Cybersecurity Engineer
Job Description
MetTel offers a hands-on cybersecurity engineering role in the NYC on-site Corporate IT team. You will design and operate enterprise security platforms across on‑prem and cloud environments, develop detection logic, dashboards, and playbooks, and lead incident response and compliance activities. This position provides a competitive USD 155,000 annual salary and the opportunity to own end-to-end security programs in a collaborative, security-focused environment in the New York City area.
Responsibilities
- Architect and implement enterprise security platforms on-prem and in the cloud, including CyberArk PAS (Vault, CPM, PSM, PVWA), Splunk Enterprise/ES (indexers, search heads, clustering, HA/DR), Tenable, SOAR, and OKTA/SAML
- Design for scale with capacity planning, redundancy, RBAC, and integration with AD, applications, and infrastructure
- Operate what you build with custom dashboards, correlation rules, detection tuning, and automated playbooks
- Own incident response and threat hunting using your own tooling; serve as the analyst as well as the platform owner
- Support compliance efforts (SOC 2, PCI DSS, NIST 800-53) through audit trails and reporting produced by your architecture
Requirements
- 4+ years securing enterprise environments with hands-on experience building and using security platforms (installs, architecture, HA/DR design, as well as detection, dashboards, and response)
- Deep proficiency in at least two of: CyberArk, Splunk Enterprise/ES, Tenable, SOAR (Phantom/Demisto/Resilient)
- Strong Linux and Windows administration; scripting in Python, Bash, or PowerShell for automation and integrations
- Working knowledge of cloud security platforms (AWS Security Hub, Azure Security Center)
- Ability to own an initiative end-to-end from design through deployment to defense
- Bonus: offensive security background (Nmap, Burp, Metasploit, pentest/ethical hacking) is a strong plus given red team opportunities
Technologies
- CyberArk PAS, Splunk Enterprise/ES, Tenable, SOAR, OKTA/SAML
- Active Directory, Python, Bash, PowerShell
- Linux, Windows, AWS Security Hub, Azure Security Center
Additional skills - nice to have
- CISSP
- GCIH
- CEH
- CySA+ or vendor certifications (CyberArk Defender/Sentry, Splunk Certified Admin/Architect)