We are seeking a highly skilled and proactive Senior Cybersecurity Engineer to join our security team and play a critical role in protecting our cloud-native and hybrid environments. This position combines advanced security engineering expertise with hands-on SOC operations, ensuring effective threat detection, incident response, and proactive defense strategies. The ideal candidate will possess strong experience in cloud security, DevSecOps, SOC workflows, and modern security technologies.
Responsibilities
- Design, implement, and manage security tools and infrastructure , including SIEM, IDS/IPS, firewalls, EDR, and vulnerability management platforms.
- Lead and support SOC operations , including continuous monitoring, triage, and investigation of security events and alerts.
- Act as an escalation point for complex security incidents, driving resolution and conducting post-incident reviews.
- Lead incident response efforts : detection, containment, eradication, recovery, and post-mortem analysis.
- Conduct risk assessments, penetration testing, and threat modeling to proactively identify and remediate vulnerabilities.
- Develop and tune detection rules, correlation logic, and playbooks for incident response in the SIEM and SOAR platforms.
- Monitor threat intelligence feeds and integrate findings into the SOC workflow and security posture improvements.
- Drive security architecture and secure-by-design practices across the engineering lifecycle.
- Develop, maintain, and enforce security policies, procedures, and response protocols .
- Collaborate with DevOps and IT teams to integrate security controls into CI/CD pipelines and cloud infrastructure .
- Provide guidance and mentorship to junior SOC analysts and security engineers.
- Stay current with evolving threats, TTPs, and emerging security technologies.
Requirements
- 2+ years of experience in cybersecurity, including direct involvement in SOC or security operations .
- Deep understanding of security principles and best practices : network, application, cloud, and endpoint security.
- Hands-on experience with:
- EDR tools (e.g., CrowdStrike, Acronis)
- Firewalls and network security (e.g., Palo Alto, CheckPoint)
- Vulnerability scanners (e.g., Qualys, Nessus)
- Familiarity with SOC processes , such as alert triage, incident escalation, threat hunting, and forensic analysis.
- Proficient in scripting or automation (Python, Bash, PowerShell) for SOC or security engineering tasks.
- Strong experience with cloud security on AWS, Azure, or GCP.
- Knowledge of DevSecOps principles and integrating security in CI/CD pipelines.
- Familiarity with security frameworks and methodologies: MITRE ATT&CK, NIST, ISO 27001, OWASP Top 10 .
- Strong communication, analytical thinking, and collaboration skills.