Overview
Senior Security Engineer role focused on monitoring, investigating, and responding to security activity across cloud, identity, endpoint, and Linux-based environments.
What you'll do
- Monitor and investigate security alerts across cloud, identity, endpoint, and network environments.
- Review logs and activity from AWS, GCP, Active Directory, Linux, Windows, and security tools.
- Support incident response by gathering evidence, validating suspicious activity, and documenting findings.
- Write scripts to automate security tasks like log analysis, reporting, or enrichment.
- Assist security reviews for IAM, storage exposure, compute workloads, and network configurations.
- Investigate authentication activity, user behavior, privilege changes, and potential account compromise.
- Be available for after-hours incident response when urgent events require investigation.
What you'll need
- 3-5 years of experience in security operations, incident response, systems administration, cloud operations, or a similar technical role.
- Hands-on scripting experience to solve operational or security problems.
- Comfort working in both cloud and Linux command-line environments.
- Cloud security concepts, services, logs, and IAM experience.
- Strong scripting skills, preferably Python, Bash, or PowerShell.
- Experience with SIEM platforms such as Splunk, Chronicle, Sentinel, or similar.
- Working knowledge of Linux and Windows systems, including command line usage, permissions, processes, and logs.
Read the full description and apply on the company’s own careers page.