Engineer, Security Operations
Role Overview:
Balyasny Asset Management seeks an experienced candidate for a Security Operations Engineer. This role will be hands-on, building out BAM’s firm-wide information security platform. At BAM, you will have the chance to work with some of the smartest and most driven individuals in the industry.
The individual selected to fill this role will be a member of our SOC team primarily responsible for responding to and investigating potential security incidents, performing threat hunting and continual improvement and monitoring of defnses. The ideal candidate will have a track record of automating processes, finding innovative solutions to difficult problems, and adapting to new products and solutions.
This position will report to BAM's Security Operations Lead.
Strategic Responsibilities:
- Implement BAM's Information Security vision and strategy for the firm
- Design and implement repeatable, efficient processes for Information Security operations
- Collaborate between technology and business teams to drive proper implementation of security controls and compliance requirements across the firm
- Enhance cyber security awareness by promoting through employee awareness
Tactical / Hands-On Responsibilities:
- Triage, investigate, and remediate information security alerts
- Perform threat hunting exercises within the Balyasny network to identify potential security threats which have otherwise been unidentified
- Creating/maintaining runbooks for security investigations
- Continually improve internal scanning, detection, and reporting of security risks and anomalous activity
- Partner with global technology teams to increase cyber security posture leveraging vendor-based and in-house custom built security solutions
- Provide guidance and implement security best practices and systems
- Create and maintain accurate documentation on the firm’s information security policies and procedures
- Keep up with, and evaluate, new industry and information security trends to determine firm’s best approach for dealing with new trends
Qualifications & Requirements:
- Bachelors in cybersecurity, networking, computer science or other related field
- 5 + years information systems security background
- 3 + years working in a Security Operations or similar role
- Strong understanding of network security- Firewalls etc.
- Solid understanding of good information security, cyber security practices and policies
- Hands on experience with different security platforms, including SIEM and EDR platforms
- Basic understanding and implementation experience with encryption technologies (SSL, PKI)
- Working knowledge of scripting or automation using Python, PowerShell, or similar languages
- Working knowledge of applying AI tools to security operations, including investigation support, threat analysis, detection engineering, and automation
- Understanding of AI-related security risks, such as data leakage, prompt injection, model misuse, and inaccurate outputs, and the appropriate controls for managing those risks
- Able to communicate technical concepts between technical and non-technical stakeholders
- Strong awareness of the current cybersecurity threat landscape, attacker techniques, and emerging risks
- Experience managing or contributing to incident-response investigation, containment, remediation, and post-incident review processes
- Hands on experience with logging and monitoring tools
- Familiarity with the NIST Cybersecurity Framework
Bonus Points For:
- Hands on experience using Splunk and/or CrowdStrike platforms
- Knowledge of financial services industry best practices and regulations related to information security
- Information Security certifications (CISSP, ISACA, ISC2, SANS, etc.)
- Public cloud (AWS/Azure) information security experience
Don’t have all of the skills listed above? Have extra skills you think are important that we haven’t thought of? Please, let us know by applying and telling us a bit more about yourself and why you think you’re qualified