Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Principal Cyber Defense Engineer image - Rise Careers
Job details

Principal Cyber Defense Engineer

Sony Corporation of America, located in New York, NY, is the U.S. headquarters of Sony Group Corporation, based in Tokyo, Japan. Sony's principal U.S. businesses include Sony Electronics Inc., Sony Interactive Entertainment LLC, Sony Music Entertainment, Sony Music Publishing and Sony Pictures Entertainment Inc. With some 900 million Sony devices in hands and homes worldwide today, a vast array of Sony movies, television shows and music, and the PlayStation Network, Sony creates and delivers more entertainment experiences to more people than anyone else on earth. To learn more: www.sony.com/en.Position SummaryWe are seeking a highly skilled and experienced Principal Cyber Defense Engineer to join our newly formed Cyber Defense Team at Sony. This role is pivotal in ensuring the security and integrity of our systems by managing cyber defense operations, facilitating data onboarding, and supporting network administration tasks. The ideal candidate will have a strong background in security engineering, with a focus on automation and process improvement. Additionally, this role involves acting as an internal consultant to our operating companies, providing guidance and support to meet their security needs, and assisting with vulnerability assessments and remediation efforts where needed.Job ResponsibilitiesData Onboarding:• Support the data onboarding process into Splunk, ensuring accurate and efficient data collection.• Utilize methods such as Syslog (TLS), HTTP Event Collector (HEC), AWS S3, and Microsoft Azure EventHub for data integration.• Maintain and optimize Splunk Universal Forwarder (UF) and Heavy Forwarder (HF) configurations.• Ensure data normalization using Splunk's Common Information Model (CIM) for consistent and efficient searching, correlation, and reporting.Cyber Defense Operations:• Focus on automation to streamline and enhance security processes.• Work with Sony Companies to assist with managing and optimize Microsoft Defender MDE.• Integrate data into the SIEM by onboarding data via methods such as syslog and HTTP event forwarders.• Act as the primary point of contact for operating companies, assisting with connections to the internal GSIRT group.• Data onboarding• Develop and implement security measures and protocols.• Collaborate with the Incident Response (IR) team to ensure comprehensive security coverage.• Perform basic network administration tasks, such as logging into firewalls and checking versions.• Support general project tasks related to network security.• Proactively reach out to operating companies to understand their security needs and areas for improvement.• Provide expert guidance and develop tailored security plans to address specific requirements.• Conduct internal research and leverage knowledge to offer actionable recommendations.Vulnerability Management:• Work with operating companies to prioritize attack surface management findings.• Provide remediation guidance and support to address identified vulnerabilities.• Ensure timely and effective resolution of security vulnerabilities.Process Development:• Establish and document new processes and procedures.• Continuously improve existing processes to enhance efficiency and effectiveness.Honesty, trustworthiness and ethical conduct are material requirements for the responsibilities outlined aboveQualifications For PositionYour qualifications and experience should include: Required Skills• Splunk Data Onboarding• Experience with Splunk Universal Forwarder (UF) and Heavy Forwarder (HF)• Proficiency with HTTP Event Collector (HEC)• Familiarity with data onboarding methods: Syslog (TLS), AWS S3, Microsoft Azure EventHub• Splunk Administration and Usage Building dashboards, reports, and advanced queries• Understanding of Splunk's Common Information Model (CIM) Project Management and Collaboration• Handling tight deadlines and multiple projects• Collaborating with infrastructure engineering and security teamsPreferred Skills• Big Data and Data Platforms• Familiarity with other big data tools like ELK (Elasticsearch, Logstash, Kibana) Advanced Splunk Features• Knowledge of Splunk Database (DB) Connect• Understanding of Summary Index and how to exclude events from being indexed• Familiarity with important Splunk configuration files Security Knowledge Vulnerability management and attack surface reduction• Experience with Microsoft Defender Implementing and maintaining SIEM logging standards• Creating security reports and escalating issues• General IT Skills• Adaptability to significant changes in projects or work environments• Ability to conduct independent research and self-learningExperience• Extensive experience in cyber defense and security engineering, preferably as a principal or lead role within a cyber defense team• Proven track record of managing and optimizing security operations with a strong emphasis on automation.• Demonstrated ability to leverage automation tools and techniques to streamline security operations and improve efficiency.• Experience in scripting and automating tasks using Python or other relevant programming languages.• Proven ability to integrate and automate security tools and platforms, such as Microsoft Defender MDE and Splunk.• Experience in creating automated workflows for vulnerability management and remediation.• CISSP, CISM, or other relevant security certifications is a plus• Excellent communication and interpersonal skills.• Strong problem-solving and analytical abilities.• Ability to work independently and as part of a team.• Comfortable with reaching out to and consulting with internal stakeholders.• All candidates must be authorized to work in the USA.In addition to competitive pay and benefits, we offer an environment and culture that promotes Diversity, Equity, and Inclusion. We are committed to creating an inclusive employee experience for you to thrive as part of Sony’s purpose to “fill the world with emotion through the power of creativity and technology”.Benefits:   SCA offers benefits-eligible employees (generally regular employees scheduled to work 20 or more hours a week) a comprehensive benefits program that offers coverage and support for employees and their family’s physical, emotional, and financial well-being.   What we offer you:• Comprehensive medical, prescription drug, dental, and vision coverage with coverage for spouses/domestic partners and child dependents, including access to a Health Savings Account (HSA) and Flexible Spending Account (FSA) • Employee assistance plan and comprehensive behavioral health benefits• Fertility benefits, including surrogacy, and adoption assistance programs  • Basic and supplemental life insurance for employees as well as supplemental life insurance coverage for their spouses/domestic partners and children • Voluntary benefits such as group legal, identity theft protection, accident, and hospital indemnity insurance • Short-term & long-term disability plans  • Paid parental and caregiver leave  • 401(k) Plan with pre-tax, Roth, and after-tax options and company match with immediate vesting• Education assistance and student loan programs    Other Programs: • Flexible Work Arrangements, including remote and hybrid work schedules• Time off to include vacation, paid holidays, sick leave, Summer Fridays (early release), and a winter break between Christmas and New Year’s Day (based on business needs)• Referral bonuses (subject to eligibility)  • Matching gift program  • A wide variety of employee business resource groups (EBRGs)  • Special discounts on Sony products, offered exclusively to Sony employees• Employee stock purchase plan (Sony covers commissions and fees for your Sony stock purchases made through after-tax payroll deductions)  • Annual incentive bonusThe anticipated annual base salary for this position is $175,000 to $190,000. This range does not include any other compensation components or other benefits that an individual may be eligible for. The actual base salary offered depends on a variety of factors, which may include as applicable, the qualifications of the individual applicant for the position, years of relevant experience, specific and unique skills, level of education attained, certifications or other professional licenses held, and the location in which the applicant lives and/or from which they will be performing the job.Sony is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religious creed, sex (including pregnancy), gender, national origin, citizenship, ancestry, age, physical or mental disability, military status, status as a veteran or disabled veteran, sexual orientation, gender identity or expression, marital or family status, genetic information, medical condition, or any other basis protected by applicable federal, state, or local law, ordinance, or regulation.SCA will consider qualified applicants with arrest or conviction records in accordance with applicable law.Disability Accommodation for Applicants to Sony Corporation of AmericaSony Corporation of America provides reasonable accommodation for qualified individuals with disabilities and disabled veterans in job application procedures. For reasonable accommodation requests, please contact us by email at careers@sonyusa.com or by mail to: Sony Corporation of America, Human Resources Department, 25 Madison Avenue, New York, NY 10010. Please indicate the position you are applying for.EEO is the LawEEO is the Law SupplementRight to Work (English/Spanish)E-Verify Participation (English/Spanish)While SCA does not require employees to be vaccinated against COVID-19, there are certain Sony offices that require employees to be vaccinated in order to enter. If you will be located at or travel to those offices, you will be required to be fully vaccinated to enter. The Company will consider requests for reasonable accommodations for documented medical reasons and for sincerely held religious beliefs in accordance with applicable law. Please do not include proof of vaccination status or any indication of a possible request for a vaccination accommodation when submitting your application materials. If applicable, the Company will follow up with you directly to request proof of vaccination and to discuss any potential accommodations.
Sony Glassdoor Company Review
4.1 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Sony DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Sony
Sony CEO photo
Kenichiro Yoshida
Approve of CEO

Average salary estimate

$182500 / YEARLY (est.)
min
max
$175000K
$190000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Principal Cyber Defense Engineer, Sony

Sony Corporation of America is on the lookout for a talented Principal Cyber Defense Engineer to join our dynamic Cyber Defense Team in Virginia! This isn’t just about keeping our systems safe; it's about being on the forefront of cybersecurity innovation at one of the world’s leading entertainment companies. As a Principal Cyber Defense Engineer, you'll have the opportunity to manage our cyber defense operations and support vital data onboarding processes while collaborating with various divisions within Sony. Your expertise in security engineering, automation, and process improvement will help us fortify our networks and protect our extensive digital landscape. You'll be working closely with teams across the company, providing internal consultation to align their security needs with our protocols while assisting in comprehensive vulnerability assessments. Think of it as being the trusted advisor for armoring our systems against potential threats! You’ll also dive into exciting tasks like integrating data into Splunk, optimizing configurations, and developing new security processes. At Sony, we don’t just create products; we ensure that creativity and technology go hand-in-hand with safety. If you are looking for a role where you can genuinely make a difference, this is your chance to shine at an iconic company that touches the lives of millions globally. Join us and be part of something extraordinary!

Frequently Asked Questions (FAQs) for Principal Cyber Defense Engineer Role at Sony
What responsibilities does a Principal Cyber Defense Engineer at Sony Corp have?

As a Principal Cyber Defense Engineer at Sony Corporation of America, your primary responsibilities include managing cyber defense operations, supporting data onboarding processes into systems like Splunk, and acting as a consultant across Sony's operating companies. You'll develop security measures, collaborate with incident response teams, assist with vulnerability assessments, and prioritize security needs, all while optimizing existing processes for better efficiency.

Join Rise to see the full answer
What qualifications are required for the Principal Cyber Defense Engineer position at Sony?

To qualify for the Principal Cyber Defense Engineer role at Sony Corporation, candidates should have extensive experience in cyber defense and security engineering. Required skills include proficiency in Splunk, experience with data onboarding methods, and a strong understanding of vulnerability management. Familiarity with tools like Microsoft Defender and automation techniques is highly preferred. Additionally, possessing relevant certifications like CISSP or CISM can be advantageous.

Join Rise to see the full answer
How does the Cyber Defense Team at Sony approach process improvement?

At Sony Corporation of America, the Cyber Defense Team emphasizes continual improvement. As a Principal Cyber Defense Engineer, you will establish and document new processes while continuously optimizing existing security protocols. The role encourages collaborative feedback and actively reaches out to operating companies to understand their unique security challenges, ensuring that processes remain effective and efficient.

Join Rise to see the full answer
What role does automation play in the Principal Cyber Defense Engineer position at Sony?

Automation is a critical component of the Principal Cyber Defense Engineer role at Sony Corporation of America. The goal is to streamline security operations to not only improve response times but also ensure consistency across security processes. You’ll be leveraging automation tools to enhance data onboarding, optimize configurations, and develop workflows that tackle vulnerability management efficiently.

Join Rise to see the full answer
What benefits does Sony Corporation offer to employees in the Principal Cyber Defense Engineer role?

Sony Corporation of America provides a competitive benefits package for employees, including comprehensive health coverage, employee assistance programs, and retirement plans like 401(k) with company matching. Additionally, employees enjoy flexible work arrangements, paid parental leave, education assistance, and special discounts on Sony products. The company promotes a diverse and inclusive workplace where everyone can thrive.

Join Rise to see the full answer
Common Interview Questions for Principal Cyber Defense Engineer
Can you describe your experience with Splunk as a Principal Cyber Defense Engineer?

When addressing your experience with Splunk during the interview, emphasize your hands-on experience with data onboarding, understanding of Splunk’s Common Information Model (CIM), and any significant projects where you've built dashboards or reports. Share specific examples of how you've utilized Splunk to enhance security operations.

Join Rise to see the full answer
How do you prioritize security vulnerabilities in your role?

In your response, describe your systematic approach to vulnerability management. Detail how you assess the severity of vulnerabilities, collaborate with teams to address them, and monitor the resolution process. Highlight the importance of aligning remediation actions with business objectives, and give examples if possible.

Join Rise to see the full answer
How do you stay current with cybersecurity trends and threats?

Share your methods for staying informed, such as following industry publications, participating in cybersecurity forums, and attending conferences. Explain how continuous learning enhances your effectiveness as a Principal Cyber Defense Engineer and how you apply knowledge of emerging threats and technologies to your strategies.

Join Rise to see the full answer
What strategies do you implement for effective data onboarding and integration?

Take time to explain your experience with various methods of data onboarding, including Syslog, AWS S3, and Microsoft Azure EventHub. Discuss best practices you’ve developed for maintaining data accuracy and integrity during the onboarding process while ensuring effective integration into systems like Splunk.

Join Rise to see the full answer
How do you approach collaboration with incident response teams?

Illustrate your collaborative mindset by discussing experiences where teamwork proved vital in addressing security incidents. Emphasize communication strategies, working on root cause analysis, and how you’ve aided incident response processes by providing data and analyses to enhance decision-making.

Join Rise to see the full answer
What’s your approach to process improvement in cybersecurity?

Describe a structured approach to process improvement that you have used, like the Plan-Do-Check-Act cycle. Explain how you monitor current processes for effectiveness, gather feedback from stakeholders, and implement necessary changes that ultimately boost overall security posture.

Join Rise to see the full answer
Can you explain your experience with automation in cybersecurity operations?

Detail specific projects where you've successfully implemented automation, either through scripting or utilizing tools like Microsoft Defender. Discuss how automation reduces human error and increases efficiency, and provide outcomes that demonstrate the positive impact on security operations.

Join Rise to see the full answer
Describe a challenging security project you've led.

When discussing a challenging project, focus on the specifics: the security issue, your role, the actions taken to resolve it, and the results. Highlight any complexities involved, how you handled them, and what you learned which can help in future scenarios.

Join Rise to see the full answer
What best practices do you recommend for maintaining SIEM logging standards?

You should outline best practices for ensuring SIEM logging standards, such as consistent data formats, regular audits of configurations, and real-time monitoring. Clip any previous experiences where your recommendations led to enhanced logging practices and security insights.

Join Rise to see the full answer
How do you manage tight deadlines in a cyber defense role?

Share your time management techniques and how you prioritize tasks under tight deadlines. Discuss experiences where you successfully navigated high-pressure scenarios, coordinated with various teams, and ensured that critical security operations remained unaffected.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
NBCUniversal Remote 904 Sylvan Ave, Englewood Cliffs, NEW JERSEY
Posted 2 days ago
Photo of the Rise User
Posted 8 days ago
Dental Insurance
Flexible Spending Account (FSA)
Vision Insurance
Paid Holidays
Photo of the Rise User
DataCamp Remote Buenos Aires, Argentina
Posted 8 days ago
Photo of the Rise User
Instanda Remote No location specified
Posted 6 days ago
Photo of the Rise User
Posted 7 days ago
Photo of the Rise User
Posted 9 days ago
Photo of the Rise User
EVERSANA Hybrid Overland Park, KS, USA
Posted 6 days ago

Many eyes and hands are on Sony -- or, most likely, on its high-profit consumer electronics products and gaming systems. The company, officially named Sony Kabushiki Kaisha, makes a host of products, including digital and video cameras, Walkman st...

12 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
December 11, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!