Senior Incident Response Engineer

Cacheflow

Milano

In loco

EUR 60.000 - 85.000

Tempo pieno

14 giorni+

Ricevi più risposte dai datori di lavoro

Invia un CV specifico per questa offerta in pochi minuti.

Descrizione del lavoro

Cacheflow is seeking a Cyber Security Lead in Milano, Italy to enhance security operations and incident management. You will develop automated solutions for threat detection and response while collaborating with cross-functional teams to maintain security compliance. Ideal candidates should have crisis management experience, knowledge of SIEM and cloud technologies, and proficiency in automation tools. This position offers a hybrid work model designed to foster innovation in a dynamic environment.

Competenze

  • Experience in crisis management, preventing incidents from escalating.
  • Practical experience with automation in workflows.
  • Competency in Linux and Windows systems.

Mansioni

  • Execute, develop, and document incident handling guides and processes.
  • Conduct threat hunting activities and maintain forward-thinking strategies.
  • Develop monthly reporting dashboards and metrics on incidents.

Conoscenze

Crisis management
Automation
SIEM expertise
Cloud technologies
Linux
Python or JavaScript scripting

Strumenti

AWS Security Hub
Crowdstrike
Terraform
Ansible

Descrizione del lavoro

Location

Italy

Employment Type

Full time

Location Type

Hybrid

Department

All Cost Center R&D ENG

Are you ready to power the World's connections?

If you don’t think you meet all of the criteria below but are still interested in the job, please apply. Nobody checks every box - we’re looking for candidates that are particularly strong in a few areas, and have some interest and capabilities in others.

About the Role:

This position will build a working leader reporting to the security manager, who is responsible for creating a collaborative environment between Kong Inc. Security and all impacted business/engineering teams by working together in the effective incident detection, response, recovery, identification, and protection. Stakeholder management and clean thinking under pressure are critical requirements for the role, together with a strong passion for Cyber Security and its fantastic ability to make a real difference in protecting customers, partners and employees.

The company's leadership team, and a cross-functional team of skilled engineers from various perspectives, all working with a singular focus of maintaining our customer's trust. You'll be exposed to the reality of how Kong functions on a technical and process level and will build a comprehensive base of knowledge around how it all works together. In doing so, you'll be playing a role in keeping Kong secure and compliant, bringing security to our company's forefront.

What you’ll be doing:
  • Execute, develop and document incident handling guides and processes for Kong

  • Prioritizes events using existing tools to correlate data to reduce false positives and detect threats

  • Analyze and tune security alerts and interpret events, as well as create new signals based on signatures and behavioral activities

  • Respond to security incidents and perform forensics on IT systems as necessary.

  • Guide/lead mitigation strategies for identified vulnerabilities and threats

  • Design, automate and maintain a portfolio of security alerts, automated actions, and escalation workflows supporting a high-performing 24/7 incident response capability.

  • Conduct threat hunting activities, anticipate future threats, and maintain forward-thinking strategies for tools/technology/processes that combat sophisticated threat actors.

  • Assist with implementation of counter-measures or mitigating controls

  • Develop and maintain Incident Response capabilities in public cloud environments

  • Prepare incident reports of analysis methodology and results.

  • Recognize potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information

  • Partner with key stakeholders and communicate effectively to improve preparation, identification, analysis, containment, and post-mortem activities feedback loop.

  • Develop monthly reporting dashboards and metrics on incidents and response capabilities

  • Prepare executive summaries and conduct briefings on significant investigations.

What you’ll bring:
  • Experience in crisis management, namely in preventing incidents from becoming a crisis

  • Insight of using incidents as opportunities by leveraging Incidents to drive innovation, situation awareness, and fixes

  • Passion for automation, delegation, and scalability via playbooks and highly effective processes

  • Drive for automating processes and workflows to detect, contain and eliminate active malicious agents

  • Expertise in building and operating security information/event management systems (SIEM), centralized logging, and enrichment solutions (Endpoint protection/detection, Panther, Crowdstrike, AWS Security Hub, codebase infrastructure, build infrastructure).

  • Practical experience working with cloud technologies; ability to build and deploy a solution using Terraform.

  • Experience with building and deploying solutions (Ansible, Terraform)

  • Competency in Linux, windows;

  • Ability to automate workflows via Python or javascript scripting languages.

Ottieni la revisione del curriculum gratis e riservata.
o trascina qui il file.
Similar jobs

Offerte di lavoro simili che vale la pena confrontare

Senior Incident Response Engineer
Senior Incident Response Engineer

Kong • Turbigo

In loco
EUR 60.000 - 80.000
Senior Security Engineer
Senior Security Engineer

Kong Inc • Italia

Ibrido
EUR 70.000 - 90.000
Site Reliability Engineer
Site Reliability Engineer

Cacheflow • Milano

In loco
EUR 90.000 - 130.000
Professional Services Principal Consultant - Incident Response, French-Speaking (Remote)
Professional Services Principal Consultant - Incident Response, French-Speaking (Remote)

CrowdStrike • Milano

Ibrido
EUR 61.000 - 95.000
Market-leading compensation
Comprehensive wellness programs
Generous vacation and holidays
+2
Secure System Engineer
Secure System Engineer

Gyala • Roma

In loco
EUR 40.000 - 60.000
Incident Coordination Specialist
Incident Coordination Specialist

SiliconDev S.p.A. • Milano

Ibrido
EUR 36.000 - 40.000
Work ibrida
Senior Incident Response Lead - Remote (Italy/Denmark)
Senior Incident Response Lead - Remote (Italy/Denmark)

Google • Italia

Ibrido
EUR 88.000 - 90.000
Forward Deployed Engineer
Forward Deployed Engineer

Cacheflow • Milano

Ibrido
EUR 70.000 - 90.000
Incident Response Engineer - 24/7 Security & Automation
Incident Response Engineer - 24/7 Security & Automation

Kong • Turbigo

In loco
EUR 60.000 - 80.000
Incident Manager
Incident Manager

TeamSystem • Milano

Ibrido
EUR 90.000 - 120.000
Wellbeing focus
Flexible hybrid
Development program
+2