cape - Senior Security Engineer, Detection and Response
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT
Requirements
• Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent experience), with advanced degrees or certifications (e.g., CISSP, AWS Certified Security Specialty) being advantageous. • A minimum of 7 years of experience in information security, with at least 3 years concentrated on detection and response. • Deep understanding of AWS architecture, security services, and best practices for securing cloud applications and data. • Proficiency in using infrastructure as code (IaC) tools (like Terraform or AWS CloudFormation) and in automating security tasks within AWS. • Skilled in scripting languages (Python, TypeScript, Go) for the automation of security tasks and the integration of security tools. • Solid knowledge of network security, encryption technologies, and secure coding practices. • Excellent analytical skills for identifying and mitigating complex security vulnerabilities and risks. • Strong communication and leadership abilities, capable of working collaboratively across teams and effectively conveying technical information to non-technical stakeholders. • Organized and able to manage multiple priorities in a dynamic, fast-paced environment. • Role competencies • Security Expertise: Experience running incidents. Knows how to run and optimize SIEMs for optimal detection and response capabilities. Understands the need for tooling and when it’s beneficial vs nice to have • Analytical: Collects data and information; uses critical thinking to solve problems and make sound decisions. • Collaboration & Teamwork: Builds partnerships with others to reach common goals. Able to share credit with coworkers, display enthusiasm and promote a friendly group working environment. Works closely with other departments as necessary, supports group decisions and solicits opinions from coworkers. • Communication: Presents information through verbal and written communication; reads and interprets complex information; listens well. Develops and delivers multi-mode communications that convey clear understanding of unique audiences. • Decision-Making: Acts quickly to solve problems and exercises good judgment by making sound and well-informed decisions. Perceives the impact and implications of decisions; makes effective and timely decisions, even when data is limited. • Dependability/Self-Management: Possesses the personal discipline and diligence necessary to keep commitments and to complete tasks. Is accountable for actions and outcomes. Makes effort to improve situations without explicit instructions; a self-starter who consciously manages his/her own time and resources. • Customer Centric: Values the importance of delivering high quality, innovative service to employees; understands the needs of the client; responds promptly and is accessible to them; follows through on commitments in a timely manner; maintains positive, long-term working relationships; assumes ownership of process issues and takes appropriate steps to mitigate problems. Gets consistently high feedback from stakeholders. Raises hand to help. • Flexibility / adaptability: adjusts quickly to changing priorities, conditions, and challenges. Copes effectively with complexity and change. Is comfortable navigating ambiguity. Can handle business changes with ease and with a lack of frustration or feeling of defeat. Feels comfortable dealing with limited unknowns in an area they are well versed in. • Planning & Organization – Manages multiple projects, determines project urgency in a meaningful and practical way, uses goals to guide actions, creates detailed action plans, and organizes tasks. • Cape-specific competencies • Do Excellent Work
Responsibilities
• Design, implement, and manage robust security controls and policies across the business, enhancing our detection and response capabilities. • Assist in addressing findings from automation and tooling, ensuring prompt and effective response and remediation. • Run and manage detection tooling and automation across the organization • Stay informed about the latest security threats, vulnerabilities, and compliance mandates affecting cloud environments, providing guidance on emerging technologies and security best practices. • Offer expert guidance and mentorship to junior security team members and employees across the company, fostering an organizational culture of security awareness and continuous improvement. • Collaborate with stakeholders to integrate security requirements effectively into IT projects and business initiatives.
No credit card. Takes 10 seconds.