The Hanover Insurance Group
Senior IT Security Engineer
Rol remoto de IT Security Engineering con fit claro de ubicación del candidato.
Publicado19 jun 2026
Países elegibles6 países aceptados
Señal de senioritySenior
Modelo de trabajoRemoto
Ubicaciones aceptadas para candidatos
CanadáAlemaniaIndiaPaíses BajosReino UnidoEstados Unidos
Resumen del rol
Senior IT Security Engineer
Requisitos y responsabilidades
Contenido del rol extraído en secciones para revisar más rápido.
SIEM Administration & Engineering
- Manage, maintain, and optimize the on premise SIEM platform, including log ingestion, parsing, correlation rules, dashboards, and alerting.
- Ensure SIEM availability, performance, and scalability to support enterprise security monitoring needs.
- Develop and tune detection rules, correlation logic, and use cases aligned with threat intelligence and organizational risk.
- Oversee log source onboarding, configuration, and validation across servers, applications, network devices, and security tools.
- Conduct regular SIEM health checks, capacity planning, and lifecycle management.
IDS/IPS Administration & Engineering
- Administer and maintain on premise IDS/IPS platforms, ensuring accurate detection and prevention of malicious activity.
- Tune signatures, policies, and rulesets to reduce false positives while maintaining strong detection coverage.
- Monitor IDS/IPS performance, availability, and event trends to identify anomalies or operational issues.
- Coordinate with network and security teams to implement policy updates, rule changes, and architectural improvements.
Operational Excellence & Governance
- Ensure both SIEM and IDS/IPS solutions are aligned with security governance frameworks, compliance requirements, and organizational policies.
- Maintain documentation for system configurations, processes, runbooks, and governance controls.
- Support audit activities by providing evidence, reports, and system configuration details.
- Participate in incident response activities by providing SIEM/IDS/IPS insights, event analysis, and technical expertise.
Operational Excellence & Governance
- Evaluate emerging threats and recommend enhancements to detection logic and monitoring capabilities.
- Collaborate with architecture and leadership teams to align SIEM and IDS/IPS strategies with long term security objectives.
- Identify opportunities to automate processes, improve detection fidelity, and enhance operational efficiency.
WHAT YOU NEED TO APPLY:
- Minimum 5 years of hands on experience administering, managing, and maintaining:
WHAT YOU NEED TO APPLY:
- Demonstrated experience ensuring high availability, governance alignment, and operational effectiveness of security monitoring technologies.
- Strong understanding of SIEM architecture, log ingestion pipelines, correlation logic, and event normalization.
- Expertise with IDS/IPS technologies, signature tuning, network traffic analysis, and threat detection methodologies.
- Proficiency with security log formats (syslog, JSON, CEF, LEEF, etc.).
- Familiarity with network protocols, firewall rules, and enterprise network architecture.
- Experience with Linux/Windows server administration as it relates to security tooling.
- Ability to analyze security events, identify patterns, and support incident response.
- Strong analytical and problem solving abilities.
- Excellent communication skills for cross team collaboration.
- Ability to work independently in a remote environment while managing multiple priorities.
- Detail oriented mindset with a commitment to governance, documentation, and operational discipline.
- Preferred Qualifications (Optional Enhancements)
Benefits include:
- Medical, dental, vision, life, and disability insurance
- 401K with a company match
- Tuition reimbursement
• PTO
- Company paid holidays
- Flexible work arrangements
- Cultural Awareness Day in support of IDE
- On-site medical/wellness center (Worcester only)
- Click here for the full list of Benefits
Roles similares
Mantén una lista de respaldo.
Stack
Usa estas tags para comparar roles remotos similares.
Elegibilidad de ubicación
Candidatos deberían aplicar solo cuando el país del perfil aparece aquí.
Tu perfilPaís no definidoInicia sesión para comparar tu país con este rol.
Flujo de contratación
WithMira muestra el rol y luego envía candidatos a la aplicación de la empresa.
1Revisa fit del rol, stack y elegibilidad de ubicación en WithMira.
2Abre la página de aplicación de la empresa desde el link rastreado.
3Guarda el rol o suscríbete a oportunidades similares antes de salir.