalent combination of education, technical certifications or training, or work experience.   | 
| Experience: 
10+ years Active Directory configuration, administration, and troubleshooting10+ years Windows Server platform administration2+ years ESAE administration (nice to have)Scripting and writing PowerShell CmdletsReviewing security events and threatsUnderstanding of Public Key Infrastructure (PKI) and certificate-based IPsec IT service management via ServiceNow   | 
| Certification Requirements: Microsoft, ComTIA, ITIL, GIAC etc. ( desirable)   |