Role Overview:The Senior Security Engineer will be responsible for implementing and managing comprehensive cybersecurity measures across networks, endpoints, and cloud environments. This role involves proactive threat monitoring, vulnerability management, incident response, and ensuring robust data protection and access control. The engineer will also contribute to security architecture, risk assessment, compliance, and employee security awareness training.
Key Responsibilities:- Continuously scan networks, endpoints, and cloud environments for suspicious activity using advanced tools like SIEM and EDR.
- Proactively identify and patch weaknesses in software, hardware, and networks before malicious actors can exploit them.
- Investigate breaches in real time, mitigate damage, isolate compromised systems, and restore operations to minimize downtime.
- Ensure only authorized personnel have access to sensitive information by implementing multi-factor authentication (MFA) and strict role-based access controls.
- Safeguard sensitive company and customer data both in transit and at rest using robust encryption protocols and data loss prevention (DLP) tools.
- Design and implement secure network infrastructures, firewalls, and defensive layers tailored to the business's risk tolerance.
- Evaluate the organization against industry standards (e.g., ISO 27001, GDPR) and conduct regular audits to ensure regulatory adherence.
- Educate staff on cybersecurity best practices such as recognizing phishing scams and applying secure password hygiene to reduce the risk of human error.
Required Skills:- SIEM
- EDR
- Network monitoring
- Endpoint monitoring
- Cloud environment monitoring
- Vulnerability identification
- Vulnerability remediation
- Software security
- Hardware security
- Network security
- Incident investigation
- Breach response
- System isolation
- Operational recovery
- Downtime minimization
- Multi-Factor Authentication (MFA)
- Role-Based Access Control (RBAC)
- Identity Management
- Access Control
- Encryption protocols
- Data Loss Prevention (DLP)
- Data protection in transit
- Data protection at rest
- Network infrastructure security
- Firewall implementation
- Security architecture
- Defensive security controls
- Risk assessment
- ISO 27001
- GDPR
- Security audits
- Regulatory compliance
- Cybersecurity best practices
- Phishing awareness
- Secure password hygiene
- Employee security training
Qualifications:- 8-10 years of experience in Cyber Security.