We are seeking a Senior Security Engineer to provide operational leadership for our SIEM infrastructure and play a crucial role in securing our company's systems and data.
As part of our Security Operations team, the ideal candidate will be responsible for maintaining and enhancing our security measures, identifying potential security threats, and collaborating with internal teams to develop robust security solutions.
The remote option applies only to the Candidates who will be working from any location in Ukraine.
#LI-DNI
Responsibilities
- Take ownership of the SIEM infrastructure, ensuring its optimal operation and sizing
- Monitor the health status of SIEM filters, rules, expressions, reports, data monitors, and other threat identification mechanisms
- Implement new log sources and generate meaningful alerts to aid our Security Operations Center (SoC)
- Produce weekly reports to identify recurring and potential attacks
- Provide operational leadership of SOAR infrastructure and automation playbooks
- Design, develop, and deliver solutions to mitigate security threats
- Perform threat identification and conduct investigations on incidents/alerts generated from the SIEM
- Collaborate in purple team exercises focusing on areas such as AAD, web-applications, cloud solutions, and networks
Want more jobs like this?
Get jobs in Novoukrayinka, Ukraine delivered to your inbox every week.
- Proficiency in SIEM administration with a minimum of 1-year experience using ArcSight
- Demonstrated knowledge/experience of SoC analyst
- Background in SOAR infrastructure and playbook automation
- Knowledge of vulnerability management systems
- Understanding of attack vectors and threat landscapes
- Experience in performing security incident investigations and threat analyses
- Demonstrated capability in content creation for security monitoring and alerting
- Qualifications in PNPT and/or OSCP certification
- Additional SIEM administration experience with other tools
- Other industry certifications
- Experience as an SoC Analyst (L2-L3)
- Work on a flexible schedule remotely or from any of our comfortable offices or coworking spaces in Ukraine
- Receive the necessary equipment to perform your work tasks
- Change projects and technology stacks within EPAM
- Gain experience in various business domains (Insurance, E-commerce, Healthcare, Finance, Travelling, Media, Artificial Intelligence, and more)
- Consider relocation options in over 30 countries worldwide
- Participate in volunteer, charity programs and communities (both technical and interest-based)
- You can plan your individual career path together with your manager
- Receive regular feedback from colleagues
- Improve your English for free with certified teachers (Speaking Clubs, client interview preparation courses, etc.)
- Get the opportunity to undergo free training and certification in AWS, GCP, or Azure Clouds
- Use the internal E-learn training program (18,200+ specialized training and mentoring programs)
- Access corporate accounts on LinkedIn Learning, Get Abstract and other partner resources
- Study at EPAM Solution Architecture School with the instructors who are practicing architects
- Develop as a leader, join Delivery Management, Resource Management, Leadership Essentials school and more
- Participate in internal communities (500+ meetups, technical discussions, brainstorming sessions, online events and conferences annually)
- Vacation and sick leave (including a sick leave without a medical certificate)
- A wide range of Voluntary Medical Insurance programs providing both medical treatment and various preventive options (including sports activities)
- Medical insurance for family members at corporate rates
- Company support during significant life events (childbirth or adoption, marriage, etc.)
- Support for psychological comfort: discounts on services from mental health specialists or coaches, thematic training
- E-kids program - a free programming language training program for EPAMers' children