Prima Power

Senior Security Engineer - Incident Response

Prima Power

full-time

Posted on:

Origin:  • 🇮🇹 Italy

Visit company website
AI Apply
Apply

Job Level

Senior

Tech Stack

AWSCloudKubernetesPythonRust

About the role

  • Strengthen EDR/XDR and DLP configurations.
  • Define new automatic detections of security events in the SIEM.
  • Improve automatic enrichment and integration with SIEM/SOAR.
  • Automate security alerts triage and Incident Response playbooks.
  • Define runbooks to be used during Incident Response.
  • Lead and execute Table Top eXercises (TTX) with different actors and teams.
  • Lead by example during investigation and response of security alerts.
  • Oversee the on-call shifts and guarantee 24x7 security support.
  • Collaborate on all the activities of the Security Engineering team and contribute across software, infrastructure, operations and security.

Requirements

  • Hands-on experience with SIEM and SOAR platforms.
  • Hands-on experience with Crowdstrike or similar EDR/XDR solutions.
  • Hands-on experience with MDM solutions.
  • Hands-on experience in AWS and K8s (EKS) security.
  • Proficiency in scripting and programming languages (e.g., Python, Rust).
  • Availability for on-call shifts to guarantee 24x7 security support.
  • Strong English communication skills.
  • Self-motivated, proactive, strong problem-solving skills and accountability for deliverables.
  • Experience working in an Agile environment.
  • (Nice-to-have) Relevant certifications such as GCIH, GCFA, GREM, GCIA, or similar.
  • (Nice-to-have) Hands-on experience with Google Chronicle.
  • (Nice-to-have) Hands-on experience with Web Application Firewall configuration (e.g., Cloudflare).
  • (Nice-to-have) Proficiency using CI/CD systems and Infrastructure as Code (e.g., Python Pulumi).
  • (Nice-to-have) Knowledge of Cloud Control Frameworks (CIS, CSA, NIST).
  • (Nice-to-have) Web and mobile application security knowledge.
  • (Nice-to-have) Experience in security research, bug bounty programs or CTFs.
McKesson

Senior Manager, Detection Engineering

McKesson
Seniorfull-time$127k–$212k / year🇺🇸 United States
Posted: 15 days agoSource: mckesson.wd3.myworkdayjobs.com
AWSAzureCloudCyber SecurityGoogle Cloud PlatformPythonSplunk
Crypto.com

Incident Response Engineer

Crypto.com
Mid · Seniorfull-timeCalifornia · 🇺🇸 United States
Posted: 34 days agoSource: jobs.lever.co
AWSAzureCloudCyber SecurityFirewallsGoLinuxMacOSPython
CrowdStrike

Senior Engineer – SIEM Integrations

CrowdStrike
Seniorfull-time🇮🇳 India
Posted: 18 days agoSource: crowdstrike.wd5.myworkdayjobs.com
AWSAzureCloudCyber SecurityDistributed SystemsFirewallsGoogle Cloud PlatformPythonSplunkSQL
Sift

Founding Security Engineer

Sift
Mid · Seniorfull-time$170k–$220k / yearCalifornia · 🇺🇸 United States
Posted: 16 days agoSource: jobs.ashbyhq.com
AWSCloudCyber SecurityGrafanaKubernetesPrometheusSplunk
LMI

Platform Engineer - Clearance Required

LMI
Mid · Seniorfull-time$150k–$210k / year🇺🇸 United States
Posted: 30 days agoSource: careers-lmi.icims.com
AnsibleAWSCloudCyber SecurityGrafanaKubernetesLinuxPrometheusPythonSplunkTerraform