Talent.com
Security Analyst/Engineer
Security Analyst/EngineerLimbach Facility Services • Warrendale, PA, United States
Security Analyst / Engineer

Security Analyst / Engineer

Limbach Facility Services • Warrendale, PA, United States
1 day ago
Job type
  • Full-time
Job description

Description

Who We Are...

Since our founding in 1901, Limbach's primary core value has always been simple : We Care. That commitment extends to our people, our customers, and the communities we serve-driving a culture of belonging across our industry.

Limbach Facility Services LLC, a subsidiary of Limbach Holdings, Inc., (NASDAQ : LMB), is a leading building systems solutions firm delivering mission-critical systems that support life's most important moments. We specialize in revitalizing and maintaining HVAC, mechanical, electrical, plumbing, and control systems within existing facilities-ensuring buildings are always ready to perform when it matters most.

Learn more about Limbach by checking out our YouTube channel : We Are Limbach - YouTube

From healthcare and education to government and commercial facilities, we partner with building owners and operators to safeguard reliability, efficiency, and comfort where it's needed most.

Our vision is to create value for building owners targeting opportunities for long term relationships.

Our purpose is to create great opportunities for people.

Learn more about Limbach's commitment to our people and career opportunities, straight from our employees via the Limbach Unlocked podcast : Limbach Unlocked - Why We Chose Limbach

We carry out our vision and purpose through a commitment to our four core values...

  • We Care
  • We Act with Integrity
  • We Are Innovative
  • We Are Accountable

The Benefits & Perks...

  • Base salary range of $120K - $130K
  • Full portfolio of medical, dental, and vision benefits, along with 401K plan and company match.
  • HSA, FSA, and life insurance offerings.
  • Maximize your professional development with our award-winning Learning & Engagement team.
  • Engage in our "We Care" culture through our ERGs, brought to you by EMBRACE.
  • Career pathing flexibility and mobility.
  • Who You Are...

    As Security Analyst / Engineer, you will serve as the organization's primary, hands-on security operations lead. Reporting directly to the CIO, the candidate will triage SOC outputs, tune detection logic, drive automated response through SOAR playbooks, own the vulnerability management lifecycle, and lead incident response from detection through remediation and post-incident lessons learned. They act as a trusted partner to our outsourced SOC, the quarterback for IR, and the technical voice to the CIO and Board on operational security posture working closely with our IT Operations leader.

    This Position...

    Some examples of the work you might do includes :

  • Security Operations & Monitoring : Serves as the primary liaison to our outsourced SOC and vCISO. Triage, validate, and prioritize alerts from SIEM (e.g., Google Chronicle, GrayMatter, or equivalent). Ensures log integrity, enrichment, and actionable alerting.
  • SOAR & Automation : Builds, maintains, and iterates SOAR playbooks (Google SOAR or comparable) to automate containment, enrichment, and evidence collection; lowers MTTR by automating low-risk actions while preserving human judgment for high-impact events.
  • Incident Response : Lead detection containment eradication recovery workflows. Owns post-incident reviews, creates remediation roadmaps, and tracks closure of corrective actions. Conducts regular tabletop exercises and maintains IR runbooks and escalation paths.
  • EDR / MDR / XDR Management : Administers and tunes EDR / MDR / XDR platforms (deployment health, telemetry, detection rules, containment capabilities). Investigates endpoint events, performs root cause analysis, and coordinates remediation with IT operations.
  • Vulnerability Management : Operates the vulnerability management program (Rapid7, Tenable.io, or equivalent) : schedules scans, triages findings, prioritizes by risk and asset criticality, and shepherds remediation with engineering teams. Proposes and verifies system hardening measures and baselines.
  • Detection Engineering : Authors correlation rules, analytic searches, and detection content; reduces false positives while increasing meaningful detections. Builds dashboards and KPIs that communicate detection coverage and efficacy.
  • M&A & Integration Security : Leads security due diligence and integration activities for acquisitions : identities & accesses reviews, vulnerability scans, endpoint posture checks, and integration playbooks to onboard new entities into Limbach's security baselines.
  • Training & Knowledge Transfer : Develops and delivers IR and detection training for IT and business teams. Produces clear operational documentation, SOPs, and playbooks. Coaches SOC engineers and champions continuous improvement.
  • Reporting & Executive Communication : Produces monthly operational and executive risk reports (incidents, vulnerability trends, MTTR, coverage gaps). Briefs the CIO and Board with concise risk-based recommendations.
  • Third-Party Coordination : Manages relationships and SLAs with MDR / MSSP / MDR providers, forensic firms, and other security partners.
  • What You Need...

  • 5+ years of progressive, hands-on cybersecurity experience, with significant time spent in SOC and incident response environments.
  • Demonstrated expertise with SIEM and SOAR platforms (Google Chronicle, GrayMatter, Chronicle SOAR, or comparable).
  • Proven track record managing EDR / MDR / XDR solutions and performing endpoint investigations.
  • Hands-on experience owning vulnerability programs with Rapid7, Tenable.io, or similar tooling.
  • Experience writing detection logic, playbooks, and incident runbooks; demonstrable success in alert tuning and automation.
  • Real-world experience coordinating cross-functional incident response activities and driving remediation to completion.
  • Scripting and automation skills (PowerShell, Python, Bash) to automate enrichment, containment, and evidence collection.
  • Strong Windows and Linux administration / forensics fundamentals; network fundamentals and packet-level troubleshooting.
  • Familiarity with cloud security (Azure, Microsoft 365, Intune, Conditional Access) and endpoint management tools.
  • Knowledge of security controls, hardening standards, and configuration baselines.
  • Ability to read and interpret logs and telemetry across endpoints, network devices, and cloud services.
  • Superior written and verbal communication; able to explain technical findings to non-technical and executive audiences.
  • Decisive under pressure, methodical in evidence collection, and disciplined in documentation.
  • Collaborative, tactful, and experienced at working with cross-functional teams (IT ops, HR, Legal, vendor partners).
  • Strong project management and organizational skills with an eye for measurable outcomes.
  • Ability to travel up to 15% of the time.
  • Preferred Qualifications :

  • Certifications : CISSP, GCIH, GCFA, ECIH, or Security+ (or equivalent).
  • Prior role as a dedicated incident responder or IR team lead.
  • Experience with Microsoft Defender for Endpoint, Azure Security Center, and native cloud telemetry.
  • Familiarity with compliance frameworks (SOC 2, NIST CSF / 800-171, ISO 27001) and how detection / IR maps to them.
  • Experience in multi-site enterprise environments and with M&A integration security.
  • Conduct Standards :

  • Maintains appropriate Company confidentiality at all times.
  • Protects the assets of the Company and ethically upholds the Code of Conduct & Ethics in all situations.
  • Cultivates and promotes the "Hearts & Minds" safety culture.
  • Consistently exemplifies the Core Values of the Company (we CARE, we act with INTEGRITY, we are INNOVATIVE, and we are ACCOUNTABLE).
  • Work Environment :

  • This position operates primarily in an office environment and routinely utilizes standard office equipment, such as computers, phones, copiers, and filing cabinets.
  • The Company's Remote Work Policy is applicable to this position.
  • Physical Demands :

  • In performing the duties of this job, the incumbent is regularly required to talk, hear, perform repetitive motion, and possess an appropriate degree of both visual acuity and manual dexterity.
  • This is considered a sedentary position, which means possible exertion up to ten (10) pounds of force occasionally, and / or negligible amount of force frequently or constantly to lift, carry, push, pull, or otherwise move objects.
  • This job description is intended to describe the general nature of work being performed by the individual who assumes this role, not an exhaustive list of responsibilities. Duties, responsibilities, and activities may change at any time, with or without notice, as business needs dictate. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of this position. Limbach Facility Services LLC is an Equal Opportunity Employer.

    #LFS

    Equal Opportunity Employer / Protected Veterans / Individuals with Disabilities

    This employer is required to notify all applicants of their rights pursuant to federal employment laws.

    For further information, please review the Know Your Rights notice from the Department of Labor.

    Create a job alert for this search

    Security • Warrendale, PA, United States

    Related jobs
    Project Security Design Engineer

    Project Security Design Engineer

    Alstom • Pittsburgh, Pennsylvania, USA
    Full-time
    At Alstom we understand transport networks and what moves people.From high-speed trains metros monorails and trams to turnkey systems services infrastructure signalling and digital mobility we offe...Show more
    Last updated: 22 hours ago • Promoted • New!
    Information Security Analyst

    Information Security Analyst

    iQuasar • Pittsburgh, PA, United States
    Full-time
    Quasar LLC is seeking to fill an Information Security Analyst position for our Customer in various locations.At iQuasar, we strive to provide the next generation of cutting-edge technologies.Our gr...Show more
    Last updated: 2 days ago • Promoted
    Cyber Warfare Technician

    Cyber Warfare Technician

    US Navy • Pittsburgh, Pennsylvania, United States
    Part-time
    Languages are more than just communication-they're cultural codes that need to be analyzed and in some cases, broken.As a Cryptologic Technician Interpretive (CTI) you're more than a linguist-you'r...Show more
    Last updated: 30+ days ago • Promoted
    Risk Analyst

    Risk Analyst

    System One • Pittsburgh, PA, US
    Full-time
    Position Title : Niche – Risk Specialist Sr 1st preference - Pittsburgh Tech Hub 2nd preference - Any Technology Hubs - hybrid 2 days in office - 3 remote Pittsburgh, PA - 620 Liberty Ave, Pittsburg...Show more
    Last updated: 30+ days ago • Promoted
    IT Security Analyst

    IT Security Analyst

    Decision Point • Coraopolis, PA, United States
    Full-time
    DecisionPoint Corporation is seeking an.US Air Force team supporting the defense of USAF infrastructure (AFIN) at the base level. The contractor shall provide Functional Mission Analysis-Cyber assis...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Security Developer

    Cyber Security Developer

    Diverse Lynx • Pittsburgh, PA, United States
    Full-time
    Role : Cyber Security Developer.Location : Pittsburgh PA(Remote).Must Have Technical / Functional Skills : .Purview developer comes with application integration, Rest API and SDK utilization, Data securi...Show more
    Last updated: 30+ days ago • Promoted
    Sr Security Specialist

    Sr Security Specialist

    V2Soft • Pittsburgh, PA, US
    Full-time
    V2Soft is a global leader in IT services and business solutions, delivering innovative and cost-effective technology solutions worldwide since 1998. We have headquarteerd in Bloomfiled Hills, MI and...Show more
    Last updated: 26 days ago • Promoted
    Project Controls Analyst

    Project Controls Analyst

    Stevens Engineers & Constructors • Canonsburg, PA, United States
    Full-time
    Stevens Engineers & Constructors has an excellent opportunity for a highly motivated.This individual will be responsible for project financial transactions including job cost transactions, preparat...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cloud Security Engineer

    Senior Cloud Security Engineer

    Federal Home Loan Bank Pittsburgh • Pittsburgh, PA, United States
    Full-time
    Seeking an experienced and dedicated Senior Cloud Security Engineer to join our team.This role is crucial for ensuring the security and compliance of our cloud infrastructure in a highly regulated ...Show more
    Last updated: 30+ days ago • Promoted
    Enterprise Key Management Security Sr Engineer

    Enterprise Key Management Security Sr Engineer

    Jamie Grayem • Pittsburgh, PA, US
    Full-time
    Quick Apply
    Enterprise Key Management Security Sr Engineer.Job Title : Enterprise Key Management Security Sr Engineer.Industry : Financial Services - Securities. Work Arrangement : Hybrid : 2 days in office (or for...Show more
    Last updated: 30+ days ago • Promoted
    Technology - Security Analyst IV

    Technology - Security Analyst IV

    My3Tech Inc • Pittsburgh, PA, United States
    Full-time +1
    Job Description : • Resource provides day to day tactical execution of project.Including detailed analytics of various data points. Mainframe Security expert who will guide projects, asset modeling, ...Show more
    Last updated: 2 days ago • Promoted
    Security Specialist

    Security Specialist

    V2Soft • Pittsburgh, PA, US
    Full-time
    V2Soft is a global leader in IT services and business solutions, delivering innovative and cost-effective technology solutions worldwide since 1998. We have headquarteerd in Bloomfiled Hills, MI and...Show more
    Last updated: 26 days ago • Promoted
    Security Architect

    Security Architect

    Artech • Pittsburgh, PA, United States
    Full-time
    Pittsburgh, PA, 15222 / Strongsville, OH, 44136 / Birmingham, AL, 35233 / Dallas, TX, 75234 / Phoenix, AZ, 85016.Competitive and commensurate with experience. Join our dynamic team as we overhaul th...Show more
    Last updated: 11 days ago • Promoted
    IT Security Analyst

    IT Security Analyst

    DecisionPoint | Cortek • Coraopolis, PA, United States
    Full-time
    DecisionPoint Corporation is seeking an.US Air Force team supporting the defense of USAF infrastructure (AFIN) at the base level. The contractor shall provide Functional Mission Analysis-Cyber assis...Show more
    Last updated: 2 days ago • Promoted
    Cyber Security Developer (Purview)

    Cyber Security Developer (Purview)

    Diverse Lynx • Pittsburgh, PA, United States
    Full-time
    Cyber Security Developer (Purview).Pittsburgh PA (hybrid work - day 1 onsite joining).Must Have Technical / Functional Skills : . A Purview developer comes with application integration, Rest API and SDK...Show more
    Last updated: 30+ days ago • Promoted
    Sr Security Analyst (SOC)

    Sr Security Analyst (SOC)

    Ivalua • Pittsburgh, PA, United States
    Full-time
    Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions.At Ivalua we are a global community of exceptional professionals, who believe that digital transformation r...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Security Specialist

    Cyber Security Specialist

    First National Bank of Pennsylvania • Pittsburgh, PA, United States
    Full-time
    Make a difference - for us and for your future.This position is primarily responsible for performing all procedures necessary to ensure the safety of information systems assets and protecting syste...Show more
    Last updated: 30+ days ago • Promoted
    Visiting AI Security Resident

    Visiting AI Security Resident

    RAND Corporation • Pittsburgh, PA, United States
    Temporary
    Global and Emerging Risks (GER) division.AI, information security, and national security.As a Visiting AI Security Resident, you'll manage and lead projects that directly impact AI and cybersecurit...Show more
    Last updated: 30+ days ago • Promoted