This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Supporting the design and implementation of information security systems and frameworks including threat prevention, detection and mitigation tools
Manage, maintain and optimize security information and event management (SIEM) platforms and associated security infrastructure
Detect and respond to information security incidents, investigate security incidents, identify attack vectors, and lead containment/eradication/recovery efforts
Create detailed incident reports, lead post-incident reviews, document lessons learned, and contribute to compliance reporting
Hunt for undetected threats, tune security tools, refine detection rules, and address false positives
Vulnerability management, analysis, oversee the vulnerability management lifecycle and reporting, support prioritization and advise relevant stakeholders on vulnerability status and postures
Identify risks in new and existing projects and environments and support the implementation of necessary security controls to meet business needs
Support the implementation of security orchestration, automation and response (SOAR) playbooks and procedures in order to improve response times and ensure consistent approach to incidents
Provide mentorship and support to more junior analysts, act as escalation point for complex issues
Support in testing and evaluation of security products and solutions
Support the development and management of the security operations centre (SOC) function as it is built up and developed into the future
Raise awareness of security policies and best practices across the organisation
Continue to contribute to ongoing development of best practices, procedures and security training across the organisation
Requirements
Strong understanding of SIEM, EDR, cloud security services (e.g., AWS GuardDuty), and various security technologies
Experience in automation and development of automated playbooks and associated processes in security orchestration, automation and response (SOAR) environments
Experience in the creation of incident response plans and leading incident response efforts and post incident reporting when required
Threat intelligence, knowledge of tactics, techniques, and procedures (TTPs) utilised by threat actors and how to generate and deploy mitigation strategies
Vulnerability management, monitoring, reporting and engagement with necessary stakeholders to ensure timely remediation
Can demonstrate strong understanding of network security principles and encryption technologies
Experience of security change management processes and procedures
Demonstrate experience of risk assessment and advisory capabilities on both internal systems and products/solutions from third party vendors (SaaS, AI etc)
Experience in contributing to the development, implementation and management of security policies and procedures
Strong knowledge of security frameworks and industry best practices – such as ISO 270001, NIST, PCI-DSS and others
Strong analytical and problem solving capabilities
Demonstrate experience of effective communication and collaborative skills to work across diverse cross-functional teams including development, IT, Legal, Governance and Risk etc
What we offer
Global access to mental health and financial wellness support and resources
healthcare (medical, dental, and vision)
life, accident, disability, commuter, and retirement options (401(k)/pension)