Sobre esta vaga de Infrastructure Security Engineer na MSG Entertainment Holdings, LLC
Madison Square Garden Entertainment Corp. (MSG Entertainment) is a leader in live entertainment, delivering unforgettable experiences while forging deep connections with diverse and passionate audiences. The Company’s portfolio includes a collection of world-renowned venues – New York’s Madison Square Garden, Infosys Theater at Madison Square Garden, Radio City Music Hall, and Beacon Theatre; and The Chicago Theatre – that showcase a broad array of sporting events, concerts, family shows, and special events for millions of guests annually. In addition, the Company features the original production, the Christmas Spectacular Starring the Radio City Rockettes, which has been a holiday tradition for more than 90 years. More information is available at www.msgentertainment.com.
Who are we hiring?
The Infrastructure Security Engineer designs, configures, and evolves Security Engineering services and platforms, building the technical capabilities and automation that enable the organization to efficiently implement the controls, governance, and protection needed to keep its assets secure. This is a hands-on, technically deep role for someone deeply curious about how systems break, understanding vulnerabilities from how they arise to how they're exploited and remediated, reaching for the right tool across a broad security toolset, and comfortable with red-team engagements and pentesting to validate weaknesses and demonstrate real-world risk. This role requires at least a working knowledge of one programming language and automation fundamentals, a strong foundation in network security, networking fundamentals, and core infrastructure including PKI and certificate management, web application mechanics, and client-server relationships, alongside hands-on experience maintaining Palo Alto firewalls.
What will you do?
- Manage Palo Alto Networks firewalls, tuning configuration for security policies, threat prevention and application control.
- Participate in secure network architecture discussions in multi vendor environments, enforcing proper segmentation, zero trust and defense in depth strategies.
- Partner with network teams to implement security controls across LAN and WAN environments without compromising network performance.
- Own the technology implementation and delivery approach end to end, documentation, knowledge base upkeep and post implementation support.
- Secure hybrid and multi cloud environments, applying security controls for cloud networking services[i.e. AWS & GCP VPC, load balancing, routing & cloud firewalls.
- Acts as the L3 escalation point for Security Operations issues and security incidents, taking on operational responsibilities as the need arises.
- Execute technical audits and compliance reviews, engaging constructively with our GRC function.
- Curate and evolve our security services and product catalog, ensuring each service is clearly defined, has service levels set and is marketed to key stakeholders, informed by findings surfaced during pentesting and red team engagements.
- Participate in business cases and storyboards that justify spend and technical decisions, including investments in Security Engineering applications built in house, working closely with the operations team to stay aligned on direction.
- Assist with the development of in house security tooling and automation that operationalizes internal and external pentesting workflows, turning offensive findings into repeatable, validated controls.
- Take on the technical development of recovery and business continuity plans, ensuring the security infrastructure survives system shocks and internal, or external events and validating resilience through offensive testing.
- Collaborate with Information Security & Information Technology leaders to define the year to year Network Security program roadmap, inclusive of our security platforms and in house engineered applications.
- Drive hyper automation into all security products and services, so minimal human engagement is needed to deliver desired outcomes, building the tooling in house where it gives us an edge.
- Provide exceptional experiences for our guests, partners, and team members, including by adhering to our appearance and presentation guidelines while on-site.
What do you need to succeed?
- 5+ years of related experience
- Bachelor's degree in computer science, Cybersecurity, a related field, or equivalent combination of education and experience.
- Solid networking foundation applied to modern on premise & cloud environments: BGP, Routing, DNS, TLS and certificate-based trust, network segmentation, micro segmentation, VPNs and cloud networking constructs such as VPCs, security groups and cloud interconnect.
- Proficient in networking concepts and technologies, including TCP/IP, DNS, DHCP, BGP, and OSPF, with a strong focus on how they interact with security solutions.
- Strong Palo Alto firewall skills as well as Network ACLs, Azure NSGs, AWS security groups
- Product experience include Palo Alto Firewalls, Cisco Networks, Private LTE technologies, S1,Cloudflare, Wiz
- Outcomes-oriented mindset with ability to work in a fast-paced matrixed organization
- Experience with Python, Bash/ ZSH, Go, a similar language, or demonstrated ability to leverage LLM assisted engineering tools to develop automation and security solutions.
#LI- Onsite
At MSG, we recognize the importance of upskilling employees’ talents and strengths so they can drive their careers forward. We are proud to offer a robust set of tools and resources to help employees understand their interests and purpose, harness their talents and obtain the skills they need to reach the next step in their careers. Growth and longevity for our employees are top priorities here.
We value diversity and are looking for extraordinary employees of all backgrounds! MSG is an Equal Opportunity Employer and provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, sexual and reproductive health choices, national origin, citizenship, age, genetic information, disability, or veteran status. MSG complies with all applicable federal, state, and local laws governing nondiscrimination, including considering requests for reasonable accommodations as required.