drjobs Security Operations Engineer

Security Operations Engineer

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Hoffman Estates, IL - USA

Monthly Salary drjobs

$ 80 - 110

Vacancy

1 Vacancy

Job Description

About Us:

CDK Global is a leading provider of cloudbased software to dealerships and Original Equipment Manufacturers (OEMs) across automotive and related industries. The Companys cloudbased software as a service (SaaS) platform enables dealerships to manage their endtoend business operations including the acquisition sale financing insuring repair and maintenance of vehicles. By automating and streamlining critical workflows the integrated platform of modern solutions enables dealers to sell and service more vehicles by creating simple and convenient experiences for customers and improves their financial and operational performance.

Position Summary:

The Security Operations Engineer is a technical subject matter expert responsible for the execution of CDKs Security Monitoring and Response strategy. This individual plays a key technical role in our Security Operations organization and enables efficient and effective incident response.

Position Responsibilities:

1. Technical Leadership:

  • Exemplify security principles and culture

  • Develop playbooks standards and procedures that enable CDK security operations strategy

  • Effectively partner across security technology and business teams

  • Provide technical leadership to the security operations team

  • Develop effective metrics and use them to drive meaningful improvements

2. Automated Detection and Response:

  • Work with security operations team members to identify response actions which can be automated to drive efficiency throughout response

  • Build automation workflows to contribute to auditable and efficient incident response

  • Drive continuous improvement in CDKs detection capability using automation threat and anomaly detection coverage assurance and external threat intelligence

  • Build threat detection queries based on attacker techniques and threat intelligence

  • Support and tune threat detection content and automation workflows based on metrics and security operations feedback

3. Incident Response:

  • Develop exercise test and continuously improve the incident response plan

  • Develop incident response playbooks and drive response playbook automation regularly test playbook effectiveness and drive improvement

  • Lead response to medium or higher criticality impact security incidents in accordance with the incident response plan and effectively coordinate with internal and external parties

  • Serve as a technical leader for significant security incidents

  • Assure plans/procedures/playbooks coverage for likely security incident scenarios

  • Assure 24x7x365 incident response coverage and escalation processes

  • Regularly update the list of likely security incident scenarios using external threat intelligence collaboration with internal technology teams and other data sources

4. Security Posture Improvement

  • Use offensive security techniques and exercises to identify security gaps and drive remediation

  • Regularly practice incident response plans and procedures in collaboration with internal and external stakeholders

  • Assure that regular offensive security exercises are used to test all relevant technology platforms at CDK

Required Qualifications:

  • Bachelors degree in computer science information security or an equivalent experience

  • Expert technical expertise in python javascript and powershell

  • Experience building SOAR workflows

  • Experience building and tuning threat detection content

  • Experience leading the response to enterprise security alerts and incidents

  • Minimum of 6 years in cybersecurity with at least 3 years in a security monitoring and incident response role

  • Strong background in security monitoring automation and incident response preferably in a complex SaaS environment

  • Experience with SIEM tools process automation cloud environment monitoring IDS/IPS firewalls EDR solutions MDR/MSSP providers.

Salary: $80K $110K Bonus

CDK Global is committed to fair and equitable compensation practices. Compensation packages are based on several factors including but not limited to skills experience certifications and work location. The total compensation package for this position may also include annual performance bonus benefits and/or other applicable incentive compensation plans.We offer Medical dental and vision benefits in addition to:

  • Paid Time Off (PTO)

  • 401K Matching Program

  • Tuition Reimbursement

At CDK we believe inclusion and diversity are essential in inspiring meaningful connections to our people customers and communities. We are open curious and encourage different views so that everyone can be their best selves and make an impact.

CDK is an Equal Opportunity Employer committed to creating an inclusive workforce where everyone is valued. Qualified applicants will receive consideration for employment without regard to race color creed ancestry national origin gender sexual orientation gender identity gender expression marital status creed or religion age disability (including pregnancy) results of genetic testing service in the military veteran status or any other category protected by law.

Applicants for employment in the US must be authorized to work in the US. CDK may offer employer visa sponsorship to applicants.

Employment Type

Full Time

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.