Senior Security Engineer
Role details
Job location
Tech stack
Job description
An important part of this role would be to coach and build the overall knowledge and capabilities within the team. And so, naturally, the incumbent would be an integral member of the team and would also get some good insight into other technology platforms, e.g. AD auditing solutions, PAM, our Threat Intelligence platforms etc., * Work with a globally distributed team, taking inputs from the business, SOC, and management to roll out systems and troubleshoot (Tier-3) support for security issues
-
Lead-guide the local Service Desk/ OSS teams with knowledge bases to resolve tickets at first instance for issues relating to security software and configurations
-
Develop the automation (including playbooks, SOAR), scripts to monitor system-health, as well as management the SOC tools in use
-
Extract data from systems and build reports for management; PowerBI skills would be an advantage
-
Knowledge transfer and sharing
-
Monitor and respond to feedback from the customers (employees and business stakeholders)
-
Bring a problem-solving and solutions-mindset, coordinate with the IT teams as needed
Finance/Budgetary Responsibilities
- Provide feedback on tooling and identify additional needs, We are committed to supporting our people, giving you the tools to make improvements to your health and wellbeing through our Thrive programme.
Our Virtual GP service gives you access to an NHS or Irish Medical Council GP at a time and place that suits you - giving you peace of mind and quick access to medical advice when you need it most. We also provide reasonable workplace adjustments for those in need. Additionally, you can benefit from the Gymflex scheme, which offers up to 40% off annual gym memberships through our WSP flexible benefits program, as well as a comprehensive menopause support package.
Flex your time
To enhance work-life balance, WSP offers the "WSP My Hour," allowing you to take one hour each day for personal activities, with the flexibility to make up the time earlier or later that day.
We also provide part-time and flexible working arrangements, the option to purchase additional leave, and the ability to use your bank holiday entitlement to suit you.
Your development
We understand the importance of development and training to you. That's why we foster a supportive environment that invests in your growth, whether through training, mentoring, or Chartership.
#WeAreWSP
Here at WSP we positively encourage applications from suitably qualified and eligible candidates regardless of sex, race, disability, age, sexual orientation, gender reassignment, religion or belief, marital status, pregnancy or maternity/paternity. As a Disability Confident leader, we will interview all disabled applicants who meet the essential criteria, please let us know if you require any workplace adjustments in support of your application.
Requirements
We are seeking a highly skilled and advanced technical cybersecurity professional, preferably a Microsoft MVP (Most Valuable Professional) to our Global Security Operations and Engineering team. The successful candidate will lead technical security initiatives, with a particular focus on Microsoft Cloud Security covering the full scope, i.e., to plan (architect), implement (build), and manage the security platforms and tools in use at WSP, especially the SOAR capabilities, including automation for the SOC., * Significant technical skills in the security area, especially with Microsoft tools, (including but not limited to) MS Sentinel, Defender, Purview, Entra, AD, etc.
-
A proven track record in improving and maturity existing security implementations and configurations
-
Ruthless about securing the attack landscape, and hardening the existing systems in the enterprise hybrid landscape (end-user devices, servers, etc)
-
Skills and experiences with other vendors and services would be an added advantage
-
Solid knowledge about the overall security landscape, including Threat and Vulnerability Management, and the ability to guide on their remediation.
-
Guide and implement automations, develop and fine-tune the SIEM detection rules to reduce manual efforts
-
Cyber professional at heart, tracking and mitigating emerging cyber threats against the company (e.g. zero-day exploits, APTs etc).
-
Experiences with other concepts and systems like Privileged Account Management, Key Management (certificates, keys, ciphers, etc.).
-
Ability to lead security systems integration, e.g., defining the architecture to work with ticketing systems, e.g. integrating Defender to create-manage the tickets and communications in ServiceNow
-
Knowledge of extracting relevant data, creating security reports etc. would be a definite advantage.
-
Solid abilities to lead and plan the architecture, deliveries, and even more importantly coach and teach other members of the technical team to high levels of technology excellence
-
Bachelor's degree or equivalent in Information Technology, Computer Science, Engineering, data sciences, or related field
-
Strong analytical skills with a keen eye for detail and accuracy.
-
Previous experiences in security tools and systems administration, including experience as a security administrator for security platforms
-
Knowledge and experience in SIEM and Microsoft platforms (Microsoft Azure ecosystems), other vendor security systems are good experiences as well (e.g. CyberArk, Akeyless)
-
Good knowledge of EDR systems e.g. MS Defender, KQL etc. (or alternatively the willingness to learn them)
-
Planned and meticulous approach to deliveries.
-
Knowledge and/or willingness to learn about advanced security capabilities, including integrations with other systems