Cybersecurity Engineer

About the job

At Oshkosh, we build, serve and protect people and communities around the world by designing and manufacturing some of the toughest specialty trucks and access equipment. We employ over 15,000 team members all united by a common purpose. Our engineering and product innovation help keep soldiers and firefighters safe, is critical in building and keeping communities clean and helps people do their jobs every day.

Job Summary

Oshkosh Corporation owns significant assets in the form of information. Some of these assets lose substantial value if they are improperly disclosed, and similar disclosure of other assets could result in significant harm to the organization. This role will support the Global Information Security (InfoSec) Office Mission by working with the business as a trusted advisor to reduce information security risk to acceptable levels. Specifically. by acting as the organization’s mechanism to appropriately identify, select, maintain, and improve security controls by using risk based approach.

Essential Duties And Responsibilities

These duties are not meant to be all-inclusive and other duties may be assigned.

  • Participate in the Security Incident Response Team (SIRT). Help SIRT to employ strategy, standards, processes and technology to detect, respond and recover from security incidents and to limit the impact of any such occurrence or re-occurrence by using risk-based triage.
  • Serve as a security resource in network or application design, operating systems, endpoint protection, mobile devices, and foundational InfoSec technical controls. Maintain and roadmap InfoSec hosted systems (e.g. SIEM, DLP) and drive continuous improvements.
  • Work with other functional area analysts ensuring InfoSec solutions are in place throughout all IT systems to mitigate identified risks sufficiently, while meeting business objectives and regulatory requirements. Help project teams comply with InfoSec policies, industry regulations, and best practices.
  • Ensure that business and technical requirements are aligned to policy and are implemented within regulatory and contractual compliance. Advocate for cyber risk mitigation during planning sessions and implementation of new services.
  • Maintain awareness of all aspects of information security and compliance, including PCI, SOX, and HIPAA requirements for information systems and industry best practices; such as, NIST 800-53, 800-171.
  • Participate in, as required, forensic investigations/analysis, including collaboration with governmental agencies, as needed.

Minimum Qualifications

  • Bachelor’s degree in Information Systems or equivalent.
  • Two (2) or more years of Information Security experience.
  • Experience with Network protocols (TCP/IP), network apps and services, sniffers, DLP, and understanding network security issues.
  • Experience with Host/System security issues including identifying, analyzing and mitigating security vulnerabilities and weaknesses (malicious code, implementation flaws, hardening, etc.).
  • Familiarity with identifying intruder techniques (new vulnerability, attack vectors, exploits, etc.).
  • Familiarity with Intrusion Detection/Prevention Systems, SIEM, and other InfoSec systems.

Preferred Qualifications

  • Relevant industry recognized certifications (CISSP, CEH, GIAC, Security+, etc.)

Working Conditions

  • Physical Demands: Frequent Sitting, Hearing, Talking, Visual, Typing, and Manual Dexterity.

Oshkosh is committed to working with and offering reasonable accommodation to job applicants with disabilities. If you need assistance or an accommodation due to disability for any part of the employment process, please contact us at: 920-502-3009 or corporatetalentacquisition@oshkoshcorp.com.

Oshkosh Corporation is an Equal Opportunity and Affirmative Action Employer. This company will provide equal opportunity to all individuals without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. Information collected regarding categories as provided by law will in no way affect the decision regarding an employment application.

Oshkosh Corporation will not discharge or in any manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with Oshkosh Corporation’s legal duty to furnish information.

Certain positions with Oshkosh Corporation require access to controlled goods and technologies subject to the International Traffic in Arms Regulations or the Export Administration Regulations. Applicants for these positions may need to be “U.S. Persons,” as defined in these regulations. Generally, a “U.S. Person” is a U.S. citizen, lawful permanent resident, or an individual who has been admitted as a refugee or granted asylum.

More Information

Apply for this job

Leave your thoughts