This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Sr. Information Security Engineering job collaborates with various business units and stakeholders across the organization to monitor external and insider threat detection, mitigation, investigation and response efforts. Working under limited supervision, this job develops and implements robust technical solutions and advanced analytics to enable preventive threat detection efforts. This job also conducts and reviews the testing of the current state of the information security architecture and suggests improvement recommendations by gathering key insights found from testing and analyzing the current systems and networks.
Job Responsibility:
Provides operations and engineering support for critical security systems and services including servers, endpoint security, computer forensics, vulnerability/penetration assessment/mitigation, and security event management
Leads the cost/benefit evaluation of cloud solutions compared to virtual private networks, dedicated hosting, and in-house solutions
Reviews technical feasibility of adopting external cloud based IT platform and infrastructure services within the organization
Leads the identification of portions of the organization's IT platform/infrastructure with the highest potential return for cloud deployment
Facilitates implementation of the organization's global strategies and initiatives to enhance Information Technology plans, operations and procedures
Ensures the execution of vulnerability analysis and exploitation of applications, operating systems and networks
Reports identified intrusion or incident paths and methods discovered through testing and evaluation procedures
Designs, develops and implements countermeasures, systems integration and tools specific to cyber and information operations
Resolves and documents complex malware and intrusion issues within the system as they occur
Functions as an internal information security consultant on the standards, complex issues and best practices for the organization
Conducts testing and analysis of complex software systems to determine both the functionality and intent of the systems
Communicates with cybersecurity risk and security operation teams to enhance the overall security posture of the enterprise
Coaches, reviews and delegates work to lower level professionals to enhance their knowledge and performance related to information technology (IT) Security
Requirements:
5+ years of experience in Information Security or IT Technology
3+ years of experience leading complex enterprise-wide integration programs and efforts as an individual contributor
3+ years of engineering experience with vulnerability management tools such as Nexpose, Tenable
3+ years of engineering experience with operating systems such as Linux and Windows Server
2+ years of self-leadership experience
2+ years of experience writing Python, GRAPH (GQL)
2+ years of experience working with services in AWS, GCP, OCI, and Azure
Nice to have:
3+ years of experience in Vulnerability Management and Exposure Management
3+ years of experience in writing requirements for security technologies
3+ years of experience designing engineering solutions
Security certifications such as CISSP, CISM, CRISC, AWS Security, SANS, etc.
Excellent verbal, written, and interpersonal communication skills
Ability to influence, partners, stakeholders, and senior leadership
Strong customer service
Ability to leverage AI and machine learning to enhance threat detection, incident response, and security posture within cloud environments