We are looking for Engineers to join our Security Operations Function.
As a Security Operation Engineer, responsibilities would span the entire organization with ownership of Security Operations processes and technologies.
The primary responsibility of the role is to be a proactive and self-sufficient member of our Security Operations Center (SOC).
The Security Team works directly with our Application Development, Data Engineering, Infrastructure, Human Resources Teams, Customer Success and all business verticals to secure company's Employees, Business, Applications, Data and Technology Infrastructure.
Viable candidates for this role have a proven and practiced foundational understanding of cybersecurity concepts and are eager to grow their skills and career in security operations within a dynamic and high-paced environment.
Key responsibilities:
● Monitor Security Systems - Continuously track, investigate, and close s and events via SIEM tools and other security related platforms
● Incident Response - Assist in the investigation and resolution of security incidents by conducting triage, escalating critical issues, and documenting findings - including, but not limited to, malware infections, data breaches, unauthorized access
● Threat Analysis - Analyze potential threats and vulnerabilities via logs, s, and OSINT feeds to propose solutions to mitigate the identified threats
● Security Documentation - Maintain comprehensive documentation of security procedures, runbooks, incident reports, threat intelligence
● Conduct Security Audits - Collaborate on routine audits and compliance checks to ensure adherence to security policies and best practices
● Collaboration - Work closely with the Security, IT, Engineering, and Org. Operations and Business teams to support ongoing projects and ensure alignment with security requirements and best practices
● Continuous Learning - Stay abreast of emerging threats, technologies and compliance frameworks, continually enhancing professional skills
● Support Security Tools - Assist with the management and optimization of security tools ensuring they are configured correctly and functioning properly.
Qualifications: (requirement level dependent upon experience)
● 2+ years' experience in cybersecurity, IT security, or SOC environment
Preferred Skills
● Familiarity with SIEM tools
● Understanding of cybersecurity and networking fundamentals
● Basic scripting skills
● SaaS Application Security and Operations
Top 3 Outcomes of Year One
● Intimately understand company business, our application stack and own (technically and Operationally) the Security Operations function
● Lead and execute major Security Incident Response Operations
● Be the de-facto Security Operations subject matter expert and embed Security Operations into Engineering and for the organization
What You’ll do
● Own and maintain day to day Security Operations (Monitoring, Observability, Triage, Resolution, Improvements, Internal Investigations, Incident Response Ownership/Execution, Own and Execute internal and external PenTesting, Annual NIST Evaluation, Application Scans, Participate in 24x7 Security Support
● Maintain company's Security Operations processes and technology footprint
● Manage and resolve new threats to company's operational infrastructure
● Monitor, Audit and harden existing infrastructure, automation (event handling), code and process
● Oversee and drive a threat hunting program that proactively identifies and mitigates unknown or emerging threats using advanced tools and techniques.
● Collaborate with global cross-functional teams, including Incident Management teams, Public Policy, Legal, Product, and Engineering, to develop effective solutions
● Maintain and continually improve company's Security Posture
● Ensure security requirements and considerations are woven into the development of each system
● Maintain and enhance IAM framework and function with IT/Security for the organization, platforms and applications
● Automate company's security processes using AWS and GCP tools (others where applicable), as well as developing custom security automation
● Craft comprehensive incident reports and effectively communicate analysis results and escalations to key stakeholders
● Analyze incident trends, systems, and data to enhance overall escalation processes, offering recommendations for process, policy, and product improvements
● Drive resolution of any vulnerabilities with other engineering teams including app/dev and infrastructure
What you’ll Bring
● Structure and maturity to Security Operations at company
● Hands on expertise in Cyber Security for our On-Prem & Cloud Infrastructure, Telephony solutions, Enterprise Integrations and Security Platforms and Tooling
● Subject Matter expertise on CNAPP, SCA, CSPM, Monitoring/Observability, SEIM/MDR, Shared Nothing Architecture, DAST, SAST, MPT, WAF, Encryption, Threat Detection, EngPoint Protection, IAM, Netw
CyberSecurity,PenTesting,IAM Framework,MDM