Lulalend

Senior Security Operations Engineer

Lulalend

full-time

Posted on:

Origin:  • 🇿🇦 South Africa

Visit company website
AI Apply
Manual Apply

Job Level

Senior

Tech Stack

AzureCloudCyber SecurityFirewalls

About the role

  • Secure, monitor and maintain the overall security posture of Lula’s Azure platform and infrastructure
  • Partner with DevSecOps to design, implement and manage security controls and policies for Microsoft Azure
  • Partner with Engineering teams to ensure code deployed on Lula’s infrastructure is done securely
  • Conduct regular security assessments and audits of Azure and internal infrastructure, including vulnerability scanning and penetration testing
  • Manage and audit privileged accounts and implement Entra ID-based access controls and policies
  • Provide security awareness training and perform phishing/incident simulations for the business
  • Monitor and manage on-premise access control and camera systems and advise on confidential information handling
  • Partner with Technical Support to ensure network and endpoints are configured securely and monitored for threats
  • Support PCI DSS annual re-certification and maintain security documentation (policies, procedures, technical standards)
  • Collaborate with external auditors and partners to ensure regulatory compliance
  • Act as key point of contact for security incident and alert investigations, develop remediation plans and perform Root Cause Analysis
  • Participate in on-call rotation to provide 24/7 support for security incidents

Requirements

  • Tertiary qualification in Computer Science, Information Security, or equivalent experience
  • 5+ years of experience in a SecOps field, preferably using Microsoft technologies, with a focus on Azure
  • Expert knowledge of Azure security features: Azure Defender for Cloud, Azure Sentinel, Entra ID, Front Door, Privileged Identity Management, Intune, Defender for Endpoint
  • Experience with security assessments and audits, including vulnerability scanning, penetration testing and incident simulations
  • Hands-on Kali experience (beneficial)
  • Exposure to configuring SAST tools like SonarCloud
  • Familiarity with regulatory requirements and industry standards such as POPIA, PCI DSS and ISO 27001
  • Familiarity with security-related network technologies such as firewalls and VPNs
  • Azure or cybersecurity certifications (e.g., Azure Security Engineer Associate, Azure Solutions Architect Expert, CISSP) are a plus
  • Knowledge of secure coding practices (OWASP) and secure API implementation technologies (OAuth, OIDC)
  • Willingness to undergo background checks (Credit, Criminal and other job-inherent checks)