Senior Corporate Security and IT Engineer (EU)
Role details
Job location
Tech stack
Job description
DroneShield is seeking a multi-talented, hands-on Senior Corporate Security and IT Engineer to join our growing Amsterdam office. Reporting to the Chief Information Security Officer, this role will be a key position within DroneShield's global security and IT teams. The position will have a strong security focus (approximately 80%), complemented by IT responsibilities (around 20%), supporting ISO 27001 and ABDO 2019 compliance and certification across our EU and global operations.
The Security team is a nimble team responsible for protecting DroneShield's assets and users. Our adversaries are sophisticated and use state-of-the-art tooling. To protect DroneShield, we need to focus on the biggest risks, eliminate threats, focus on automation to scale our efforts and continually increase the cost for the attackers.
Working with the Global Security and IT teams, key responsibilities for this role include owning and improving our existing corporate solutions, vulnerability management, and partnering with Detection & Response team. This role will also be influencing controls on office networks, and remote access for our internal infrastructure.
Corporate Security should be viewed as a partnership with IT and Detection & Response, with each team enabling each other to be more effective. IT builds the foundational tools for asset management and internal services, Corporate Security automates deployment of security controls and enables telemetry, so that Detection & Response can create detections and playbooks to respond to incidents effectively.
In this role, you will have a diverse range of responsibilities. Strong communication skills and being a hands-on engineer are a must have.
Responsibilities, Duties and Expectations
- Ensure secure design and operations of the Corporate IT network and all End User Computing devices in the EU Office
- Ensure compliance with DroneShield Security Polices and best practice
- Continue to secure Microsoft Tennant, M365 and Identity Access Management including Privileged access
- Participate in global security Detection and Response processes
- Lead or assist in incident response efforts including containment, eradication and recovery
- Have a broad understanding of new and emerging technologies and associated vulnerabilities to help mitigate against them.
- Implement and review security practices used within the organisation.
- IT Support and provisioning for a small office and be able to manage a satellite office network
- Follow Global Physical Security standards for the local office
- Manage vendor relationships and engagements where necessary
- Participate in Global IT and Security team initiatives
Requirements
- BS degree in Computer Science, Information Technology or similar technical field of study or equivalent practical experience
- Demonstrated experience working in IT with focus on security tooling
- On-the-tools engineering experience - must be hands-on
- Excellent communication skills to explain complex technical concepts
- Strong problem-solving and analytical skills.
- Minimum 5 years' experience in related roles. Roles could include, + Strong knowledge of Corporate IT environments including M365, EntraID and SaaS platforms
- Understanding of identity and access management principles
- Experience managing MDM and MAM solutions
- Familiar with Incident Response and Vulnerability Management processes and best practices
- Broad understanding of Hardening tools, technologies and processes
- Experience with some level of automation and scripting (PowerShell, Go, Python, Bash)
- Knowledge of the following is desirable:
- Hands on experience with security tools such as SIEM and EDR
- Ability to think creatively to identify potential security vulnerabilities
- Infrastructure as Code and experience with hybrid cloud environments
- Have experimented on leveraging LLM for automation
- Experience working with security compliance programs such as ISO 27001, ABDO 2019 and NIST 800-53 compliance frameworks
- Systems thinking: focus on design solutions that improve the system