Summary
The Security engineer is a critical technical role responsible for supporting a wide range of information Security related activities including, designing, implementing, and maintaining security measures to protect systems, networks, and data from cyber threats. To collaborate with cross-functional regional teams to assess risks, develop security solutions, and respond to security incidents effectively. The ideal candidate will possess strong technical skills, analytical thinking, and a proactive approach to cybersecurity.
Responsibilities
- Documentation and Reporting: Maintain accurate records of security incidents, investigations, and remediation activities. Prepare and present reports, metrics, and dashboards to management and stakeholders to communicate security posture and performance. Document procedures and process as necessary.
- Incident Detection and Response: Detect and investigate security incidents, anomalies, and potential threats to networks, applications, and data. Collaborating with Global SOC team to analyze security breaches, new security vulnerabilities, threats to determine root causes and recommend appropriate remediation actions.
- Security Assessment and Training: Support region-wide activities. Plan and execute security self-assessments, vendor security assessments and annual remediation activities.
- Security Incident Response: Develop and execute incident response plans, procedures, and playbooks to facilitate timely and effective response to security incidents. Coordinate with internal teams and external stakeholders to contain, eradicate, and recover from security breaches.
- Security Monitoring and Analysis: Monitor security alerts, logs, and event data from various sources, including EPP, EDR, IPS/IDS, SOC etc.
- Strategic Planning: Combining information for group security, IT and business strategy to develop security strategy and planning.
- Threat Intelligence Analysis: Stay updated on the latest cybersecurity threats, trends, and attack techniques by analyzing threat intelligence feeds, security advisories, and industry reports. Use this information to enhance threat detection and response capabilities.
Requirements:
- 3 years’ experience in Information Technology and at least 2 years in Security
- Ability to communicate technical topics to diverse audiences including technology teams, leaders and business users without a technical background.
- Ability to work closely with a wide variety of teams from diverse cultural backgrounds.
- Degree in Information Technology, or relevant fields
- Hands on experience in security operations & solutions
- Maintain up-to-date security knowledge on trends in the industry. Be able to identify and communicate current and emerging security threats across security domains.
- Security focused industry certification, e.g.: Microsoft Security, GSEC, CEH, etc.
- Security technology: MS security (Azure, O365, ect), Qualys, Tanium, TrendMicro, IAM, AWS, etc.