Threat Management and Security Engineer II

At 2U, we’re all in. We’re driven by our mission—to eliminate the educational gap—and united by our shared passion for delivering world-class, digital education at scale. As the parent company of edX, the world’s leading online learning platform, 2U powers more than 4,000 online higher education offerings—from free courses to full degrees. Together with more than 230 colleges, universities, and corporate partners, we help unlock human potential.

What we are looking for:

As a Threat Management & Security Engineer II in the security operations team, you will be responsible for orchestrating the discovery and assessment of vulnerabilities and threats across multiple geographic locations and working with 2U’s MSSP to triage and resolve potential threats and incidents. In collaboration with business stakeholders, your expertise in security architecture, systems operations, and threat management will be utilized to manage and mitigate security risks on 2U’s most critical systems and collaborate within the Security Operations team to respond to and mitigate potential security events. As an individual, you will be able to perform complex tasks with minimal supervision and serve as a vital member of the global cybersecurity team.

Responsibilities include, but are not limited to:

1. Technical

  • Work with a global team to strengthen and improve overall security within the 2U technical environment by discovering vulnerabilities, threats, and external adversarial techniques while helping teams across the organization remediate and resolve these threats.
  • Act as an escalation point for security-related events and provide monitoring and support for 2U’s critical cybersecurity systems, ensuring high levels of availability and efficiency.
  • Coordinate, supervise and execute the installation, configuration, implementation and post-implementation support of COTS (commercial off the shelf) cybersecurity solutions.
  • Perform vulnerability and risk assessments for computer systems (or applications) at all stages and develop daily operational procedures.
  • Act as an escalation point and expert on vulnerabilities and security incidents that may impact our environments
  • Monitor, assess and investigate the operating environment and security measures for deficiencies, threats and vulnerabilities that could lead to breaches, cyber attacks, incidents and breaches.
  • Develop reports that highlight threat risks and make recommendations for changes to controls, policies, or systems to prevent and minimize damage.
  • Support senior leaders and governance teams in developing and improving security standards, controls, and metrics across the organization.
  • Support Security Engineering in configuring, implementing and managing systems (cybersecurity systems and applications).
  • Identify and provide security training for users and internal cybersecurity teams as needed.

2. Research

  • Be active in the cybersecurity community and stay informed about current threats, attack techniques and strategies.
  • Stay informed about new technologies/tools and how they can pose a threat or an advantage to the organization.
  • Discover new ways to develop and improve the automation of current tools to increase skills.

3. Personal

  • Continuous learning and constant self-improvement are a must.
  • Openness to change and the ability to switch between different priorities and situations.
  • Easily present to larger audiences and give formal presentations.
  • Must be able to work independently, but also function well in a larger team.

Skills:

  • Expert in information security best practices.
  • Work independently as well as in multidisciplinary teams.
  • Possesses a high level of personal organization, perseverance, communication skills and an eye for detail.
  • Experience with technical and narrative writing.
  • High level of assessment and reporting skills.
  • Effective communication skills via email and virtual meetings worldwide.
  • Highly skilled in developing strategies to deal with potential threats.
  • Extensive knowledge of various software and systems, how they interact with each other and with external parties and customers.
  • Knowledge of on-premise and cloud networking concepts and architectures.

Technical experience:

  • COTS Security Solutions
  • Pentesting Tools and Methodologies
  • Asset discovery, classification and risk management
  • Scripting (Python, bash, PowerShell, etc.)
  • Continuous integration and continuous delivery tools (Ansible, Terraform, Puppet, etc.)
  • NGAV/EDR
  • Threat Data Feeds
  • On-premise and cloud network architecture

Things that should be in your background:

  • 4 years of experience in information security systems is required.
  • Experience in operating computer networks and tactics, techniques, and procedures (TTPs) for a wide range of operating systems and network architectures.
  • Experience with installation, configuration, implementation and post-implementation support of COTS cybersecurity solutions.
  • Experience in conducting database research for exploits and TTP.
  • Experience with networking hardware, communications technologies, and systems programming.
  • Solid knowledge of the NIST Risk Management Framework.
  • Certification or experience with multiple operating systems (Microsoft, MacOS, Linux, Amazon AMI).
  • Obtained technical security certification or equivalent (Network+, CEH, GSec, Sec+, CySA+, etc.).
  • Advanced technical courses (e.g. MGT516, SEC460, GEVA, CSA+).
  • Experience with ticket and case management systems.

The standard working hours for this position are 1:00pm to 10:00pm (SAST).

Working conditions:

Standard working hours for this role are 1:00pm to 10:00pm SAST. Typically the individual will be based remotely or in an office environment at a designated desk/workstation within the Systems & Technology department. The noise level in the work environment is typically moderate. Must be able to use a computer keyboard, calculator and general office equipment.

Physical requirements:
To perform this role successfully, the individual must be able to stand, move, and work in the office and on the premises, including being able to walk up and down four flights of stairs and be able to sit at a fixed desk/workstation all day.

Benefits and culture

Our global employee base is a diverse collection of innovators, dreamers, and doers working together to transform lives through higher education. We believe that every employee can advance our shared purpose and that life at 2U should be fun and meaningful. If you’re excited about the opportunity to provide more than 40 million students and counting with access to world-class online higher education, join us—and do work that makes a difference. #NoBackRow

We offer extensive secondary employment conditions (unique per country) and an excellent work-life balance.

The full ZA benefits include:

  • 2 free Getsmarter short courses per year
  • Subsidised medical care with Discovery Health Medical Scheme
  • 4% 2U contribution to the Discovery Life Pension Fund and the Group Risk Insurance
  • Employee Assistance Program (EAP)
  • Generous leave policies, including leave to volunteer for a non-profit organization, study leave, sports leave, and a company-wide holiday break

2U Diversity and Inclusion Statement

At 2U, we are committed to building and sustaining a culture of belonging, respect, and inclusion. We are proud of the strides we have made to bring together a workforce that embodies diverse walks of life, ideas, genders, ages, races, cultures, sexual orientations, abilities, and other unique qualities. We strive to provide a workplace where every employee feels empowered by what makes us different, and by what makes us similar.

2U strives to provide reasonable accommodations during our recruitment process. If you require assistance or accommodations, please contact us at: [email protected].

About 2U Inc. (NASDAQ: TWOU)

For more than a decade, 2U, Inc. has been the digital transformation partner of choice for great nonprofit colleges and universities delivering high-quality online education at scale. As the parent company of edX, a leading global online learning platform, 2U provides more than 45 million learners with access to world-class education in partnership with more than 230 colleges, universities, and corporations. Our people and technology power more than 4,000 digital education offerings—from free courses to full degrees—helping unlock human potential. For more information, visit 2U.com.

About edX

edX is the education movement for restless learners and a leading global online learning platform from 2U, Inc. (Nasdaq: TWOU). Together with most of the world’s top-ranked universities and industry leaders, we provide our community of over 45 million learners with world-class education to support them at every stage of their lives and careers, from free courses to full degrees. And we’re not stopping there—we’re relentlessly pursuing our vision of a world where every learner has access to the education they need to unlock their potential, without the barriers of cost or location. Learn more at edX.org.

For more information, visit https://2u.com/careers/

#NoBackRow

The above statements are intended to describe the general nature and level of work performed by individuals assigned to this job and are not intended to be construed as an exhaustive list of all responsibilities, duties and skills required. All employees may from time to time be required to perform duties outside their normal responsibilities as necessary.

2U is an equal opportunity employer. We do not discriminate on the basis of sex, sexual orientation, gender identity, pregnancy, national origin, age, marital status, disability, citizenship, military or veteran status, or any other classification protected by applicable federal, state, or local law. 2U’s Equal Opportunity Policy applies to all terms and conditions of employment, including, but not limited to, recruiting, hiring, training, promotion, benefits, and pay.

2U is strongly committed to diversity within its community and particularly welcomes applications from South African citizens who are members of designated groups that can contribute to Employment Equity in the workplace and the further diversification of ideas. In this regard, the relevant laws and principles relating to Employment Equity will be taken into consideration when appointing potential candidates. We are required by law to verify your ability to work legally in South Africa. 2U requires you to submit a copy of your ID or your passport and any applicable work permit if you are a foreign citizen, together with an up-to-date curriculum vitae.

Originally posted on Himalaya

You May Also Like

More From Author