Overview
In this role you will strengthen client security postures by delivering detection, response, scanning, and monitoring services across a diverse customer base. You will work within a multi-disciplinary security team to operationalize security tooling, drive incident containment and remediation, and contribute to AI-driven threat detection. The position combines hands-on security engineering with collaboration across stakeholders to maintain high levels of security maturity. This is a chance to shape security operations at scale in a hybrid, client-focused environment.
Pay / Benefits
- hybrid working
- remote and flexible working
Responsibilities
- Collaborate within a multi-disciplined security team to deliver proactive and reactive security tasks
- Serve as technical escalation point for complex security events and incidents using structured problem-solving
- Contain and remediate potential and actual malicious incidents across our customer base
- Build and maintain scalable security tooling and integrations using DevOps practices (CI/CD, Infrastructure as Code)
- Contribute to operationalization of AI-driven capabilities to enhance threat detection and response
- Collaborate with internal and external stakeholders to resolve security incidents and ensure vulnerability compliance
- Strive for customer satisfaction while improving operational performance
- Maintain up-to-date understanding of threat landscape, including threat actors, TTPs, and vulnerabilities
Key requirements
- Excellent soft skills in teamwork, problem-solving, and written/verbal communication
- Proactive self-starter with proven customer service skills
- Experience in designing, building, and optimizing security tools and platforms
- Strong knowledge of security, network, and infrastructure technologies
- Proven ability in automation development using modern DevOps practices to enhance security operations
- Understanding of social engineering tactics, phishing, and physical security measures
- Experience with secured cloud architectures (Azure, AWS) and tools such as Microsoft Defender for Endpoint and Microsoft Sentinel
- Microsoft accreditations (AZ-900, MS-900, SC-100) preferred; certifications in AI/ML operations desirable
- teamwork
- problem-solving
- communication (written and verbal)
- security tooling and platforms
- DevOps practices (CI/CD, IaC)
- automation development
…
