Description
We are looking for a Security Operations Engineer for a telecommunications project.
You will be responsible for ensuring the security of the organization's systems, cloud infrastructures (AWS, Azure and GCP) and networks by designing, implementing and maintaining security controls, principles and tooling across production and non-production environments.
This opportunity requires a hands-on technical administrator who is well versed in cloud security and works well in a collaborative fast paced cross-functional environment (security, infrastructure, engineering).
You will identify breach attempts, work with the CloudOps team to contain and eradicate threats, streamline the security incident response processes, continuously monitor the security stack (e.g. DLP, IDS/IPS, SIEM) and create dashboards / reporting metrics that demonstrate continuous improvements.
Responsibilities:
- Respond to Security Incidents of varying severities and complexity;
- Improve the response to threats through technology selection, internal process development and implementing automation of manual tasks and processes;
- Ensure security guidelines, processes and best practices are being followed via technical controls, automation and auditing;
- Maintain policies and create automation to ensure all systems follow regulatory security standards and compliance;
- Create detailed process management workflows to ensure audit trails of activities are reviewed, policies are followed and audit requirements are met;
- Assist peer teams to design a secure infrastructure;
- Participate in new solution requirements gathering and design;
- Be a member of the Incident Response Team;
- Participate in architecture and design reviews to mitigate security and privacy risks;
- Create hardening standards for our infrastructure to minimize attack vectors;
- Coordinate compliance audits and assist auditing teams in automation and collection of evidence.
Requirements:
- 3+ years of experience building systems to secure and monitor infrastructure, deployment and network communication;
- 3+ experience in Linux systems administration and OS hardening;
- 3+ years of demonstrated hand-on experience securing cloud services (AWS, Azure, GCP) and IaaS/PaaS/SaaS, configuring and implementing multiple cloud-based security tools;
- Experience with Terraform, Ansible, ELK stack and IaC tooling;
- Participated in security assessments and advised on both internal and customer security and privacy needs (e.g. SOC2, ISO 27001, GDPR);
- Experience implementing controls based in Frameworks such as NIST CSF, HIPAA, ISO-27001 and SOC-2;
- Fluency in English, both spoken and written.
We offer:
- Integration in a dynamic, experienced and growing team;
- Technical, behavioral and linguistics training, according to a need or interest;
- A program of partnerships with different companies in the fields of leisure, health and wellness, training, among others.
Apply:
If the above sounds like your next professional challenge, please do not hesitate to apply here.