remote
Senior Information Security Engineer - The Hanover Insurance Group
Security Engineer
Lead the design, deployment, and optimization of on‑premise SIEM and IDS/IPS solutions, driving proactive threat detection, incident response, and compliance across the enterprise.
About the role
Key Responsibilities
- Administer and tune the organization’s on‑premise SIEM platform, ensuring comprehensive log collection, correlation, and alerting.
- Configure, maintain, and update IDS/IPS systems to detect and block advanced threats across network and host environments.
- Develop and refine security monitoring playbooks, incident response procedures, and threat intelligence feeds.
- Collaborate with security, operations, and compliance teams to remediate findings, produce reports, and support audits.
- Perform root‑cause analysis of security events, recommend mitigations, and drive continuous improvement of detection rules.
Requirements
- 5+ years of experience in information security with a focus on SIEM and IDS/IPS administration.
- Hands‑on expertise with leading SIEM platforms (e.g., Splunk, ArcSight, QRadar) and IDS/IPS solutions.
- Strong knowledge of network protocols, log formats, and security monitoring best practices.
- Experience with incident response, threat hunting, and compliance frameworks (e.g., NIST, ISO 27001).
- Excellent analytical, communication, and problem‑solving skills.