Apply

Security Operations Engineer

Posted 2 days agoViewed

View full description

💎 Seniority level: Middle, 3 years

📍 Location: United States, Internationally

💸 Salary: 155000.0 - 175000.0 USD per year

🔍 Industry: Cybersecurity

🏢 Company: Axonius👥 600-600💰 $200,000,000 Series E about 1 year agoAsset ManagementCloud SecurityInformation TechnologyCyber SecurityNetwork Security

🗣️ Languages: English

⏳ Experience: 3 years

🪄 Skills: PythonCloud ComputingCybersecurityCI/CDRESTful APIsLinuxTerraformNetworkingJSONScripting

Requirements:
  • Minimum of 3 years of hands-on experience in a security operations or security engineering function within a modern, cloud and SaaS-heavy environment.
  • Proven experience with a broad range of security technologies.
  • Strong networking and systems knowledge, including a strong understanding of macOS, Windows, and Linux.
  • Advanced proficiency in SIEM platforms for incident detection, investigation, and response.
  • Proficiency in Python scripting and development for security automation is highly preferred.
  • Familiarity with cloud infrastructure engineering principles, particularly Infrastructure as Code, (Terraform experience is a big plus).
  • Experience with Cloud Native Application Protection Platforms (CNAPP) is a big plus.
Responsibilities:
  • Investigate alerts and events that may have security implications.
  • Respond to and coordinate cross-team efforts during potential security incidents.
  • Design and implement threat detection, response, and hunting activities.
  • Develop automation to reduce the likelihood of future incidents.
  • Evaluate, implement, and maintain modern cloud-native security tooling related to corporate and product infrastructure.
  • Implement, improve, and maintain code-driven detection and response capabilities of our SIEM platform.
  • Follow industry security trends, advisories, news, and general research, and advise stakeholders across the company on how to stay ahead of relevant security risks.
  • Conduct security reviews and provide approval for pull requests related to significant infrastructure changes.
Apply

Related Jobs

Apply

📍 United States, internationally

💸 155000.0 - 175000.0 USD per year

🔍 Cybersecurity

  • Minimum of 3 years of hands-on experience in a security operations or security engineering function within a modern, cloud and SaaS-heavy environment.
  • Proven experience with a broad range of security technologies.
  • Strong networking and systems knowledge, including a strong understanding of macOS, Windows, and Linux.
  • Advanced proficiency in SIEM platforms for incident detection, investigation, and response.
  • Proficiency in Python scripting and development for security automation is highly preferred.
  • Familiarity with cloud infrastructure engineering principles, particularly Infrastructure as Code, (Terraform experience is a big plus).
  • Experience with Cloud Native Application Protection Platforms (CNAPP) is a big plus.
  • Investigate alerts and events that may have security implications.
  • Respond to and coordinate cross-team efforts during potential security incidents.
  • Design and implement threat detection, response, and hunting activities.
  • Develop automation to reduce the likelihood of future incidents.
  • Evaluate, implement, and maintain modern cloud-native security tooling related to corporate and product infrastructure.
  • Implement, improve, and maintain code-driven detection and response capabilities of our SIEM platform.
  • Follow industry security trends, advisories, news, and general research, and advise stakeholders across the company on how to stay ahead of relevant security risks.
  • Conduct security reviews and provide approval for pull requests related to significant infrastructure changes.

AWSPythonCloud ComputingCybersecurityRESTful APIsLinuxDevOpsTerraformScripting

Posted 1 day ago
Apply
Apply

📍 United States

🧭 Full-Time

💸 110000.0 - 135000.0 USD per year

🔍 Information Security

🏢 Company: Careers👥 101-250PublishingTrainingHuman ResourcesCareer PlanningProfessional Services

  • 3-5+ years in technical role in information security
  • Knowledge of security technologies like firewalls and DLP
  • Strong understanding of security operations concepts
  • Familiarity with attack paths and threat vectors
  • Experience with securing Microsoft Entra ID/Hybrid
  • Development/scripting experience in Python and/or PowerShell
  • Provide technical expertise across various security technologies
  • Configure, troubleshoot, and test detection tools
  • Create and update security tool detection rules
  • Validate security controls setup
  • Serve as subject matter expert in Incident Response
  • Work cross functionally on security automation
  • Integrate threat intelligence feeds
  • Support security projects with research and documentation

PythonCybersecurity

Posted 16 days ago
Apply
Apply

📍 Americas, EMEA

🧭 Permanent

🔍 Open source technology

🏢 Company: Canonical - Jobs

  • An exceptional academic track record
  • Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
  • Drive and a track record of going above-and-beyond expectations
  • Deep personal motivation to be at the forefront of technology security
  • Expertise in threat modelling and risk management frameworks
  • Knowledge of security architecture and market-leading security tools
  • Experience contributing to, and consuming, threat intelligence feeds
  • Experience in security risk management frameworks such as NIST CSF
  • Experience with security standards such as ISO 27001
  • Implement and evolve Canonical's SecOps security standards and playbooks
  • Analyse and improve Canonical's security architecture
  • Evaluate, select and implement new security tools and practices
  • Identify, contain and guide the remediation of security threats and cyber attacks
  • Grow the presence and thought leadership of Canonical SecOps practice
  • Contribute to open source threat intelligence initiatives
  • Drive threat modelling, table top exercises and other SecOps practices across Engineering, IS and Canonical
  • Develop Canonical SecOps learning and development materials
  • Publish blog posts, whitepapers and conference presentations
  • Identify, implement and track SecOps KPIs
  • Plan and deliver SecOps work in the framework of Canonical's agile engineering practice
  • Work with Security leadership to present information and influence change

CybersecurityRisk Management

Posted about 1 month ago
Apply
Apply

📍 United States

🔍 Cyber Security

🏢 Company: Bask Health👥 11-50💰 $759,987 Seed over 1 year agoElectronic Health Record (EHR)SaaSWellnessHealth CareHome Health Care

  • 5+ years experience in information technology or cyber security roles, with a focus on security operations and incident response.
  • 2+ years experience analyzing large data sets for security event triage and workplace investigations.
  • B.S. or M.S. in Cyber Security, Data Analytics, Computer Science, or equivalent experience.
  • Working knowledge of SQL and basic knowledge of programming/scripting in Python, Go, or similar languages.
  • Proven experience with log querying, analysis, digital forensics, and incident response using SIEM Platforms such as Splunk or Elastic.
  • Leverage security operations experience to analyze and respond to security notifications, events, and inquiries.
  • Perform initial triage of potential security incidents through log and data analysis to assess severity and impact.
  • Take pre-approved remediation measures to contain threats and escalate findings for further review.
  • Coordinate with partner teams to enhance threat detection and response capabilities.
  • Work cross-functionally to develop solutions for analyzing security events and protecting company networks and data.

PythonSQLCybersecurityData AnalysisJavascriptTypeScript

Posted 3 months ago
Apply
Apply

📍 USA

🧭 Full-Time

💸 200000 - 275000 USD per year

🔍 Fintech

  • Seasoned Detection and Response Engineer with experience leading investigations, including containment actions and forensics.
  • 7+ years of experience with Detection and Response engineering, focusing on leading incidents.
  • Ability to handle high-pressure, complex situations calmly.
  • Strong ability to analyze and correlate information from multiple sources and engineer solutions.
  • Strong communication skills with the ability to address technical and non-technical audiences.
  • Experience with Sec Ops tooling like Elastic, Splunk, Hive, Crowdstrike Falcon, or similar.
  • Experience in creating automations to improve IR workflows (Python preferred).
  • Experience in developing native data ingestion and data normalization integrations.
  • Ability to lead large projects and work with cross-functional stakeholders.
  • Ability to partner with Legal & Compliance teams for incident reporting.
  • Experience in building actionable threat intelligence & hunting programs is a bonus.
  • Lead security incident response efforts driving detection & response across the organization from identification to post-incident retrospective.
  • Serve as incident commander in large scale security incidents driving containment & remediation.
  • Be the senior escalation point for the team assisting with investigations and incidents.
  • Balance tactical & strategic thinking using facts & clear communications.
  • Provide briefings and status updates to technical and executive leadership during incidents.
  • Lead the development of security incident response playbooks and processes.
  • Contribute to engineering projects to improve monitoring, detection & response programs.
  • Collaborate with cross-functional teams on key security projects.
  • Lead incident response training and learning sessions across engineering and non-engineering teams.

AWSLeadershipProject ManagementPythonAWS EKSCybersecurityKubernetesProduct ManagementCross-functional Team LeadershipAmazon Web ServicesCommunication SkillsAnalytical SkillsCollaboration

Posted 4 months ago
Apply