Security Engineer (SOC)

Hellofresh
Berlin, Germany
8 days ago
Apply on careers.hellofresh.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Languages
German

Tech stack

Amazon Web Services JIRA Computer Programming DDoS Mitigation Elasticsearch Intrusion Detection and Prevention Intrusion Detection Systems Virtual Private Networks (VPN) Log Analysis Network Intrusion Detection Systems Open Source Technology Security Information and Event Management
+9 more
Web Applications Working Model 2D Data Processing In-Plane Switching (IPS) Firewalls (Computer Science) SAP MDG Sumo Logic (Software) Splunk Security Orchestration, Automation & Response

Job description

The role

We’re looking for a new teammate to join us on the journey of keeping HelloFresh a trusted name - someone with a passion for security and appetite for new challenges. Security Engineers work in a variety of ways to constantly iterate and improve HelloFresh’s security posture.

This role aims to improve the HelloFresh Security Logging & Monitoring Program by maturing the tools, processes and playbooks to reduce dwell time (indicators of which would be lowered MTTD&R).

Above all, we are looking for people who will make HelloFresh better. We believe there are many different ways of developing skills and we love diverse experiences! So even if you don’t “tick all the boxes” but think you’d thrive in this role, we would really like to learn more about you.

What you’ll do

  • Responsible for SOC monitoring, use-case building, triage and advisory using cloud-native SIEM platforms
  • Conduct initial triage of security events and incidents and document progress throughout the Incident Response Lifecycle
  • Automate, optimize, automate and operate modern security solutions like EDR/EPPs and conventional Firewalls, IDS/IPS, Email Security, VPN, and MDM tools
  • Leverage premium and open-source threat intel feeds to regularly sweep environments against rising APT campaigns
  • Prepare status reports and follow up with the stakeholders through Jira and Incident Mgmt. Platform to close the remediation loop
  • Facilitate efficient Incident Detection and Response in AWS cloud and enterprise IT environments

What you’ll bring

  • A minimum of 2 years of experience working in mature SOC environments
  • Security monitoring and incident response experience in public cloud environments such as AWS
  • Experience with cloud SIEM & SOAR platforms, DDoS mitigation and preventing tools and Layer-7 Web-based perimeter security controls
  • Understanding of network intrusion methods, network containment, segregation techniques and technologies such as Sandboxes and Intrusion Detection/Prevention Systems (ID/PS)
  • Ability to operate EDR, EPP and Device Management solutions as per best security practices
  • Decent programming skills to enable data processing, IaC and security automations
  • Good communication and reporting skills
  • Experience with log analysis stacks like ElasticSearch, Splunk/SumoLogic
  • Open to working on-call in rotational shifts

What we offer

Elevate your lifestyle! Join one of Europe’s fastest-growing tech powerhouses in a dynamic phase of expansion.

  • Immerse yourself in a diverse global community of 90+ nationalities.
  • Enjoy a competitive compensation package that goes beyond the norm, with perks like a HelloFresh- subsidized Pension Scheme and a Hybrid working model.
  • Elevate your lifestyle with exclusive discounts on your weekly HelloFresh box and office meals.
  • Invest in your growth with a German language learning budget, and access to the HelloFresh Academy.
  • Plus, we’ve got your well-being covered with mental health support, transportation perks, and working-parent-friendly benefits. From our 24/7 gym access,wellbeing platforms like Headspace and Spill, to sabbatical leave options, HelloFresh is not just a workplace; it’s a lifestyle of perks and possibilities!

Requirements

  • A minimum of 2 years of experience working in mature SOC environments
  • Security monitoring and incident response experience in public cloud environments such as AWS
  • Experience with cloud SIEM & SOAR platforms, DDoS mitigation and preventing tools and Layer-7 Web-based perimeter security controls
  • Understanding of network intrusion methods, network containment, segregation techniques and technologies such as Sandboxes and Intrusion Detection/Prevention Systems (ID/PS)
  • Ability to operate EDR, EPP and Device Management solutions as per best security practices
  • Decent programming skills to enable data processing, IaC and security automations
  • Good communication and reporting skills
  • Experience with log analysis stacks like ElasticSearch, Splunk/SumoLogic
  • Open to working on-call in rotational shifts

Benefits & conditions

Elevate your lifestyle! Join one of Europe’s fastest-growing tech powerhouses in a dynamic phase of expansion.

  • Immerse yourself in a diverse global community of 90+ nationalities.
  • Enjoy a competitive compensation package that goes beyond the norm, with perks like a HelloFresh- subsidized Pension Scheme and a Hybrid working model.
  • Elevate your lifestyle with exclusive discounts on your weekly HelloFresh box and office meals.
  • Invest in your growth with a German language learning budget, and access to the HelloFresh Academy.
  • Plus, we’ve got your well-being covered with mental health support, transportation perks, and working-parent-friendly benefits. From our 24/7 gym access,wellbeing platforms like Headspace and Spill, to sabbatical leave options, HelloFresh is not just a workplace; it’s a lifestyle of perks and possibilities!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on careers.hellofresh.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira ¡ Coffee With Developers

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 ¡ LIVE

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein ¡ LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 ¡ LIVE

5:47 min

Integrating user stories and test automation via Jira tools

Christoph Ruggenthaler ¡ LIVE

Videos

See all

Related articles

See all