Are you a proactive security professional with a passion for staying ahead of threats? Do you thrive on enhancing system boundaries, building innovative tooling, and fostering a strong security culture? If so, arrivia wants you to join our team as a Security Engineer II!
At
arrivia, we're not just about travel; we're about making brands better through the power of travel. With a rich history spanning over 55 years and a global presence, we're a leading force in the industry. As a Security Engineer II, you'll play a crucial role in safeguarding our corporate and product security posture, ensuring our systems and data are protected as we continue to innovate and grow.
What You'll Do: Your Mission to Secure Our Systems
As a Security Engineer II, you'll be at the forefront of our security efforts, working hands-on to implement, maintain, and enhance our security infrastructure. Your responsibilities will include:
- Protecting Our Digital Footprint: Provide expert technical services to integrate and secure shared, centralized, and networked systems.
- Deploying Cutting-Edge Defenses: Assist with the secure setup and management of critical security systems, including:
- Endpoint Detection and Response (EDR)
- Data Loss Prevention (DLP)
- Network Anomaly Detection
- Cloud Access Security Brokers (CASB)
- Security Information and Event Management (SIEM)
- And other essential security solutions.
- Empowering Our Technical Teams: Offer vital information security services and guidance to network, systems, and database administrators across the organization.
- Staying Ahead of Threats: Proactively evaluate bug reports, exploit notices, and security advisories from various sources, recommending and implementing precautionary measures as needed.
- Hunting for Vulnerabilities: Utilize vulnerability identification software and tools to pinpoint configuration errors, patch requirements, and other security-related changes.
- Building Our Defense Toolkit: Compile, maintain, and document software and tools to trace and investigate attacks on arrivia systems.
- Responding to Incidents: Act as a key technical resource during security incident investigations and forensic analyses, leveraging your in-depth knowledge of security systems, common exploits, and countermeasures.
- Joining Our Elite Response Team: Be an active member of our incident response team, contributing to rapid and effective security incident resolution.
Who You Are: The Skills and Experience We're Looking For
You're a seasoned security professional with a strong technical background and a passion for continuous learning. To succeed in this role, you'll bring:
- Education & Experience: A Bachelor's degree in MIS, Computer Science, Cybersecurity, Engineering, or a related field, OR a minimum of 5 years of experience in an IT or IT Security position.
- Microsoft Security Savvy: Hands-on experience configuring and managing Microsoft Defender, Sentinel, Intune, Cloud Security Posture Management, and other security services across Azure products.
- Network & Security Expertise: At least 5 years of experience in networking and/or security.
- Deep Security Engineering Knowledge: Significant experience and technical knowledge in security engineering, troubleshooting, system and network security, authentication and security protocols, cryptography, and application security.
- Encryption Mastery: Significant experience with encryption standards such as AES, SSL, and TLS.
- SIEM Proficiency: Significant experience working with SIEM systems.
- Protocol Prowess: Significant experience with network and web-related protocols (e.g., TCP, UDP, ICMP, IPSEC, HTTP, HTTPS).
- Incident Response Champion: Significant experience with incident management and threat remediation, including threat analysis, isolation, identification, and eradication.
- Compliance Consciousness (Plus): A strong understanding of ISO 27001/27701, HIPAA, PII, and PCI security principles is a plus.
- Privileged Identity Management (PIM) Expert: Significant experience with PIM tools, principles, and leading practices, including password/key vaulting technologies like Microsoft PIM, CyberArk/Conjur, Thycotic Secret Server, etc.
- Threat Intelligence Guru: A strong understanding of current and emerging technology issues, including security trends, vulnerabilities, threats, and attacker tactics, techniques, and procedures (TTPs).
- Innovative Problem Solver: Experience in developing or researching technical solutions and new security tools to mitigate vulnerabilities and automate tasks.
- Clear Communicator: Ability to translate complex technical issues into understandable language for diverse audiences.
- Security Advocate: Passionate about security and actively involved in the security community.
- Certifications:
- Required: CCNP-Security or CISSP certification.
- Preferred: CISM or CISA.
Who We Are: Your New Adventure Awaits
Welcome to
arrivia, where we transform brands through the power of travel! We're the exciting merger of three industry powerhouses: ICE, SOR Technology, and WMPH Vacations, bringing over 55 years of combined experience to the table. With offices across the US and around the world, we're a diverse and passionate team united by our love for travel.
Our focus is on cultivating a customer-first culture, delivering exceptional travel experiences for our members at every step of their journey. We're on a mission to help people around the world travel better and experience more, and we're looking for talented individuals to join us on this adventure.
Our Core Values:
At
arrivia, we live by these principles:
- Stay Curious: Explore new challenges and embrace opportunities to learn, grow, and improve.
- Keep it Real: Build trust through open, honest, and clear communication.
- Own it: Seek ways to make a positive impact and take decisive action.
- Win Together: Foster a culture of connection and inclusion where everyone can thrive.