remote
Cyber Security Operations Engineer - Environmental Resources Management
Systems Engineer
Join a global cyber security operations team to protect enterprise systems, enhance detection and response, and improve overall security posture using SIEM, IDS/IPS, Python scripting, and cloud security technologies.
About the role
Key Responsibilities
- Monitor and analyze security events across the enterprise using SIEM platforms to identify threats and anomalies.
- Develop, tune, and maintain detection rules and alerts for IDS/IPS and other security controls.
- Investigate and respond to security incidents, performing root‑cause analysis and coordinating remediation efforts.
- Automate repetitive tasks and enrich detection capabilities through Python scripting and API integrations.
- Conduct vulnerability assessments, prioritize findings, and work with stakeholders to remediate risks.
- Support cloud security initiatives, particularly within AWS environments, ensuring secure configurations and continuous compliance.
Requirements
- 3+ years of hands‑on experience in cyber security operations, incident response, or related roles.
- Proficiency with SIEM tools (e.g., Splunk, QRadar, Elastic) and IDS/IPS technologies.
- Strong scripting skills in Python for automation and data analysis.
- Experience performing vulnerability assessments and managing remediation workflows.
- Knowledge of cloud security best practices, especially AWS services and security controls.