Tech Stack
AnsibleAWSAzureCloudCyber SecurityGoogle Cloud PlatformJenkinsOpen SourcePythonTerraform
About the role
- CI/CD Development and Management: Build, manage, and optimize Continuous Integration and Continuous Deployment (CI/CD) pipelines to enhance development workflows and ensure secure, reliable delivery of code.
- Infrastructure as Code (IaC): Develop, enhance, and maintain IaC templates or playbooks using tools such as Ansible, Terraform, CloudFormation, or equivalent; standardize infrastructure provisioning across cloud and on-prem environments.
- Automation & Workflow Orchestration: Design and implement automated solutions and workflows using scripting languages (Python, Bash, PowerShell) or hyperautomation platforms to orchestrate repetitive tasks and streamline operations.
- DevOps Best Practices: Integrate DevOps principles into development lifecycles, promoting collaboration, monitoring, and agile delivery, and evaluate new tools to enhance automation.
- Security Engineering: Build, maintain and enhance security operations technology stack including cloud native solutions, cloud-based infrastructure and applications, next generation SIEMs and hyper automation solutions; enhance security logging and detection engineering practices and incorporate AI into workflows.
- Detection & Response: Build and maintain infrastructure related to detection & response engineering lifecycle, telemetry and log pipelines, automation and AI; support alert pipeline and detection use case development.
- Threat Intelligence Management: Support backend and infrastructure tasks related to Threat Intelligence Projects, Threat Intelligence Collection, Analysis, Making Threat Intelligence Actionable, Collaboration & Incident Support.
- Security Projects: Lead projects such as Endpoint Security enhancements, Attack Simulation, Use Case Validation, Threat Hunting, Compromise Assessments, Network/Endpoint security reviews.
- Leadership: Cross-functional leadership and stakeholder management; mentor and contribute to team growth.
Requirements
- 5-7 years of experience in Information Security, with technical hands-on experience in Security Engineering, Security Operations, Cyber Threat Intelligence, or Cloud Security.
- Proven experience with CI/CD tools (e.g., Jenkins, GitLab CI/CD, GitHub Actions).
- Proficiency with IaC tools like Terraform, Ansible, or CloudFormation.
- Strong scripting skills (e.g., Python, Bash, PowerShell) or familiarity with automation/orchestration platforms.
- Working Experience with SIEM, EPP/EDR/XDR, SOAR, Threat Intelligence Platforms (TIPs), Open Source Threat Intelligence solutions (eg. MISP, OpenCTI, etc).
- Working experience with Cloud environments like AWS, Azure and GCP.
- Working experience in the practical implementation of operational, tactical and strategic threat intelligence.
- Experience in applying AI/ML in cybersecurity use cases.
- Highly self-motivated, attention to detail and outcome driven.
- Highly collaborative team player.
- Proficiency in verbal and written English.