Security Operations Engineer
Role details
Job location
Tech stack
Job description
We are seeking a Security Operations Engineer (SecOps), responsible for protecting the organization's systems, data, and services by designing, implementing, and operating security solutions and controls across infrastructure, applications and cloud platforms.
Working closely with IT, Operations, and Engineering, this role is critical to ensuring digital security underpins day-to-day operations across the organization. The SecOps Engineer will secure the environments, monitor for threats, respond to incidents, automate security processes, and continuously improve the organization's security posture., * Security Operations & Monitoring
-
Operate and maintain security monitoring and alerting capabilities across on-prem and cloud environments
-
Triage, investigate, and respond to security alerts and incidents in a timely fashion
-
Perform root cause analysis and post-incident reviews
-
Maintain and continuously mature all incident playbooks and operational security procedures
-
Generate and provide regular reports on security metrics and KPIs to track the effectiveness of security measures and identify areas for improvement
-
Incident Response & Threat Management
-
Lead and support incident response activities, including containment, eradication, and recovery
-
Coordinate with internal teams during security incidents
-
Track emerging threats and vulnerabilities
-
Support vulnerability management and remediation tracking
-
Security Engineering & Tooling
-
Design, implement, and maintain security tooling (SIEM, EDR, IAM, scanners)
-
Improve detection logic and response automation
-
Integrate security controls into CI/CD workflows
-
Contribute to secure system and service design
-
Cloud & Infrastructure Security
-
Secure cloud platforms and workloads
-
Support secure configuration and hardening of servers and endpoints
-
Monitor and respond to misconfigurations
-
Collaboration & Continuous Improvement
-
Work closely with engineering and IT teams
-
Support audits, risk assessments, and compliance activities
-
Contribute to security standards and documentation
-
Identify opportunities to automate and improve SecOps processes
-
Additional duties
-
Coordinate and support penetration testing activities, including scoping, evidence preparation, remediation tracking, and validation of findings in collaboration with internal teams or external testing providers
-
Work with outsourced security suppliers to help manage such security services that are not provided in-house.
-
Provide a path of escalation for the service delivery function for complex security issues.
Requirements
-
Proven experience in a Security Operations, SecOps, or Security Engineering role
-
Strong understanding of security monitoring tools and incident response procedures
-
Hands-on experience securing cloud or hybrid environments
-
Experience with SIEM, EDR/XDR, IAM, or vulnerability management tools
-
Solid knowledge of networking and operating systems
-
Strong analytical and communication skills Preferred Qualifications:
-
Experience in cloud-native or DevSecOps environments
-
Familiarity with frameworks such as ISO 27001, SOC 2, NIST, or CIS
-
Experience with security automation and infrastructure-as-code
-
Exposure to penetration testing or threat hunting
-
Relevant certifications (e.g. CISSP, CCSP, GCIH, cloud security certifications) Technical Skills
-
Endpoint security (EDR/XDR)
-
Vulnerability management tools
-
Cloud platforms such as Azure or AWS
-
Identity and Access Management (IAM, RBAC, SSO)
-
Networking fundamentals
-
Scripting (Python, Bash, PowerShell)