As a Security Engineer, you will use your knowledge and expertise to play a key role in defining, implementing, and enhancing capabilities to detect, prevent, and respond to security threats and incidents. You will enable a faster and more effective response by designing and implementing automated security processes.
About the Cyber Security Team
Our cyber security team are the eyes and ears of our organisation. We use pioneering technology to increase visibility and protection of systems, services, and data. To do this we need to stay ahead of the latest threats and continuously improve our tooling, techniques, and processes.
Responsibilities
* Defining, designing, and implementing security automations to enhance the capability to detect, prevent and respond to security threats and incidents by enabling a faster and more effective response.
* Drive the security automation roadmap based on team feedback and through your own research, testing and development.
* Work across multiple teams with analysts and engineers to improve workflows, enabling our colleagues to spend their time doing what they do best.
* Design and develop security automations across SOAR platform and other security products and tooling.
* Desing and develop custom integrations with 3rd party tooling using REST APIs and Python development.
* Work with existing security automation and platform engineers to improve upon existing playbooks and automations to ensure optimal platform performance.
* Developing and running security processes day-to-day for the Tesco Group.
Technical Skills
* Proven hands‑on experience with Security Orchestration, Automation and Response (SOAR) platforms.
* Proven hands‑on experience using Python for development.
* Understanding of REST APIs and demonstrable ability to interact with 3rd party REST APIs.
* Understanding of the MITRE ATT&CK framework (or equivalent) and emerging threat actor tactics, techniques, and procedures.
Soft Skills
* Demonstrable curiosity, passion, and proactive attitude to security and personal development.
* Good interpersonal skills, and written and oral communications, self‑motivator.
* Great teammate and independent worker, relationship builder.
* Ability to collaborate closely with domain experts, key customers, and colleagues at all levels.
Experience
* Desirable Certifications: Ideally one or more relevant certifications, such as: SANS SEC573, SEC598, SEC673.
#J-18808-Ljbffr