
Senior Security Engineer
Posted Jul 29

Posted Jul 29
This is a fully remote position, open to applicants in Bulgaria.
• Oversee and analyze security alerts across various environments, including cloud, identity, endpoint, and network.
• Examine logs and activities from AWS, GCP, Active Directory, Linux systems, Windows systems, and security tools.
• Facilitate incident response by collecting evidence, confirming suspicious activities, and documenting results.
• Develop scripts to automate repetitive security tasks, analyze logs, generate reports, or enhance data.
• Assist in conducting security reviews, focusing on IAM, storage exposure, compute workloads, and network setups.
• Investigate user authentication activities, behavioral patterns, privilege modifications, and potential account breaches.
• Collaborate with internal teams to comprehend systems, pinpoint risks, and aid in remediation, compliance, and audit efforts.
• Be on-call for after-hours incident response when urgent security matters necessitate investigation or assistance.
• 3-5 years of experience in security operations, incident response, systems administration, cloud operations, or a comparable technical position.
• Practical experience in using scripts to address operational or security challenges.
• Proficient in navigating both cloud and Linux command-line environments.
• Familiarity with cloud security principles, services, logs, and IAM.
• Strong scripting proficiency, ideally in Python, Bash, or PowerShell.
• Experience with SIEM platforms such as Splunk, Chronicle, Sentinel, or equivalent tools.
• Solid understanding of Linux and Windows systems, including command line usage, permissions, processes, and logs.
• Basic to intermediate knowledge of Active Directory, encompassing users, groups, authentication, and privilege modifications.
• Ability to read and analyze logs from cloud platforms, operating systems, and security tools.
• Comprehension of common security concepts such as phishing, credential compromise, privilege escalation, lateral movement, and exposed services.
• Strong analytical, documentation, and communication abilities.
• Candidates must be available for after-hours incident response when urgent security situations require investigation or support.
• Competitive salary and performance-based bonuses.
• Comprehensive health, dental, and vision insurance.
• Flexible work hours and remote work options.
• Opportunities for professional development and training.
• Supportive and inclusive work environment.
Cloudiax
Cisco
Cisco
Skylight
Get handpicked remote jobs straight to your inbox weekly.