Description :
Working in the Security Operations team as a Security Engineer you will play a key role in ensuring that the business IT systems are protected and monitored from threats.
You will assist with the daily operational system administration of the security toolsets including IDS, SIEM, advanced threat detection and privilege account management to ensure they are updated and fully functional.
Key Responsibilities :
- Maintain software version and patch management for security products (including regular software patch updates).
- Encryption Key and Certificates management for security products.
- DLP policy / rules administration and maintenance.
- Software licensing and renewal.
- Review or implementation of SIEM rules (incl. False / Positives and remediation).
- Production incidents handling for security products (such as troubleshooting, hardware parts replacement, software bug fixes, vendor support engagement).
- Maintain security technical engineering standards to meet information security policies and controls, industry standards and best practices, applicable legislative and regulatory requirements.
- Document Low Level Designs and other relevant artefacts required by project life cycle.
- Support Security Analysts as required.
- Support and contribute to producing Security dashboards and reporting.
The Person :
Technical skills and experience :
The ideal candidate will have expertise in the following :
Minimum 2 years relevant experience in IT security, including direct experience within a Security Engineer role.Certifications such as AZ-500, AWS Security, CEH, CISSP, GIAC (Advantageous)Experience in building and maintaining security systems.An excellent hands on understanding of the following areas or technologies :
Scripting and automation toolsAzure and AWS Platforms and its security technologiesFirewall and intrusion detection / prevention protocolsSecure coding practices, ethical hacking and threat modellingWindows, Linux operating systemsSecure network architectures and technologiesNetwork and web related protocols (eg, TCP / IP, UDP, IPSEC, HTTP, HTTPS, routing protocols, etc.)Advanced Persistent Threats (APT) prevention and detectionSecure network architectures and technologiesNetwork and web related protocolsSoft skills and experience :
Ability to read and interpret data including security, system, application and device specific logsExcellent analytical skills and solutions oriented approach.Ability to quickly learn new technologies and systems. A methodical approach with accuracy is essential(ref : hirist.tech)