
Senior Security Engineer
1 week ago
Senior Security Operations Analyst
About Us:
Newfold Digital (with over $1b in revenue) is a leadingweb technology company serving nearly seven million customers globally. Established in 2021 through the combination of leading web services providers Endurance Web Presence and Group, our portfolio of brands includes: Bluehost, Crazy Domains, HostGator, Network Solutions, , and many others. We help customers of all sizes build a digital presence that delivers results. With our extensive product offerings and personalized support, we take pride in collaborating with our customers to serve their online presence needs.
Job Summary
Security Operations Analyst is responsible for day-to-day security threat monitoring and analysis. The Security Operations Analyst manages security incidents and reviews security alerts for compliance and will work with senior analysts on known or suspected security threats. Security Operations Analyst will work on threat intelligence, forensics and incident response that adhere to best practices and recognized control frameworks.Security Operations Analysts are expected to work shifts and be assigned to on-call duties, as necessary, to support the global enterprise.
Advanced professional role requiring high skill with extensive proficiency. Works independently with only administrative supervision and the ability to overcome major obstacles and recognize early when issues should be escalated, or a senior peer needs to be consulted. Wide latitude for independent judgment and is expected to provide guidance and cross training to others. Effectively communicates with all levels of technical and non-technical personnel.Consults with senior peers on moderate to complex processes to learn through experience. Typically requires a minimum of 5 - 7 years of experience in security-related fields or related disciplines.
What you'll do?
General Duties and Responsibilities
Security Operations Analyst duties and responsibilities include:
- Take actions to identify, assess, and contain threats to enterprise systems, infrastructure, and business applications.
- Manage and support the log collection, security scanning, intrusion detection, content filtering, and other security-related systems.
- Review and triage information security alerts, provide analysis, determine, and track remediation, and escalate as appropriate.
- Provide support for the log management and security information and event management (SIEM) solutions.
- Ensure authorized access by investigating improper access, revoking access, reporting violations, and monitoring information requests.
- Detect and respond to malicious behavior on public cloud, workstations, and server environments, and distributed networks.
- Optimize threat detection and alerting for data loss prevention (DLP), email protection solutions, endpoint detection and response (EDR) and threat hunting solutions, cloud and workload security products, intrusion prevention/detection systems, firewalls, and other industry standard security technologies.
- Proactively hunts for threats within complex and distributed networks across the enterprise.
- Write, update, and maintain detection signatures and signals, tune systems/tools to optimize detections, and develop automation scripts and correlation rules.
- Maintain knowledge of adversary tactics, techniques, and procedures (TTP) and available threat intelligence to develop and implement detection and mitigation strategies.
- Conduct forensic analysis and review on systems and engage with third-party resources as required.
Educational and Certification Requirements
A degree in Cybersecurity, Information Technology, Computer Science, or related field is desirable.
Industry recognized certifications are a plus.Certifications may include: CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CEH (Certified Ethical Hacker), CompTIA Security+, certifications issued by the SANS Institute, etc.
Certifications issued by public cloud providers (AWS, Azure, Google, Oracle, etc.) is a plus.
General Knowledge, Skills, and Abilities
As well as formal qualifications, a Security Operations Analyst should possess:
- Experience in forensics, malware analysis, threat intelligence.
- Ability to understand, modify and create threat detection rules within a SIEM.
- Understanding of log collection and aggregation techniques such as Elasticsearch, Logstash, Kibana (ELK), syslog-NG, Windows Event Forwarding (WEF), etc.
- Knowledge and experience with both Windows and Linux operating systems.
- Experience using Python, Perl, PowerShell, or an equivalent scripting language.
- Experience with the MITRE ATT&CK framework tactics and techniques.
- Experience with network forensics and associated toolsets and analysis techniques.
- Experience with host-based detection and prevention solutions.
- Ability to reverse engineer malware is a plus.
- Ability to correlate data from multiple data sources to create a more accurate picture of cyberthreats and vulnerabilities.
- Ability to quickly create and deploy countermeasures or mitigations under pressure.
- Experience with incident response and incident management procedures.
- Build effective relationships. Develop and use collaborative relationships to facilitate the accomplishment of work goals.
- Experience with the PCI-DSS, ISO-27001, and/or SOC II compliance frameworks is a plus.
- Experience implementing and measuring security controls aligned with NIST and the Center for Internet Security (CIS) is a plus.
- Project Management skills is a plus.
- Experience with the following technologies is a plus:SentinelOne Singularity Platform, Tanium, Google Chronicle SIEM, Cloudflare L3-L7 security technologies, Atomicorp (ModSec), , Lacework, Recorded Future, ServiceNow, Jira, Microsoft Defender for Endpoints, Microsoft Security and Compliance, Virus Total, SiteLock, Monarx, NGNIX.
- Experience with the native security service solutions for public cloud service providers (AWS, Google, Azure, Oracle) is a plus.
Why you'll love us:
In this era of COVID-19,we believe in putting our employees first and keepingthem safe. We were one of the first technology companies to make significant changes to our office environments and team interactions, including mandatory working from home and safety procedures to enter our office space. We are committed to not require any face-to-face interaction for our employees until the data shows it is entirelysafe for our teams. Here is just a snippetof what we think you'll love:
- Grow together. Our exciting virtuallearning & development programs never ceaseto amaze us.
- Participate in our Expert Speak sessions/E-learning coursesto grow professionally & personally.
Work with creative& innovative teams.We believe in hiring the best of the best and are proud of being surrounded by people who think out of the box to only better our products, work & customer experiences.
Did someone say free domain? Building a community one domain at a time, one employee at a time.
- All our employees are eligible for a free domain and WordPress blog as we sponsor the domain registration costs.
- Leave your worries aside Juggling the demands of career and personal life can be stressful and challenging but don't worry Our employee's assistance program services provide free, confidential, short-term counselling. This benefit is also extended to an immediate family member
-
Senior Engineer – Security
1 week ago
Sydney, New South Wales, Australia Westpac Group Full timeSenior Engineer – Security – Sydney or Gold CoastJoin to apply for the Senior Engineer – Security – Sydney or Gold Coast role at Westpac Group .OverviewJoin the Digital Technology – Security Engineering team as a hands-on Senior Engineer – Security.You'll monitor threats, respond to incidents, and coach developers on secure coding...
-
Senior Security Engineer
6 days ago
Sydney, New South Wales, Australia Nuage Technology Group Full timeOverviewWe are working with a rapidly scaling Sydney based company who are uplifting their security function to match rapid growth and increasing production demands. This is a hands on opportunity for an AWS focused Senior Security Engineer who thrives in dynamic product focused environment and wants to shape the future of cloud security. This isn't a DevOps...
-
Senior Security Engineer
6 days ago
Sydney, New South Wales, Australia Nuage Technology Group Full timeOverviewWe are working with a rapidly scaling Sydney based company who are uplifting their security function to match rapid growth and increasing production demands. This is a hands on opportunity for an AWS focused Senior Security Engineer who thrives in dynamic product focused environment and wants to shape the future of cloud security. This isn't a DevOps...
-
Senior Security Engineer
2 weeks ago
Sydney, New South Wales, Australia Xero Full timeJoin to apply for the Senior Security Engineer role at Xero1 day ago Be among the first 25 applicantsJoin to apply for the Senior Security Engineer role at XeroGet AI-powered advice on this job and more exclusive features.At Xero, we're here to help you supercharge your business. We do this by automating routine tasks, surfacing actionable insights and...
-
Senior Security Engineer
2 weeks ago
Sydney, New South Wales, Australia Xero Full timeJoin to apply for the Senior Security Engineer role at Xero1 day ago Be among the first 25 applicantsJoin to apply for the Senior Security Engineer role at XeroGet AI-powered advice on this job and more exclusive features.At Xero, we're here to help you supercharge your business. We do this by automating routine tasks, surfacing actionable insights and...
-
Senior Security Engineer
2 weeks ago
Sydney, New South Wales, Australia Nuage Technology Group Full timeGet AI-powered advice on this job and more exclusive features.Nuage Technology Group provided pay rangeThis range is provided by Nuage Technology Group. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay rangeA$170,000.00/yr - A$190,000.00/yrSenior Security Engineer – Financial ServicesJoin a...
-
Senior Security Engineer
2 weeks ago
Sydney, New South Wales, Australia Nuage Technology Group Full timeGet AI-powered advice on this job and more exclusive features.Nuage Technology Group provided pay rangeThis range is provided by Nuage Technology Group. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay rangeA$170,000.00/yr - A$190,000.00/yrSenior Security Engineer – Financial ServicesJoin a...
-
Senior Engineer – Security
1 week ago
Sydney, New South Wales, Australia Westpac Group Full timeSenior Engineer – Security – Sydney or Gold CoastJoin to apply for the Senior Engineer – Security – Sydney or Gold Coast role at Westpac Group.OverviewJoin the Digital Technology – Security Engineering team as a hands-on Senior Engineer – Security.You'll monitor threats, respond to incidents, and coach developers on secure coding practices.You'll...
-
Senior Security Engineer
1 week ago
Sydney, New South Wales, Australia SafetyCulture Full timeSenior Security Engineer - Sydney/MelbourneJoin to apply for the Senior Security Engineer - Sydney/Melbourne role at SafetyCultureSenior Security Engineer - Sydney/Melbourne1 week ago Be among the first 25 applicantsJoin to apply for the Senior Security Engineer - Sydney/Melbourne role at SafetyCultureGet AI-powered advice on this job and more exclusive...
-
Senior Engineer – Security
2 weeks ago
Sydney, New South Wales, Australia Westpac Group Full timeSenior Engineer – Security – Sydney or Gold Coast Join to apply for the Senior Engineer – Security – Sydney or Gold Coast role at Westpac Group. Overview Join the Digital Technology – Security Engineering team as a hands-on Senior Engineer – Security. You'll monitor threats, respond to incidents, and coach developers on secure coding...