Cybersecurity Engineer – Black Duck Implementation
Trick Dog Technology is seeking two experienced Cybersecurity Engineers to support a fast-moving security program for a financial services organization. These engineers will integrate directly into the client’s security team and assist with the implementation, configuration, and improvement of multiple security platforms and controls across the enterprise.
This engagement focuses on strengthening the client’s security posture through tool implementation, integrations, vulnerability management, and architectural improvements.
The most critical skill for this role is hands-on implementation and configuration of Black Duck Software Composition Analysis (SCA).
Key Responsibilities
Security Architecture & Program Development
• Develop and maintain security architecture diagrams
• Conduct CIS 18 security control gap assessment and provide remediation recommendations
• Assist with overall security improvement initiatives and roadmap execution
Security Tool Implementation & Integration
• Implement and configure Black Duck Software Composition Analysis (SCA)
• Build integrations between security platforms and ServiceNow (SNOW), including:
- CrowdStrike
- Tanium
- Synack
• Configure security dashboards and monitoring using Datadog
• Implement threat intelligence platforms and alerting mechanisms
Endpoint, Identity, and Access Security
• Implement and manage Microsoft E5 security capabilities
• Automate Active Directory access reviews
• Support Privileged Access Management implementation using Delinea
• Implement password management solutions such as Bitwarden
Infrastructure & System Security
• Perform systems hardening across enterprise infrastructure
• Implement ransomware protection controls and validation checklists
• Configure network vulnerability scanning and remediation processes
• Administer firewall security and vulnerability remediation initiatives
Cloud & Platform Security
• Assist with AWS security posture improvements
• Support ingestion and monitoring of logs from:
- Linux systems
- Microsoft Intune
- Workday
Security Monitoring & Detection
• Implement data exfiltration monitoring and alerting
• Develop centralized security dashboards and reporting
• Support detection engineering and incident readiness
Security Operations & Readiness
• Conduct tabletop incident response exercises
• Assist with penetration test preparation and remediation planning
• Support software package control and public repository security initiatives
Required Experience
• Hands-on implementation and configuration of Black Duck Software Composition Analysis (SCA)
• Experience integrating security platforms with ServiceNow
• Experience with endpoint detection platforms such as CrowdStrike
• Experience with Tanium security or endpoint management solutions
• Strong understanding of enterprise security architecture and controls
• Experience performing CIS security framework assessments
• Experience with vulnerability scanning and systems hardening
Preferred Experience
• Palo Alto firewall environments
• Datadog security monitoring dashboards
• AWS security architecture and improvement initiatives
• Privileged Access Management platforms such as Delinea
• Microsoft E5 security stack
• Threat intelligence platforms
Ideal Background
The ideal candidate has experience operating inside mature security environments and can quickly contribute to security tool deployment, integrations, and architectural improvements. Candidates who have worked in financial services or other regulated industries are strongly preferred.
These engineers should be comfortable stepping into an active security program and immediately helping the client deliver meaningful security improvements.