Security Operations Engineer

Posted 12ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Security Operations Engineer role at FICO focusing on cyber protection and automation development. Involved in incident response and security operations for a leading analytics company.

Responsibilities:

  • Investigate and respond to intrusion events/incidents using SIEM, XSOAR, file analysis, endpoint logs, etc.
  • Support cybersecurity incident response activities, including but not limited to discover, contain, and mitigate incident response workflows.
  • Test and evaluate use-cases and work on fine-tuning them.
  • Identify log sources needed for collection for both cybersecurity and compliance for the SIEM.
  • Generate appropriate alerting within SIEM to leverage in automation activities.
  • Write automation in the SOAR to accelerate IR activities (Java, Python, Bash, etc.).
  • Participate in Monitoring, and Incident Response activities.
  • Workflow creation and analysis.
  • Analyze, prioritize and escalate any issues that could potentially put business objectives, results, or processes at risk.

Requirements:

  • Experience in a similar role, such as Junior SOC Analyst.
  • Strong understanding of root cause analysis of alerts, events and/or incidents.
  • Preferably, obtained a certification in one of these skills: Security +, Network +, OSCP, CISSP, Splunk and AWS related security certifications.
  • Experience in threat modeling, code reviews, security testing, vulnerability detection, attacker exploit techniques, and methods for their remediation.
  • Experience with security testing at scale and integration of security controls into CI/CD workflows for rapid deployments.
  • Experience in implementing compliance and cybersecurity controls in physical and cloud environments.
  • Investigate and respond to intrusion events/incidents using SIEM, XSOAR, file analysis, endpoint logs etc.
  • Supports security incident response including but not limited to tracking, discovery, and mitigation of incident response workflows.
  • Demonstrated technical security expertise in a variety of cloud platforms.
  • Strong knowledge of cloud security concepts and design principles from a security perspective.
  • Familiarity with industry regulations, frameworks, and practices. For example, PCI, ISO 27001, NIST, etc.

Benefits:

  • An inclusive culture strongly reflecting our core values: Act Like an Owner, Delight Our Customers and Earn the Respect of Others.
  • The opportunity to make an impact and develop professionally by leveraging your unique strengths and participating in valuable learning experiences.
  • Highly competitive compensation, benefits and rewards programs that encourage you to bring your best every day and be recognized for doing so.
  • An engaging, people-first work environment offering work/life balance, employee resource groups, and social events to promote interaction and camaraderie.