389 Cybersecurity Engineer jobs in the Philippines
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
Lexmark is now a proud part of Xerox, bringing together two trusted names and decades of expertise into a bold and shared vision.
When you join us, you step into a technology ecosystem where your ideas, skills, and ambition can shape what comes next. Whether you're just starting out or leading at the highest levels, this is a place to grow, stretch, and make real impact—across industries, countries, and careers.
From engineering and product to digital services and customer experience, you'll help connect data, devices, and people in smarter, faster ways. This is meaningful, connected work—on a global stage, with the backing of a company built for the future, and a robust benefits package designed to support your growth, well-being, and life beyond work.
Responsibilities :
Responsible for analyzing network security systems (LAN/WAN, telecommunications, voice systems) and/or information systems. Safeguards the network against unauthorized modification, destruction, or disclosure. Researches, evaluates, designs, tests, recommends, communicates, and implements new security software or devices. Implements, enforces, communicates, and may develop network security policies or security plans for data, software applications, hardware, telecommunications, and computer installations.
How to Apply ?
Are you an innovator? Here is your chance to make your mark with a global technology leader. Apply now
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
Protect. Prevent. Empower. Be a Cybersecurity Governance, Risk, and Threat Analyst at Smartsourcing and keep businesses safe, compliant, and resilient.
Hi We're
Smartsourcing
and we're on the lookout for a
full-time
and
onsite Cybersecurity Engineer
. Here, we exist to protect what matters most—people, data, and trust. This role strengthens that mission by combining governance, risk management, and threat intelligence to keep businesses resilient.
Where?
JEG Tower, Archbishop Reyes, Corner Acacia St., Barangay Kamputhaw, Cebu City, 6000 Cebu
About the Role
The Cybersecurity Advocate, Risk & Threat Analyst, strengthens the organization's security culture by combining awareness training, threat analysis, and compliance oversight. This role leads purple-team exercises, manages incidents, and drives security-first behavior to reduce risk and ensure regulatory alignment.
Key Responsibilities
Maintenance of Governance Framework
- Develop, update, and assist in the enforcement of cybersecurity policies, standards, and guidelines aligned with business objectives and regulatory frameworks.
- Management of cybersecurity process workflows.
Cybersecurity Awareness & Training
- Coordinate and deliver internal communication on cybersecurity awareness, updates, critical alerts and cybersecurity posture.
- Lead cybersecurity awareness training across departments, ensuring higher participation rates.
- Facilitate phishing simulations and training feedback loops.
- Ensure communication plans are tested and aligned with organizational policies.
- Ensure communication plans and cybersecurity training programs are tested and aligned with organizational policies and compliance requirements.
Threat and Risk Management
- Advise internal stakeholders on emerging risks and proactive mitigation strategies.
- Track and manage incidents ensuring incidents have updated documentation and reporting.
- Maintain compliance rates for Keeper usage, breach watch alerts and engagement across teams.
- Provide policy enforcement and support to all Departments
- Champion secure behavior, working closely with functional team leads to embed controls in day-to-day operations.
- Supports risk identification, assessment, and mitigation tracking.
- Perform and assist internal departments in business assessments to analyse risks and opportunities through appropriate tools.
Compliance, Audit & Reporting
- Champion compliance efforts across the business
- Lead compliance checks and audit preparation aligned with ISO 27001 and other regulatory standards.
- Produce structured reports for audits, team metrics, training KPIs, and incident summaries.
- Support documentation updates related to ISMS and audit tracking.
Requirements
KNOWLEDGE & EXPERIENCE:
- Knowledge of threat detection and purple teaming concepts
- Experience in coordinating or delivering cybersecurity awareness training
- Familiarity with password management and security alert systems (e.g. Keeper)
- Working knowledge of ISO 27001 and regulatory frameworks
- Knowledge of incident management and SLA-based resolution practices
- Strong report-writing and KPI tracking experience
- Strong technical communication skills
- Solid understanding of the NIST Cybersecurity Framework
- Solid knowledge of threat intelligence and frameworks such as MITRE ATT&CK
SKILLS:
- Effective communicator, with strong written and verbal presentation skills
- Ability to lead cross-departmental training programs
- Strong understanding of threat remediation tools and techniques
- Organized, with strong attention to documentation and audit-readiness
- Comfortable leading purple-team simulations and collaboration
- Capable of interpreting metrics and adapting strategy based on findings
- Able to interact with stakeholders in cross-functional teams.
- Good team player interested in sharing knowledge and cross-training other team members and shows interest in learning new technologies and products.
- Ability to create documents of quality.
Step Into the Smartsourcing Experience
Smartsourcing was created with one mission: to change lives. We're here to ensure that businesses flourish and, just as importantly, that every member of the crew is inspired, supported, and set up to thrive. For the fourth year running, we've been recognized as one of HR Asia's Best Companies to Work For. This award isn't just a title—it's a testament to our commitment to making Smartsourcing an incredible place to build a career.
Why You'll Love Working Here
At Smartsourcing, we believe the best work comes from people who feel seen, heard, and valued. That's why we're all about fostering an environment where you can be your true self. We take pride in being certified as a Great Place to Work because we know that when you love where you work, extraordinary things happen. Here's just a glimpse of what we offer:
- Weekends are yours (we respect your time off)
- 5-day Christmas Leave (unwrap real time off)
- Healthcare from Day 1 for you and your family (because healthcare matters)
- Free lunch and barista-crafted coffee daily (we take our caffeine seriously)
- Night shift differential for evening schedules
- Subsidized gym membership and sports wellness clubs including hiking and free-diving
- Smartsourcing Exclusives (deals made just for you)
- Themed BFFs, monthly knockoffs, summer parties
- Community give-back programs and personal development workshops
- And so much more
We're not just another outsourcing company. We're building something that actually matters here – a place where good work meets good culture.
Secure your future while securing others. Apply now at Smartsourcing.
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
Our client is seeking a highly skilled and experienced
Senior SOC Engineer
to lead threat detection, incident response, and continuous monitoring efforts within our Security Operations Center. This role is critical to maintaining the confidentiality, integrity, and availability of our systems and data, especially in a highly regulated financial environment. The ideal candidate will bring deep technical expertise, a proactive mindset, and a passion for defending against evolving cyber threats.
Key Responsibilities
:
- Lead and coordinate real-time monitoring, triage, and response to security incidents across cloud and on-prem environments.
- Develop and tune SIEM detection rules, use cases, and correlation logic to improve threat visibility.
- Perform threat hunting and forensic investigations using logs, endpoint telemetry, and network data.
- Collaborate with threat intelligence teams to integrate IOCs and TTPs into detection workflows.
- Maintain and enhance SOC playbooks, runbooks, and incident response procedures.
- Mentor junior SOC analysts and provide technical guidance during escalated incidents.
- Work with engineering and infrastructure teams to implement security controls and logging standards.
- Support compliance efforts (e.g., GLBA, FFIEC, PCI DSS) by ensuring logging, monitoring, and incident response capabilities meet regulatory requirements.
- Participate in red/blue/purple team exercises and post-incident reviews.
Qualifications
:
- Lead and coordinate real-time monitoring, triage, and response to security incidents across cloud and on-prem environments.
- Develop and tune SIEM detection rules, use cases, and correlation logic to improve threat visibility.
- Perform threat hunting and forensic investigations using logs, endpoint telemetry, and network data.
- Collaborate with threat intelligence teams to integrate IOCs and TTPs into detection workflows.
- Maintain and enhance SOC playbooks, runbooks, and incident response procedures.
- Mentor junior SOC analysts and provide technical guidance during escalated incidents.
- Work with engineering and infrastructure teams to implement security controls and logging standards.
- Support compliance efforts (e.g., GLBA, FFIEC, PCI DSS) by ensuring logging, monitoring, and incident response capabilities meet regulatory requirements.
- Participate in red/blue/purple team exercises and post-incident reviews.
Preferred Certifications:
- GIAC Certified Incident Handler (GCIH)
- GIAC Security Operations Certified (GSOC)
- Certified Information Systems Security Professional (CISSP)
- Certified SOC Analyst (CSA)
--
Work setup: Hybrid, 3x a week RTO
Work location: BGC, Taguig City
Work schedule: Night shift
Interested applicants may apply directly on this job post or direct their CV to ().
- FILIPINO CITIZEN ONLY residing in the Philippines***
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
What you will do:
- Manages security policies on various security tools/systems and ensures alignment to Information Security Policy
- Ensures smooth operation of the security tools/systems to ensure controls are in effect, with minimal impact to core business systems' performance
- Ensures security tools/systems are updated and patched against vulnerabilities
- Works with various IT Teams and business owners to ensure security tools and systems are providing value as applicable, enabling secure IT operations
- Periodically assess security tools/systems' adaptability to ever evolving cyber threat landscape
- Attend to ad hoc service requests involving security tools and systems under responsibility
What you should have:
- At least 3 years experience in cyber security tools/systems engineering and administration
- Good hands-on experience in Identity and Access Management, Data Loss Prevention, Endpoint Security, Security Information and Event Management, Privileged Access Management tools/systems
- Solid understanding of Information and Network Security frameworks and principles
- Hands on experience on Windows and Linux system administration and knowledge on various scripting languages
- Good presentation skills
Job Perks You'll Enjoy:
- Hybrid work setup
- Permanent dayshift schedule
- Up to 20% variable performance-based bonus
- HMO on Day 1 and HMO dependents coverage including same-sex partners
- Access to mental health and wellness partners
- Wellness Leaves and Birthday Leave
- Internal career mobility options
- Local and international learning opportunities
Empower Filipinos with innovative financial solutions at Home Credit Philippines. Click Apply Now and join a company where there are #NoSmallRoles and everyone is important.
At Home Credit Philippines, we believe that everyone has something special to offer. Our motto "No Small Roles, Everyone is Important" is at the heart of everything we do. We think diversity makes our company better and every single job and person here plays a big part in our success.
We're all about creating a welcoming place where everyone feels valued for who they are. This means we make sure that everyone, no matter their background or what they look like, gets a fair chance at jobs, training, and promotions.
When it comes to hiring, everyone gets a fair look. It doesn't matter where you're from, what you believe, who you love, whether you have a disability, or any other or any other condition protected under Philippine laws. If you meet the job requirements, you have a chance to get the job.
Come join us at Home Credit, where diversity fuels our innovation. Here, there are #NoSmallRoles and #EveryoneisImportant.
LI-GA1Full-time
Corporate
Taguig City
Information Security
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
Discover your 100% YOU with MicroSourcing
Position: Cybersecurity Engineer
Location: MoA, Pasay, Philippines
Work setup & shift: Hybrid | Dayshift
**Why join MicroSourcing?
You'll have:**
- Competitive Rewards: Enjoy above-market compensation, healthcare coverage on day one, plus one or more dependents, paid time-off with cash conversion, group life insurance, and performance bonuses
- A Collaborative Spirit: Contribute to a positive and engaging work environment by participating in company-sponsored events and activities.
- Work-Life Harmony: Enjoy the balance between work and life that suits you with flexible work arrangements.
- Career Growth: Take advantage of opportunities for continuous learning and career advancement.
- Inclusive Teamwork: Be part of a team that celebrates diversity and fosters an inclusive culture.
Your Role:
The Cybersecurity Engineer is responsible for designing, implementing, and maintaining security solutions to protect Camp Australia's digital assets and infrastructure. This role involves proactive threat detection, vulnerability management, incident response, and continuous improvement of security controls. The engineer works closely with IT, Cybersecurity GRC, and business teams to ensure the confidentiality, integrity, and availability of systems and data.
Key Responsibilities:
Security Controls:
Design and deploy security technologies including firewalls, IDS/IPS, endpoint protection, and SIEM systems.
- Integrate security into cloud and on-premises infrastructure/applications.
Vulnerability Management and Security Assessments:
Perform regular security assessments and audits to identify potential weaknesses.
- Implement improvements and coordinate remediation efforts with relevant teams.
Threat Monitoring, Detection, and Incident Response:
Continuously monitor Camp Australia's networks, systems, and security logs to detect vulnerabilities and respond to potential threats, investigating incidents and implementing corrective actions to mitigate risks.
- Conduct root cause analysis and forensic investigations.
- Occasional out-of-hours work may be required to support incident response or critical security activities.
Security Automation & Tooling:
Develop scripts and automation to enhance security operations and incident response.
Compliance & Audit Support
Ensure technical controls align with regulatory requirements.
- Support audit activities and provide evidence of control effectiveness.
Security Reporting:
Assist in preparing reports on security risk, metrics, compliance status, and incident response activities.
Qualifications & Experience:
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent practical experience).
- 6+ years of hands-on experience in cybersecurity engineering, infrastructure security, or security operations.
- Proven experience with security technologies such as firewalls, IDS/IPS, SIEM, endpoint protection, and cloud security tools.
- Strong understanding of network protocols, operating systems (Windows/Linux), and cloud platforms (AWS, Azure, or GCP).
- Experience with scripting or automation (e.g., Python, PowerShell, Bash).
Certifications such as below are a plus:
Microsoft Certified: Azure Security Engineer Associate
- Microsoft Certified: Cybersecurity Architect Expert
- GIAC Security Engineer (GSE)
Technical Skills
- Experience implementing and administering security tools such as firewalls, intrusion detection systems, cloud security posture management, vulnerability management, SIEM, and endpoint detection and response tools.
- Strong understanding of network administration and security technologies.
- Proven Cloud Security Engineering experience with Azure.
- Experience with scripting languages (e.g., Python, PowerShell, Bash).
- Working knowledge of DevSecOps and experience with SCA, SAST, and DAST tools.
- Working knowledge of Cybersecurity/Information Security Frameworks such as NIST CSF, ISO27001, etc.
- Familiarity with using ticketing systems such as JIRA
About MicroSourcing
With over 9,000 professionals across 13 delivery centers, MicroSourcing is the pioneer and largest offshore provider of managed services in the Philippines.
Our commitment to 100% YOU
MicroSourcing firmly believes that our company's strength lies in our people's diversity and talent. We are proud to foster an inclusive culture that embraces individuals of all races, genders, ethnicities, abilities, and backgrounds. We provide space for everyone, embracing different perspectives, and making room for opportunities for each individual to thrive.
At MicroSourcing, equality is not merely a slogan – it's our commitment. Our way of life. Here, we don't just accept your unique authentic self - we celebrate it, valuing every individual's contribution to our collective success and growth. Join us in celebrating YOU and your 100%
For more information, visit
*Terms & conditions apply
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
The
Cybersecurity Engineer
is responsible for designing, implementing, and maintaining security solutions to protect Camp Australia's digital assets and infrastructure. This role involves proactive threat detection, vulnerability management, incident response, and continuous improvement of security controls. The engineer works closely with IT, Cybersecurity GRC, and business teams to ensure the confidentiality, integrity, and availability of systems and data.
Key Responsibilities
Security Controls:
o Design and deploy security technologies including firewalls, IDS/IPS, endpoint protection, and SIEM systems.
o Integrate security into cloud and on-premises infrastructure/applications.
Vulnerability Management and Security Assessments:
o Perform regular security assessments and audits to identify potential weaknesses.
o Implement improvements and coordinate remediation efforts with relevant teams.
Threat Monitoring, Detection, and Incident Response:
o Continuously monitor Camp Australia's networks, systems, and security logs to detect vulnerabilities and respond to potential threats, investigating incidents and implementing corrective actions to mitigate risks.
- o Conduct root cause analysis and forensic investigations.
o Occasional out-of-hours work may be required to support incident response or critical security activities.
Security Automation & Tooling:
o Develop scripts and automation to enhance security operations and incident response.
Compliance & Audit Support
o Ensure technical controls align with regulatory requirements.
o Support audit activities and provide evidence of control effectiveness.
Security Reporting:
o Assist in preparing reports on security risk, metrics, compliance status, and incident response activities.
Qualifications & Experience
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent practical experience).
- 6+ years of hands-on experience in cybersecurity engineering, infrastructure security, or security operations.
- Proven experience with security technologies such as firewalls, IDS/IPS, SIEM, endpoint protection, and cloud security tools.
- Strong understanding of network protocols, operating systems (Windows/Linux), and cloud platforms (AWS, Azure, or GCP).
- Experience with scripting or automation (e.g., Python, PowerShell, Bash).
Certifications such as below are a plus:
o Microsoft Certified: Azure Security Engineer Associate
- o Microsoft Certified: Cybersecurity Architect Expert
- o GIAC Security Engineer (GSE)
Technical Skills
- Experience implementing and administering security tools such as firewalls, intrusion detection systems, cloud security posture management, vulnerability management, SIEM, and endpoint detection and response tools.
- Strong understanding of network administration and security technologies.
- Proven Cloud Security Engineering experience with Azure.
- Experience with scripting languages (e.g., Python, PowerShell, Bash).
- Working knowledge of DevSecOps and experience with SCA, SAST, and DAST tools.
- Working knowledge of Cybersecurity/Information Security Frameworks such as NIST CSF, ISO27001, etc.
- Familiarity with using ticketing systems such as JIRA
Be The First To Know
About the latest Cybersecurity engineer Jobs in Philippines !
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
Lexmark is now a proud part of Xerox, bringing together two trusted names and decades of expertise into a bold and shared vision.
When you join us, you step into a technology ecosystem where your ideas, skills, and ambition can shape what comes next. Whether you're just starting out or leading at the highest levels, this is a place to grow, stretch, and make real impact—across industries, countries, and careers.
From engineering and product to digital services and customer experience, you'll help connect data, devices, and people in smarter, faster ways. This is meaningful, connected work—on a global stage, with the backing of a company built for the future, and a robust benefits package designed to support your growth, well-being, and life beyond work.
JOB SUMMARY
Lexmark is looking for a new cybersecurity information technology professional who wants to join a team that knows technology, build processes, and spends their day securing Lexmark. This individual will work with various cybersecurity and project teams to make sure policies and controls are implemented and operationalized. They will also be responsible for working with cybersecurity architects to do threat models and risk mitigation strategies for various initiatives. They will also work with the cybersecurity operations teams to understand threats and improve processes by automating threat hunting and alert management.
You will need to be proficient in security automation and tooling, and possess strong communication skills, enabling you to collaborate effectively with various stakeholders while balancing competing priorities. This role presents a unique opportunity to contribute your expertise and experience to a fast-paced, innovative environment, and make a significant impact in ensuring the security of our organization's technology infrastructure.
WHAT YOU WILL BE DOING
- Responsible for implementing controls and securing enterprise information systems by developing and reviewing security requirements and technology solutions. Design and implement these controls using secure software development and deployment processes.
- Assist security operation teams during incident response or business continuity scenarios through building automation scripts to reduce or close security incidents.
- Evaluate and improve security controls around email, information, network, and cloud app protections through automation.
- Develop and maintain security automation and tooling.
- Stay up to date with emerging security threats and trends and adjust security measures accordingly.
- Analyze and build automation scripts to improve security of information systems.
- Analyze after action reviews, tabletop, red team, and penetration testers reports to develop risk mitigations.
- Participate and validate security threat intelligence and assess solutions.
- Coordinate with DevOps teams to advocate secure coding practices, and to escalate concerns related to poor coding practices.
- Educate and train staff on information system security best practices by being a security advocate
MUST-HAVE QUALIFICATIONS, SKILLS, EXPERIENCE
- Strong knowledge of secure coding practices, SDLC, DevOps principles, and cloud computing
- Experience with programming languages with proficiency on Python scripting
- Experience with MITRE AT&TCK, ISO, NIST Frameworks
- Experience with Scale Agile Framework processes and methodologies for implementations
- Strong understanding of cloud platforms and technologies
- Excellent organizational, communication, documentation, and project management skills
- Excellent communication and interpersonal skills, with the ability to work effectively in a team environment
EDUCATIONAL QUALIFICATIONS
- Bachelor's degree in computer science, Engineering, Cybersecurity, or related field
YEARS OF EXPERIENCE IN THIS FIELD
- 3+ years of Information Technology experience
Job Types: Full-time, Permanent
Benefits:
- Company events
- Employee discount
- Flexible schedule
- Free parking
- Health insurance
- Life insurance
- On-site parking
- Opportunities for promotion
- Work from home
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
Our client is seeking a highly skilled and experienced Senior SOC Engineer to lead threat detection, incident response, and continuous monitoring efforts within our Security Operations Center. This role is critical to maintaining the confidentiality, integrity, and availability of our systems and data, especially in a highly regulated financial environment. The ideal candidate will bring deep technical expertise, a proactive mindset, and a passion for defending against evolving cyber threats.
Key Responsibilities:
- Lead and coordinate real-time monitoring, triage, and response to security incidents across cloud and on-prem environments.
- Develop and tune SIEM detection rules, use cases, and correlation logic to improve threat visibility.
- Perform threat hunting and forensic investigations using logs, endpoint telemetry, and network data.
- Collaborate with threat intelligence teams to integrate IOCs and TTPs into detection workflows.
- Maintain and enhance SOC playbooks, runbooks, and incident response procedures.
- Mentor junior SOC analysts and provide technical guidance during escalated incidents.
- Work with engineering and infrastructure teams to implement security controls and logging standards.
- Support compliance efforts (e.g., GLBA, FFIEC, PCI DSS) by ensuring logging, monitoring, and incident response capabilities meet regulatory requirements.
- Participate in red/blue/purple team exercises and post-incident reviews.
Qualifications:
- Lead and coordinate real-time monitoring, triage, and response to security incidents across cloud and on-prem environments.
- Develop and tune SIEM detection rules, use cases, and correlation logic to improve threat visibility.
- Perform threat hunting and forensic investigations using logs, endpoint telemetry, and network data.
- Collaborate with threat intelligence teams to integrate IOCs and TTPs into detection workflows.
- Maintain and enhance SOC playbooks, runbooks, and incident response procedures.
- Mentor junior SOC analysts and provide technical guidance during escalated incidents.
- Work with engineering and infrastructure teams to implement security controls and logging standards.
- Support compliance efforts (e.g., GLBA, FFIEC, PCI DSS) by ensuring logging, monitoring, and incident response capabilities meet regulatory requirements.
- Participate in red/blue/purple team exercises and post-incident reviews.
Preferred Certifications:
- GIAC Certified Incident Handler (GCIH)
- GIAC Security Operations Certified (GSOC)
- Certified Information Systems Security Professional (CISSP)
- Certified SOC Analyst (CSA)
--
Work setup: Hybrid, 3x a week RTO
Work location: BGC, Taguig City
Work schedule: Night shift
Interested applicants may apply directly on this job post or direct their CV to ().
Job Type: Full-time
Pay: Php90, Php120,000.00 per month
Application Question(s):
- Have you worked with SIEM tools? If yes, can you list down which tools you've worked with.
- Have you handled incident response in a regulated environment?
- When there are no obvious alerts, how do you proactively hunt for threats or suspicious activity in logs, endpoints, or networks?
Work Location: In person
Cybersecurity Engineer
Posted 1 day ago
Job Viewed
Job Description
Lexmark is now a proud part of Xerox, bringing together two trusted names and decades of expertise into a bold and shared vision.
When you join us, you step into a technology ecosystem where your ideas, skills, and ambition can shape what comes next. Whether you're just starting out or leading at the highest levels, this is a place to grow, stretch, and make real impact—across industries, countries, and careers.
From engineering and product to digital services and customer experience, you'll help connect data, devices, and people in smarter, faster ways. This is meaningful, connected work—on a global stage, with the backing of a company built for the future, and a robust benefits package designed to support your growth, well-being, and life beyond work.
JOB SUMMARY:
Lexmark is looking for a new cybersecurity information technology professional who wants to join a team that knows technology, build processes, and spends their day securing Lexmark. This individual will work with various cybersecurity and project teams to make sure policies and controls are implemented and operationalized. They will also be responsible for working with cybersecurity architects to do threat models and risk mitigation strategies for various initiatives. They will also work with the cybersecurity operations teams to understand threats and improve processes by automating threat hunting and alert management.
You will need to be proficient in security automation and tooling, and possess strong communication skills, enabling you to collaborate effectively with various stakeholders while balancing competing priorities. This role presents a unique opportunity to contribute your expertise and experience to a fast-paced, innovative environment, and make a significant impact in ensuring the security of our organization's technology infrastructure.
KEY ROLES AND RESPONSIBILITIES:
- Responsible for implementing controls and securing enterprise information systems by developing and reviewing security requirements and technology solutions. Design and implement these controls using secure software development and deployment processes.
- Assist security operation teams during incident response or business continuity scenarios through building automation scripts to reduce or close security incidents.
- Evaluate and improve security controls around email, information, network, and cloud app protections through automation.
- Develop and maintain security automation and tooling.
- Stay up to date with emerging security threats and trends and adjust security measures accordingly.
- Analyze and build automation scripts to improve security of information systems.
- Analyze after action reviews, tabletop, red team, and penetration testers reports to develop risk mitigations.
- Participate and validate security threat intelligence and assess solutions.
- Coordinate with DevOps teams to advocate secure coding practices, and to escalate concerns related to poor coding practices.
- Educate and train staff on information system security best practices by being a security advocate.
COMPETENCIES, SKILLS, KNOWLEDGE AND ABILITIES:
- Strong knowledge of secure coding practices, SDLC, DevOps principles, and cloud computing
- Strong understanding of cloud platforms and technologies
- Excellent organizational, communication, documentation, and project management skills
- Excellent communication and interpersonal skills, with the ability to work effectively in a team environment
EDUCATION, EXPERIENCES AND CERTIFICATIONS BASIC REQUIREMENTS:
- Bachelor's degree in computer science, Engineering, Cybersecurity, or related field
- 3+ years of Information Technology experience
- Experience with programming languages with proficiency on Python scripting
- Experience with MITRE AT&TCK, ISO, NIST Frameworks
- Experience with Scale Agile Framework processes and methodologies for implementations