Who we are: BAL is a team of brilliant people who change lives through elite immigration work and collaborative innovation. We pursue the exceptional in all that we do, but never at the expense of our values. There’s no denying our work is demanding, both in volume and pace, but we’re up for the challenge. We love the balance of hard work and fun – so, you’ll see us in jeans as we shatter glass ceilings and conventional stereotypes. BAL employees feel valued, rewarded, and respected. We seek opportunities to be of service to others and our communities. We are committed to your growth and development, and want to set you up for success here at BAL and beyond.
Who you are: You are looking for work that has a purpose. You aren’t afraid to roll up your sleeves and get stuff done. You learn quickly. You move fast. You embrace challenge and detail as well as creative thinking. You believe you have something unique to contribute and you aren’t afraid to raise your hand. You understand that powering human achievement is ultimately about impacting a real person. You are looking for a place to grow and an environment where everyone has a spot and is genuinely welcome.
We’re better together: A bright, driven person like you and an industry-leading powerhouse like BAL? It’s a perfect combination! We truly want to see you succeed here and become an integral part of our mission to provide an experience that makes a positive difference in people’s lives. Come be a part of something special, where you can have an impact and be valued just for being you!
In addition to competitive pay, a discretionary annual bonus, and a supportive, team oriented culture, we offer an outstanding benefits package that includes medical, dental, vision, disability, and life insurance, sick time, unlimited vacation, and 401(k) with company match.
Position Summary
We are seeking a highly motivated Cybersecurity Engineer to join our growing cybersecurity team. This role is responsible for supporting and enhancing the organization's cybersecurity capabilities through incident response, digital forensics, threat hunting, and security technology implementation.
The ideal candidate possesses strong technical expertise in security operations and incident response while also contributing to the design, deployment, and optimization of cybersecurity solutions that strengthen the organization's overall security posture. This individual will serve as a key contributor in maturing security processes, improving defensive capabilities, and driving continuous improvement across the cybersecurity program.
Key Responsibilities
Digital Forensics & Incident Response (DFIR)
- Investigate cybersecurity incidents, including malware infections, unauthorized access, phishing attacks, insider threats, and potential data breaches.
- Collect, preserve, analyze, and document forensic evidence in accordance with industry best practices.
- Conduct endpoint, network, cloud, and log-based investigations.
- Perform root cause analysis and provide recommendations for remediation and prevention.
- Participate in incident response activities, including containment, eradication, recovery, and post-incident reviews.
- Develop and maintain incident response playbooks and investigation procedures.
Security Operations
- Monitor, investigate, and respond to security alerts generated by security monitoring platforms and managed security services.
- Perform proactive threat hunting activities across enterprise environments.
- Analyze indicators of compromise (IOCs), indicators of attack (IOAs), and emerging threat intelligence.
- Improve detection capabilities through the creation and tuning of SIEM use cases, analytics, and alerting logic.
- Collaborate with infrastructure and application teams to remediate identified vulnerabilities and security gaps.
Security Engineering & Program Maturity
- Assist in evaluating, implementing, and optimizing cybersecurity technologies and services.
- Lead or support security projects involving endpoint protection, identity security, cloud security, data protection, vulnerability management, and threat detection platforms.
- Develop security standards, procedures, and documentation.
- Conduct security assessments and provide recommendations for improving controls and reducing organizational risk.
- Support security architecture reviews and secure design initiatives.
- Identify opportunities to automate security processes and improve operational efficiency.
Collaboration & Communication
- Partner with IT, infrastructure, cloud, networking, and application teams to strengthen security controls.
- Prepare technical reports, post-incident analyses, and executive summaries.
- Provide guidance and mentoring to junior security analysts and engineers.
- Participate in audits, risk assessments, and compliance initiatives as needed.
Required Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field (or equivalent experience).
- 3–5 years of experience in cybersecurity, with emphasis on security operations, incident response, or security engineering.
- Experience conducting cybersecurity investigations and responding to security incidents.
- Experience supporting cloud environments.
- Experience implementing security controls within enterprise environments.
- Familiarity with NIST Cybersecurity Framework, CIS Controls, and Zero Trust principles.
- Experience with automation and orchestration platforms.
- Related certification(s) preferred
Note: To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed are representative of the knowledge, skill, and/or ability required and are not intended to be an exhaustive list of all duties, responsibilities or qualifications associated with this job.
Berry Appleman & Leiden is an Equal Opportunity Employer. It is the policy of BAL to ensure an equal employment opportunity without discrimination or harassment on the basis of race, color, national origin, religion, gender, gender identity or expression, age, disability, alienage or citizenship status, marital status, creed, genetic predisposition or carrier status, sexual orientation or any other characteristic protected by law. BAL prohibits and will not tolerate any such discrimination or harassment.
BAL does not accept unsolicited resumes from recruiters or employment agencies. BAL is under no obligation to pay any referral compensation or recruiter fee in the absence of a current executed Recruitment Services Agreement. In the event a recruiter or agency submits an unsolicited resume or candidate without an agreement, BAL reserves the right to pursue and hire said candidate(s) without any financial obligation to the recruiter or agency. Any unsolicited resumes, including those submitted to hiring managers, shall be deemed the property of BAL. If your agency would like to be considered as a potential recruiting partner, please forward your contact information to Recruitment@BAL.com.