We are seeking a highly skilled and experienced Senior Cyber Security Engineer to join our team. This role is critical in safeguarding our organization's infrastructure, applications, and data against potential threats. The ideal candidate will have a deep understanding of cyber security principles, a proven ability to design and implement advanced security solutions, and the expertise to lead security initiatives in a dynamic environment.
Key Responsibilities :
- Security Architecture and Design :
- Develop, implement, and maintain security architectures for applications, networks, and cloud environments.
- Collaborate with IT and development teams to integrate security best practices into system designs.
Threat Management :- Conduct threat modeling and risk assessments to identify vulnerabilities.
- Develop and implement mitigation strategies for identified risks.
- Monitor emerging threats and ensure proactive defenses are in place.
Incident Response :- Lead the response to security incidents, including root cause analysis, containment, eradication, and recovery.
- Develop and maintain incident response plans and playbooks.
Compliance and Governance :- Ensure compliance with industry standards and regulatory requirements (e.g., ISO 27001, GDPR, NIST, PCI-DSS).
- Develop and enforce security policies, procedures, and guidelines.
Security Tool Management :- Implement and manage security technologies, such as firewalls, SIEMs, EDR solutions, and DLP systems.
- Optimize and tune security tools to improve effectiveness and efficiency.
Training and Mentorship :- Provide guidance and mentorship to junior engineers and team members.
- Conduct security awareness training for employees across the organization.
Collaboration and Communication :- Act as a liaison between security, IT, and business teams to align security initiatives with organizational goals.
- Communicate complex security concepts to non-technical stakeholders.
Requirements
- Bachelor's degree in Computer Science, Cyber Security, or a related field (or equivalent experience).
- 7+ years of experience in cyber security, with a focus on architecture, engineering, or incident response.
- Expertise in security frameworks and standards (e.g., NIST, CIS, OWASP).
- Hands-on experience with security tools (e.g., SIEMs, firewalls, EDR solutions, and vulnerability management systems).
- Proficiency in scripting or programming (e.g., Python, PowerShell, Bash).
- In-depth knowledge of network protocols, cloud security (AWS, Azure, GCP), and endpoint protection.
Preferred :
- Relevant certifications such as CISSP, CISM, CEH, or GIAC.
- Experience with hybrid cloud environments and containerized architectures (e.g., Kubernetes, Docker).
- Strong understanding of identity and access management (IAM) principles and tools.
Key Competencies :
- Analytical and problem-solving skills with a detail-oriented approach.
- Strong written and verbal communication skills.
- Ability to work independently and lead cross-functional teams.
- Commitment to continuous learning and staying current with the latest security trends.