
Product Security Engineer
Aras Corporation3 months ago
Remote, United States or Andover, MA, USAMid Level
Base Salary
$100k - $125k/yr
Responsibilities
- Monitor Azure cloud infrastructure and analyze and prioritize security alerts.
- Respond to Level 2 security incidents and coordinate mitigation and resolution activities.
- Investigate complex security incidents in Aras SaaS and conduct forensic analysis as needed.
- Develop, refine, customize, and tune SOC detection mechanisms and security tools.
- Own the end-to-end SOC function, including workflows, runbooks, escalation models, and continuous improvement.
- Act as the primary incident commander for security events and drive operational security decisions.
- Build and mature SOC capabilities by onboarding data sources, improving alert fidelity, and optimizing operational processes.
- Develop scripts and tools to automate security response and mitigation processes.
- Prepare incident reports and documentation for technical and non-technical stakeholders.
- Leverage and evaluate AI/ML-powered security tools, anomaly detection models, LLM-based copilots, and automated investigation frameworks.
- Assess security risks associated with AI workloads, including model abuse, prompt injection, data leakage, and adversarial scenarios.
Requirements
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Three to five years of experience in information security, specifically in a SOC environment.
- Experience operating security functions in Azure GovCloud or GCC High environments, including segregated environments, boundary protections, and compliance-driven logging limitations.
- Understanding of FedRAMP High, NIST 800-53, DoD SRG, and data residency requirements.
- Practical experience securing Azure GovCloud environments subject to NIST 800-171 and CMMC 2.0 for protection of CUI.
- Proficiency with security information and event management (SIEM) tools and technologies.
- Strong understanding of network security, endpoint security, and cloud security principles.
- Experience with scripting languages such as Python and PowerShell for automation.
- Microsoft Certified: Security Operations Analyst Associate or another relevant Azure certification.
- Experience with Azure cloud services and Managed Detection and Response (MDR) services is preferred.
- Strong analytical, problem-solving, communication, teamwork, decision-making, and high-pressure response skills.
Benefits
- Flexible paid time off, company-paid holidays, and a dedicated Global Wellness Day.
- 401(k) plan with company match.
- Medical, dental, and vision insurance with high premium contributions and deductible reimbursement.
- Company-paid life insurance and short- and long-term disability coverage.