remote
Senior IT Security Engineer REMOTE - The Hanover Insurance Group
Security Engineer
Senior IT Security Engineer leading SIEM and IDS/IPS administration, optimizing security monitoring, incident response, and threat hunting across on‑prem and cloud environments.
About the role
Key Responsibilities
- Administer and fine‑tune the organization’s on‑prem SIEM platform, ensuring comprehensive log collection, correlation, and alerting.
- Configure, maintain, and update IDS/IPS solutions to detect and block advanced threats across the network.
- Lead incident response activities, conduct root‑cause analysis, and coordinate remediation efforts with cross‑functional teams.
- Develop and refine threat hunting playbooks, leveraging threat intelligence feeds and behavioral analytics.
- Collaborate with compliance and audit teams to produce evidence of security controls and support regulatory reporting.
Requirements
- 5+ years of experience in enterprise security operations, with deep expertise in SIEM and IDS/IPS technologies.
- Proficiency with leading SIEM platforms (e.g., Splunk, QRadar, ArcSight) and IDS/IPS solutions (e.g., Snort, Suricata, Palo Alto NGFW).
- Strong knowledge of network protocols, log formats, and security best practices.
- Experience with incident response frameworks, threat hunting, and forensic analysis.
- Excellent communication skills and ability to work independently in a remote environment.