Senior Security Engineer

1 week ago


Sydney, New South Wales, Australia Newfold Digital Full time

Overview
Newfold Digital is a leading web technology company serving nearly seven million customers globally.
Established in 2021 through the combination of Endurance Web Presence and Web.com Group, our portfolio includes Bluehost, Crazy Domains, HostGator, Network Solutions, Register.com, Web.com and many others.
We help customers of all sizes build a digital presence that delivers results.
We pride ourselves on collaboration and personalized support to serve customers' online presence needs.
Job Summary
Security Operations Analyst is responsible for day-to-day security threat monitoring and analysis.
The Security Operations Analyst manages security incidents and reviews security alerts for compliance, and works with senior analysts on known or suspected security threats.
The role includes threat intelligence, forensics and incident response that adhere to best practices and recognized control frameworks.
Security Operations Analysts are expected to work shifts and be assigned to on-call duties, as necessary, to support the global enterprise.
Experience
Advanced professional role requiring high skill with extensive proficiency.
Works independently with only administrative supervision and the ability to overcome major obstacles and recognize early when issues should be escalated, or a senior peer needs to be consulted.
Wide latitude for independent judgment and is expected to provide guidance and cross training to others.
Effectively communicates with all levels of technical and non-technical personnel.
Consults with senior peers on moderate to complex processes to learn through experience.
Typically requires a minimum of 5 - 7 years of experience in security-related fields or related disciplines.
Responsibilities
Take actions to identify, assess, and contain threats to enterprise systems, infrastructure, and business applications.
Manage and support the log collection, security scanning, intrusion detection, content filtering, and other security-related systems.
Review and triage information security alerts, provide analysis, determine, and track remediation, and escalate as appropriate.
Provide support for the log management and security information and event management (SIEM) solutions.
Ensure authorized access by investigating improper access, revoking access, reporting violations, and monitoring information requests.
Detect and respond to malicious behavior on public cloud, workstations, server environments, and distributed networks.
Optimize threat detection and alerting for data loss prevention (DLP), email protection solutions, endpoint detection and response (EDR) and threat hunting solutions, cloud and workload security products, intrusion prevention/detection systems, firewalls, and other industry-standard security technologies.
Proactively hunts for threats within complex and distributed networks across the enterprise.
Write, update, and maintain detection signatures and signals, tune systems/tools to optimize detections, and develop automation scripts and correlation rules.
Maintain knowledge of adversary tactics, techniques, and procedures (TTP) and available threat intelligence to develop and implement detection and mitigation strategies.
Conduct forensic analysis and review on systems and engage with third-party resources as required.
Educational and Certification Requirements
A degree in Cybersecurity, Information Technology, Computer Science, or related field is desirable.
Industry-recognized certifications are a plus.
Certifications may include: CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), CEH (Certified Ethical Hacker), CompTIA Security+, certifications issued by the SANS Institute, etc.
Certifications issued by public cloud providers (AWS, Azure, Google, Oracle, etc.) are a plus.
General Knowledge, Skills, and Abilities
As well as formal qualifications, a Security Operations Analyst should possess:
Experience in forensics, malware analysis, threat intelligence.
Ability to understand, modify and create threat detection rules within a SIEM.
Understanding of log collection and aggregation techniques such as Elasticsearch, Logstash, Kibana (ELK), syslog-NG, Windows Event Forwarding (WEF), etc.
Knowledge and experience with both Windows and Linux operating systems.
Experience using Python, Perl, PowerShell, or an equivalent scripting language.
Experience with the MITRE ATT&CK framework tactics and techniques.
Experience with network forensics and associated toolsets and analysis techniques.
Experience with host-based detection and prevention solutions.
Ability to reverse engineer malware is a plus.
Ability to correlate data from multiple data sources to create a more accurate picture of cyberthreats and vulnerabilities.
Ability to quickly create and deploy countermeasures or mitigations under pressure.
Experience with incident response and incident management procedures.
Build effective relationships.
Develop and use collaborative relationships to facilitate the accomplishment of work goals.
Experience with PCI-DSS, ISO-27001, and/or SOC II compliance frameworks is a plus.
Experience implementing and measuring security controls aligned with NIST 800-53 and the Center for Internet Security (CIS) is a plus.
Project Management skills is a plus.
Experience with the following technologies is a plus: SentinelOne Singularity Platform, Tanium, Google Chronicle SIEM, Cloudflare L3-L7 security technologies, Atomicorp (ModSec), Tenable.io, Lacework, Recorded Future, ServiceNow, Jira, Microsoft Defender for Endpoints, Microsoft Security and Compliance, Virus Total, SiteLock, Monarx, NGNIX.
Experience with the native security service solutions for public cloud service providers (AWS, Google, Azure, Oracle) is a plus.
Why you'll love us
In this era of COVID-19, we believe in putting our employees first and keeping them safe.
We were one of the first technology companies to make significant changes to our office environments and team interactions, including mandatory working from home and safety procedures to enter our office space.
We are committed to not require any face-to-face interaction for our employees until the data shows it is entirely safe for our teams.
Here is just a snippet of what we think you'll love:
Grow together.
Our exciting virtual learning & development programs never cease to amaze us.
Participate in our Expert Speak sessions/E-learning courses to grow professionally & personally.
Work with creative & innovative teams.
We believe in hiring the best of the best and are proud of being surrounded by people who think out of the box to better our products, work & customer experiences.
Did someone say free domain?
Building a community one domain at a time, one employee at a time.
All our employees are eligible for a free domain and WordPress blog as we sponsor the domain registration costs.
Leave your worries aside
Our employee's assistance program services provide free, confidential, short-term counselling.
This benefit is also extended to an immediate family member.
#J-18808-Ljbffr



  • Sydney, New South Wales, Australia Westpac Group Full time

    Senior Engineer – Security – Sydney or Gold CoastJoin to apply for the Senior Engineer – Security – Sydney or Gold Coast role at Westpac Group .OverviewJoin the Digital Technology – Security Engineering team as a hands-on Senior Engineer – Security.You'll monitor threats, respond to incidents, and coach developers on secure coding...


  • Sydney, New South Wales, Australia Nuage Technology Group Full time

    OverviewWe are working with a rapidly scaling Sydney based company who are uplifting their security function to match rapid growth and increasing production demands. This is a hands on opportunity for an AWS focused Senior Security Engineer who thrives in dynamic product focused environment and wants to shape the future of cloud security. This isn't a DevOps...


  • Sydney, New South Wales, Australia Nuage Technology Group Full time

    OverviewWe are working with a rapidly scaling Sydney based company who are uplifting their security function to match rapid growth and increasing production demands. This is a hands on opportunity for an AWS focused Senior Security Engineer who thrives in dynamic product focused environment and wants to shape the future of cloud security. This isn't a DevOps...


  • Sydney, New South Wales, Australia Xero Full time

    Join to apply for the Senior Security Engineer role at Xero1 day ago Be among the first 25 applicantsJoin to apply for the Senior Security Engineer role at XeroGet AI-powered advice on this job and more exclusive features.At Xero, we're here to help you supercharge your business. We do this by automating routine tasks, surfacing actionable insights and...


  • Sydney, New South Wales, Australia Xero Full time

    Join to apply for the Senior Security Engineer role at Xero1 day ago Be among the first 25 applicantsJoin to apply for the Senior Security Engineer role at XeroGet AI-powered advice on this job and more exclusive features.At Xero, we're here to help you supercharge your business. We do this by automating routine tasks, surfacing actionable insights and...


  • Sydney, New South Wales, Australia Nuage Technology Group Full time

    Get AI-powered advice on this job and more exclusive features.Nuage Technology Group provided pay rangeThis range is provided by Nuage Technology Group. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay rangeA$170,000.00/yr - A$190,000.00/yrSenior Security Engineer – Financial ServicesJoin a...


  • Sydney, New South Wales, Australia Nuage Technology Group Full time

    Get AI-powered advice on this job and more exclusive features.Nuage Technology Group provided pay rangeThis range is provided by Nuage Technology Group. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.Base pay rangeA$170,000.00/yr - A$190,000.00/yrSenior Security Engineer – Financial ServicesJoin a...


  • Sydney, New South Wales, Australia Westpac Group Full time

    Senior Engineer – Security – Sydney or Gold CoastJoin to apply for the Senior Engineer – Security – Sydney or Gold Coast role at Westpac Group.OverviewJoin the Digital Technology – Security Engineering team as a hands-on Senior Engineer – Security.You'll monitor threats, respond to incidents, and coach developers on secure coding practices.You'll...


  • Sydney, New South Wales, Australia SafetyCulture Full time

    Senior Security Engineer - Sydney/MelbourneJoin to apply for the Senior Security Engineer - Sydney/Melbourne role at SafetyCultureSenior Security Engineer - Sydney/Melbourne1 week ago Be among the first 25 applicantsJoin to apply for the Senior Security Engineer - Sydney/Melbourne role at SafetyCultureGet AI-powered advice on this job and more exclusive...


  • Sydney, New South Wales, Australia Westpac Group Full time

    Senior Engineer – Security – Sydney or Gold Coast Join to apply for the Senior Engineer – Security – Sydney or Gold Coast role at Westpac Group. Overview Join the Digital Technology – Security Engineering team as a hands-on Senior Engineer – Security. You'll monitor threats, respond to incidents, and coach developers on secure coding...