About the Role
Millennium's Information Security team partners closely with the business to protect the firm’s information and computer systems across a complex global environment. The team works collaboratively to strengthen security controls, improve resilience, and defend the firm against both external and internal threats.
Responsibilities
- Develop, implement, and maintain security policies, procedures, and standards related to Data Lake, Email security, SOAR, Breach Attack Simulation and network security
- Monitor, manage, and analyze security logs, alerts, and events across multiple systems to identify threats, vulnerabilities, and suspicious activity
- Provide security engineering and consulting support to the Security Operations and Information Security teams
- Strengthen perimeter security through automation, improved monitoring, vulnerability identification, and actionable alerting and reporting
- Partner with stakeholders across Technology, Trading, Legal, Internal Audit, and Compliance to support and enforce security policies and controls
- Conduct system audits and vulnerability assessments, manage remediation efforts, and help address findings from audits, penetration tests, and process reviews
- Contribute to incident response activities and use threat intelligence to improve detection, defense, and response capabilities
- Support the transition of security solutions into production, maintain clear documentation, and provide guidance to junior security professionals
Requirements
- 3+ years of experience in a technical role, including 2+ years focused on network and information security
- Experience in financial services is preferred
- Proven experience as a Security Engineer with hands-on expertise in logging pipelines, data lakes or SIEM (platforms such as Splunk, ELK, Sentinel, S3/Athena or similar tools) and SOAR automation
- Strong hands-on experience with network security technologies, including firewalls, intrusion detection and prevention, network detection and response, and network access control
- Additional experience in at least one of the following: breach and attack simulation, Email Security or AI Security
- Strong understanding of TCP/IP and related infrastructure concepts, including DNS, Wi-Fi, virtualization, and core networking fundamentals
- Experience using packet capture and network analysis tools such as tcpdump, Wireshark, or ngrep for troubleshooting and investigation
- Knowledge of cloud platforms such as AWS, GCP, or Azure
- Scripting or development skills in Python, PowerShell, shell scripting, or similar languages
- Experience with proxy technologies and a practical understanding of proxy engineering concepts
Skills
- Data Lake
- Email security
- SOAR
- Breach Attack Simulation
- Network security
- Splunk
- ELK
- Sentinel
- S3/Athena
- Firewalls
- Intrusion detection and prevention
- Network detection and response
- Network access control
- TCP/IP
- DNS
- Wi-Fi
- Virtualization
- Packet capture
- Network analysis tools
- tcpdump
- Wireshark
- ngrep
- AWS
- GCP
- Azure
- Python
- PowerShell
- Shell scripting
- Proxy technologies
Experience Level
- 2+ years focused on network and information security
Education Level
- Bachelor’s degree in Computer Science, Engineering, or a related field is preferred
- CISSP certification is preferred
- GCIA certification is preferred
- CISM certification is preferred
About the Company
- Millennium is a global, diversified alternative investment firm, founded in 1989.
- Defined by evolution, innovation and focus, Millennium’s mission is to deliver results for our investors.
- Our people are empowered with both independence and support: the autonomy to pursue ideas with conviction and the backing of a global network committed to collaboration, disciplined risk management and continuous learning.
- With opportunities to deepen expertise and accelerate development, talent at Millennium is equipped to adapt, evolve and build lasting impact over time.
- Discover how transformative growth accelerates impact.
