drjobs Information Security Engineer - Security Operations Centre

Information Security Engineer - Security Operations Centre

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Colombo - Sri Lanka

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

IT SOC is responsible for the information security of all information systems across the global IFS organisation.  The Information Security Engineer position complements the existing IT SOC team by bringing deep technical security skills especially in Microsoft technologies to help protect our IT infrastructure systems and services from a range of security threats.  Based in Sri Lanka the position forms part of a global Security Operations Centre (SOC) team which is consciously geographically distributed to protect against single points of failure as well as support a 24*7 operation model of continuous service availability.  Working hours will be classified on normal operating hours and limited periods of working outside this time frame may be necessary in response to specific projects or events followed by appropriate compensations where applicable. 

We are looking for an Information Security Engineer with a passion for information security and a hunger to develop and succeed in their career.  Working as a member of the IT SOC team the Security engineer supports the Security Operations Centre (SOC) by developing maintaining and executing the SOC internal processes in accordance with the Incident Response Playbooks and overall IFS Information Security Strategy across the global IFS IT infrastructure. The Information Security Engineers role includes providing investigation and remediation support in the event of a significant security incident.

Technical Competencies:

Ability to work well in a Team

Good analytical skills

Good interpersonal skills

Experience in incident response and incident management.

Knowledge of MITRE ATT&CK framework

Experience in EDR malware detection intrusion detection and prevention systems.

Experience with a SIEM solutions (Splunk Sentinel QRadar ArcSight LogRhythm ELK etc.

Knowledge and experience on Cloud services and security (Azure preferred).

Experience with Microsoft Security Suite (Office365 Defender Defender Cloud App Security and Compliance center)

Experience with protocol analysis and tools (Wireshark tcpdump etc.

Technical knowledge of Internet security networking protocols and related technologies including IDS/IPS firewalls content filtering Network Behavior Analysis tool and packet inspection.

Basic understanding of Windows Linux network device monitoring and logging techniques.

Basic understanding of host and network security hardening networking protocols common intrusion techniques and common risk management concepts.

Programming and scripting skills (PowerShell Python etc.

Basic IT Project Management Skills

Behavioral Attributes:

A passion for cyber security and a keen interest in IT;

Serve as an ambassador for IFS information security practice promoting best practice and helping develop a healthy engaged information security culture across the organisation

Excellent analytical and problem solving skills with an ability to think like an adversary whilst operating meticulously in accordance with IFS policies and code of conduct;

Strong organisational skills and an ability to manage time efficiently.

Excellent interpersonnel skills and an ability to share knowledge and experience to help develop others in their role;

Excellent at prioritising and focusing on that which matters most within a particular task or set of tasks;

An ability to work under pressure particularly when dealing with threats security incidents and other situations of high demand.

 


Qualifications :

Essential:

Bachelors degree or equivalent

13 years of working experience in Cyber Security

Desirable:

Any of the following certifications would be an advantage.

Security Certifications CEH ECSA GCIH GCIA SSCP CISSP CompTIA Security

Network Certifications CCNA CCNAS PCNSA

Cloud Certifications AWS SA AWS Security Specialty Azure SC200 Azure AZ500 Azure SC300


Additional Information :

We embrace flexibility and hybrid work opportunities to support diverse needs and lifestyles while also valuing inclusive workplace experiences. By fostering a sense of community we drive innovation strengthen connections and nurture belonging. Our commitment ensures you can work in a way that suits you best while also engaging with colleagues to share ideas and build meaningful relationships.


Remote Work :

No


Employment Type :

Fulltime

Employment Type

Full-time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.