This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As a Security Engineer, you will take on a key responsibility to improve the Security Logging & Monitoring Program by maturing the tools, processes and playbooks to reduce dwell time (indicators of which would be lowered MTTD&R, contributing to our ongoing efforts to drive business success and enhance customer satisfaction.
Job Responsibility:
Responsible for SOC monitoring, use-case building, triage and advisory using cloud-native SIEM platforms
Conduct initial triage of security events and incidents and document progress throughout the Incident Response Lifecycle
Automate, optimize, automate and operate modern security solutions like EDR/EPPs and conventional Firewalls, IDS/IPS, Email Security, VPN, and MDM tools
Leverage premium and open-source threat intel feeds to regularly sweep environments against rising APT campaigns
Prepare status reports and follow up with the stakeholders through Jira and Incident Mgmt. Platform to close the remediation loop
Facilitate efficient Incident Detection and Response in AWS cloud and enterprise IT environments
Requirements:
A minimum of 2 years of experience working in mature SOC environments
Security monitoring and incident response experience in public cloud environments such as AWS
Experience with cloud SIEM & SOAR platforms, DDoS mitigation and preventing tools and Layer-7 Web-based perimeter security controls
Understanding of network intrusion methods, network containment, segregation techniques and technologies such as Sandboxes and Intrusion Detection/Prevention Systems (ID/PS)
Ability to operate EDR, EPP and Device Management solutions as per best security practices
Decent programming skills to enable data processing, IaC and security automations
Good communication and reporting skills
Experience with log analysis stacks like ElasticSearch, Splunk/SumoLogic