Senior Information Security Engineer; REMOTE
Springfield, Hampden County, Massachusetts, 01119, USA
Listed on 2026-07-02
-
IT/Tech
Cybersecurity
For more than 170 years, The Hanover has been committed to delivering on our promises and being there when it matters the most. We live our values every day, demonstrating we CARE through our values, Sustainability initiatives and inclusive corporate culture. We are seeking a highly experienced and skilled Senior Information Security Engineer to join our IT Security organization in our Worcester, MA office or remote work arrangement.
INTHIS ROLE, YOU WILL:
- Manage, maintain, and optimize the on‑premise SIEM platform (log ingestion, parsing, correlation rules, dashboards, alerting).
- Ensure SIEM availability, performance, and scalability for enterprise security monitoring.
- Develop and tune detection rules, correlation logic, and use cases aligned with threat intelligence.
- Oversee log source onboarding, configuration, validation across servers, applications, network devices, and security tools.
- Conduct regular SIEM health checks, capacity planning, and lifecycle management.
- Administer and maintain on‑premise IDS/IPS platforms.
- Tune signatures, policies, and rulesets to reduce false positives.
- Monitor IDS/IPS performance, availability, event trends to identify anomalies.
- Coordinate with network and security teams to implement policy updates, rule changes, architectural improvements.
- Ensure SIEM and IDS/IPS solutions aligned with security governance frameworks, compliance, organization policies.
- Maintain documentation for system configurations, processes, runbooks, governance controls.
- Support audit activities by providing evidence, reports, system configuration details.
- Participate in incident response by providing SIEM/IDS/IPS insights, event analysis, technical expertise.
- Evaluate emerging threats and recommend enhancements to detection logic and monitoring.
- Collaborate with architecture and leadership teams to align SIEM and IDS/IPS strategies with long‑term objectives.
- Identify opportunities to automate processes, improve detection fidelity, and enhance operational efficiency.
TO APPLY:
- Minimum 5 years of hands‑on experience administering, managing, and maintaining:
- An on‑premise SIEM security solution.
- An on‑premise IDS/IPS security solution.
- Demonstrated experience ensuring high availability, governance alignment, and operational effectiveness of security monitoring technologies.
- Strong understanding of SIEM architecture, log ingestion pipelines, correlation logic, event normalization.
- Expertise with IDS/IPS technologies, signature tuning, network traffic analysis, and threat detection methodologies.
- Proficiency with security log formats (syslog, JSON, CEF, LEEF, etc.).
- Familiarity with network protocols, firewall rules, and enterprise network architecture.
- Experience with Linux/Windows server administration as it relates to security tooling.
- Ability to analyze security events, identify patterns, and support incident response.
- Strong analytical and problem‑solving abilities.
- Excellent communication skills for cross‑team collaboration.
- Ability to work independently in a remote environment while managing multiple priorities.
- Detail‑oriented mindset with a commitment to governance, documentation, and operational discipline.
- Preferred Qualifications (Optional Enhancements):
- Industry certifications such as:
- GIAC (GCIA, GCDA, GCED, GMON)
- CompTIA Security+ / CySA+
- CISSP or equivalent
- Experience with automation (Python, Power Shell, or similar).
- Familiarity with threat intelligence platforms and frameworks (MITRE ATT&CK, NIST CSF).
- Industry certifications such as:
- Medical, dental, vision, life, and disability insurance
- 401K with a company match
- Tuition reimbursement
- PTO
- Company paid holidays
- Flexible work arrangements
- Cultural Awareness Day in support of IDE
- On-site medical/wellness center (Worcester only)
The Hanover values diversity in the workplace and among our customers. The company provides equal opportunity for employment and promotion to all qualified employees and applicants on the basis of experience, training, education, and ability to do the available work without regard to race, religion, color, age, sex/gender, sexual orientation, national origin, gender identity, disability, marital status, veteran status, genetic information, ancestry or any other status protected by law.
Furthermore, The Hanover Insurance Group is committed to providing an equal opportunity workplace that is free of discrimination and harassment based on national origin, race, color, religion, gender, ancestry, age, sexual orientation, gender identity, disability, marital status, veteran status, genetic information or any other status protected by law. As an equal opportunity employer, Hanover does not discriminate against qualified individuals with disabilities.
Individuals with disabilities who wish to request a reasonable accommodation to participate in the job application or interview process, or to perform essential job functions, should contact us at and include the link of the job posting in which you are interested.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).