Hub Group offers comprehensive transportation and logistics management solutions. Keeping our customers’ needs in focus, Hub Group designs, continually optimizes, and applies industry-leading technology to our customers’ supply chains for better service, greater efficiency, and total visibility.
As an award-winning, publicly traded company (Nasdaq : HUBG) with nearly $5 billion in revenue, our 6,000 employees across North America are always in pursuit of The Way Ahead a commitment to service, integrity and innovation.
For more information, visit hubgroup.com.
Job Summar
yThe Information Security Engineer IV is responsible for designing and implementing secure network, cloud, platform, and application solutions.
The position will also be responsible for performing application, host, and network threat assessments to identify, evaluate and mitigate security risks, threats, and vulnerabilities.
The Information Security Engineer will work with employees across the organization to develop action plans to mitigate identified vulnerabilities and build a culture of effective information security
Essential Job Functio
- nsWork with technical leadership to define overall security technology, standards, and strate
- gyDesign and implement network, cloud, platform, and application security technolo
- gyMentor and cross-train team membe
- rsAutomate security processes whenever possib
- leAnalyze logs to detect security vulnerabilities or malicious activi
- tyLead Incident Response to security incidents and report on incident handling and resoluti
- onDesign and implement security solutions for cloud as well as on-premise syste
- msPerform security scans of the network devices, systems, and applicatio
- nsPerform automated and manual application security assessmen
- tsWork with development team to ensure secure application desig
- nsCreate threat models for applications and infrastructu
- reProactively research to identify and understand new threats, vulnerabilities, and exploi
- tsWork with external resources involved in the performance of security penetration testi
- ngPeriodically test and evaluate Information Security controls to assure compliance with polici
- esAbility to think strategically and evaluate options in the short, medium, and long te
- rmStrong planning and organizing skills including the ability to manage several work streams simultaneous
- lyExcellent communication skills, both in writing and verbal
- lyClear decision-making ability with the facility to judge complex situations and assess when to escalate issu
- esAfter-hours configuration changes and on-call support requir
- edDuties, responsibilities, and activities may be assigned or changed from time to ti
Minimum Qualificati
- onsBachelor’s degree in Computer Science, Information Systems (or related degree), or equivalent experien
- ce.7+ years of experience working with enterprise Information Security technol
- ogyExpertise in three, or more, of the following security domains : security operations, engineering and cyber security, endpoint protection, governance, risk and compliance, and identity manageme
- nt.Expertise with designing and managing firewalls (Palo Alto Networks, Fortinet), load balancers (f5, HAProxy), and web application firewal
- ls.Expertise with cloud network security (Azure, OCI, A
- WS)Experience with application security audits and automat
- ionExperience with security log monitoring as well as incident respon
- se.Experience creating network security diagrams and documentat
- ionExperience scripting in languages such as Python, Perl, PowerShell, bash, e
- tc.Experience scripting with A
- PIsExperience with tools such as vulnerability scanners, nmap, tcpdump, wireshark, e
- tc.Experience with Windows, MacOS, and Linux operating systems, virtualization, containers, and cloud technologi
- es.Proficient in Microsoft Office application such as Microsoft Outlook, Word, Excel, PowerPoint, and SharePoi
- nt.CompTIA Security+, CCNA Security, CISSP, OSCP, and / or related certifications are preferr
- ed.Flexibility to travel when requir
- ed.Ability to manage multiple priorities as well as flexibility to adapt to change with new systems and methods while working in a team environme