What are the responsibilities and job description for the Cyber Security Engineer position at Top Stack?
Here is the revised version rewritten as a Mid-Level Information Security Engineer (onsite, 5 days/week), with responsibilities and tone adjusted accordingly:
Information Security Engineer – Mid Level
Onsite, 5 Days/Week — Audubon, PA
Position Summary
We are seeking a Mid-Level Information Security Engineer to support and enhance the organization’s cybersecurity posture across on-premise and cloud environments. This role will assist with threat detection, incident response, vulnerability management, and daily security operations. The ideal candidate brings hands-on technical experience, strong analytical skills, and a desire to grow within a collaborative security team. You will work closely with senior engineers, IT teams, and business stakeholders to help maintain a secure, resilient enterprise environment.
Essential Functions
- Support the implementation and maintenance of security tools, solutions, and controls across cloud and on-prem environments.
- Assist with threat monitoring, incident response, and basic forensic analysis under senior team guidance.
- Develop and update security automation scripts and operational playbooks.
- Participate in vulnerability scanning, tracking, and remediation coordination.
- Work with DevOps and IT teams to integrate security best practices into daily operations and CI/CD pipelines.
- Contribute to red/blue team exercises, tabletop drills, and testing of incident response processes.
- Assist in evaluating and deploying new security technologies and improvements.
- Support compliance activities related to frameworks such as ISO 27001, NIST, and SOC 2.
- Prepare routine reporting and dashboards covering threats, risks, and remediation progress.
- Provide guidance to junior or entry-level security staff as needed.
- Adhere to organizational policies, codes of conduct, and required compliance training.
Reasonable accommodations may be made for individuals with disabilities to perform essential job functions.
Qualifications
Education
Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent experience).
Preferred Certifications
(One or more is a plus; not all required)
- Security
- GSEC
- GCIH
- CEH
- AWS/Azure Security certifications
- Other intermediate-level security credentials
Technical Skills
- Experience with SIEM, EDR, and vulnerability management tools.
- Scripting familiarity (Python, PowerShell, Bash).
- Working knowledge of cloud security (AWS, Azure, or GCP).
- Understanding of network security, identity management, and zero trust concepts.
- Exposure to DevSecOps or CI/CD pipeline security is a plus.
Competencies
- Action Oriented: Takes initiative and follows through on tasks.
- Problem Solving: Uses analytical thinking to identify and resolve issues.
- Approachability: Communicates well with peers and internal teams.
- Composure: Stays steady and professional during security incidents.
- Technical Learning: Quickly absorbs new technologies and concepts.
Physical Demands
- Ability to sit, climb, stoop, kneel, crouch, or crawl as required.
- Regularly lift/move up to 10 lbs; occasionally up to 25 lbs.
- Must maintain adequate vision for detailed technical work.
Values & Culture
- Innovation: Continuously seeks better, more secure solutions.
- Customer Focus: Responds quickly to internal customer needs.
- Teamwork: Collaborates respectfully and supports colleagues.
- Driven: Works proactively and maintains a strong results focus.