Security Engineer(SecOps + General +SIEM Tools)
- Secops
- siem
- security engineer
Security Engineer – Security EngineeringJob Summary
We are looking for a Security Engineer with 3–7 years of hands-on experience in implementing and supporting security solutions across Cloud Security, Infrastructure Security, Application Security/DevSecOps, Data Protection, and Security Platform Engineering. The ideal candidate will have a strong engineering mindset, experience working in cloud and hybrid enterprise environments, and the ability to automate and operationalise security controls.
Key Responsibilities
- Implement and support security solutions across Cloud Security, Infrastructure Security, Data Protection, Application Security/DevSecOps, and Security Platform Engineering in alignment with enterprise security standards.
- Build, configure, integrate, and optimise security tools, platforms, and control capabilities to ensure operational effectiveness and sustainability.
- Support security architecture and risk reviews by providing technical inputs and implementing recommended security controls and design improvements.
- Implement Application Security and DevSecOps controls within CI/CD pipelines and software engineering workflows.
- Develop and enforce security engineering baselines, hardening standards, configuration standards, and security benchmarks to minimise configuration drift.
- Automate security controls and operational processes using scripting, Infrastructure as Code (IaC), and automation frameworks.
- Integrate security tools and controls across cloud, on-premises, and hybrid environments.
- Develop and maintain technical standards, engineering runbooks, operational procedures, and Architecture Decision Records (ADRs).
- Collaborate with Cyber Defense/SOC Operations to ensure security controls generate appropriate telemetry, logging, and monitoring data for detection and response.
- Support the global deployment, configuration, maintenance, and troubleshooting of security engineering solutions across multiple regions.
- Partner with regional IT and plant/site technology teams to support implementation planning, operational readiness, and issue resolution.
- Ensure consistent implementation of security controls across regions while supporting security exceptions and risk acceptance processes through established governance frameworks.
- Continuously evaluate security controls and identify opportunities to improve security posture, automation, reliability, and operational efficiency.
Required Qualifications
- Bachelor's degree in Computer Science, Information Security, Engineering, Cybersecurity, or a related technical field.
- 3–7 years of professional experience in Security Engineering, Infrastructure Engineering, Cloud Security, Cloud Engineering, DevSecOps, or related technical roles.
- Hands-on experience implementing and operating security controls in cloud-native and hybrid enterprise environments.
- Strong understanding of enterprise security engineering principles and security control implementation.
- Hands-on experience in at least two or more of the following areas:
- Cloud Security
- Infrastructure Security
- Application Security
- DevSecOps
- Data Protection
- Security Platform Engineering
- Experience with security automation, scripting, and Infrastructure as Code (IaC).
- Ability to translate security requirements into technical implementations and operational controls.
- Strong troubleshooting, analytical, and problem-solving skills.
- Strong documentation skills with experience creating runbooks, technical standards, procedures, and architecture documentation.
Preferred Qualifications
- Experience working with security solutions across AWS, Azure, or GCP environments.
- Experience integrating security controls into CI/CD and DevSecOps pipelines.
- Knowledge of SIEM, security monitoring, logging, detection, and incident response requirements.
- Experience with configuration management, system hardening, and security benchmarks such as CIS.
- Experience with Terraform or other IaC technologies.
- Proficiency in scripting languages such as Python, PowerShell, or Bash.
- Security certifications such as Security+, CySA+, CEH, CISSP, CCSP, AWS Security Specialty, or equivalent are preferred.