As a Senior Security Engineer, you will play a critical role in designing, implementing, and maintaining robust security solutions to protect our cloud infrastructure, applications, and data. You will work closely with development, operations, and IT teams to embed security best practices throughout our software development lifecycle and operational processes.
Key Responsibilities:
- Implement and maintain security controls across cloud infrastructure (AWS/Azure) and SaaS applications.
- Participate in the design, implementation, and maintenance of various security tools and platforms (e.g., SIEM, EDR, Vulnerability Scanners, WAF, DLP, SAST/DAST).
- Develop and implement security automation to streamline security operations and enhance our detection and response capabilities.
- Support incident response activities, including investigation, containment, eradication, recovery, and post-incident analysis.
- Conduct security assessments, penetration tests, and vulnerability scans to identify and address security weaknesses.
- Develop and maintain security policies, standards, and procedures, ensuring compliance with regulatory requirements and industry best practices.
- Collaborate with development teams to integrate security into the software development lifecycle (SDLC) and promote secure coding practices.
- Provide security expertise and guidance to internal teams, fostering a security-aware culture.
- Stay up-to-date with the latest security threats, technologies, and best practices, and propose improvements to our security posture.
Qualifications:
- Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
- 5+ years of experience in a security engineering role, with a strong focus on cloud security (AWS/Azure).
- Strong understanding of security principles, best practices, and common attack techniques.
- Experience with scripting languages (e.g., Python, PowerShell) for security automation.
- Familiarity with compliance frameworks (e.g., SOC 2, ISO 27001, NIST).
- Relevant security certifications (e.g., CISSP, CCSP, AWS Certified Security – Specialty, Azure Security Engineer Associate) are a plus.
- Excellent communication, collaboration, and problem-solving skills.
- Ability to work independently and as part of a team in a fast-paced environment.