This job post is closed and the position is probably filled. Please do not apply.
🤖 Automatically closed by a robot after apply link
was detected as broken.
Description:
Event Collection and Analysis: Responsible for gathering and analyzing events from various infrastructure components like websites, servers, and databases.
Security Rule Development and Implementation: Create and implement security rules to address scenarios such as fake registrations, mass registrations, and DDoS attacks.
Monitoring and Incident Response: Monitor and respond to rule triggers/incidents, refine response rules, and take necessary blocking actions.
Security Incident Investigation: Conduct investigations into security incidents.
Resource and Service Registry: Maintain a registry of resources and services.
Security Compliance Control: Ensure resource compliance with international security standards and apply the latest security patches.
Collaboration with Subcontractors and Security Partners: Work closely with subcontractors and partner companies on security-related matters.
Administration of Security Systems: Manage security systems like MDM, BYOD, SIEM, and CloudFlare.
Risk Analysis and Mitigation: Assess existing risks and develop actions to minimize them.
Risk Analysis for New Systems and Projects: Evaluate potential risks related to implementing new systems, services, or applications.
Requirements:
Experience: Minimum 3 years of experience in IT and/or information security.
Understanding of IT Infrastructure and Network Security Principles: Familiarity with IT infrastructure protection systems and network security.
IAM Experience: Experience with IAM systems.
Vulnerability Management: Proficiency in vulnerability management systems.
SIEM Configuration: Experience configuring SIEM tools like Open Search, Splunk, or others.
Security Policy Configuration for Google Workspace/Office 365: Desired experience in configuring security policies for these platforms.
Tool Proficiency: Familiarity with various tools like Terraform, GitLab, Prometheus, Grafana, Loki, Docker, Docker Compose, PowerBI, HaProxy, Nginx, and LEMP.
Cloud Solutions: Familiarity with AWS, DigitalOcean, CloudFlare, GCP, and Kubernetes.
External Audit Experience: Experience with external audits.
Risk and Incident Management Methodologies: Understanding of risk and incident management methodologies.
Documentation Skills: Ability to write documentation.
Scripting Languages: Familiarity with programming/scripting languages like Python, Bash/Shell scripts, SQL, and PowerShell.
Security Standards Knowledge: Understanding of information security management systems like ISO/IEC 27001 and NIST.
Antivirus Systems: Familiarity with antivirus systems; experience with CrowdStrike is advantageous.
Database Experience: Desired experience in deploying and administering databases.
Operating Systems: Desired experience with Windows, Linux, and MacOS.
English Language: Intermediate or higher proficiency in both written and spoken English.
Benefits:
Medical Insurance
20 business days of vacation per year
5 business days of sick leave without a medical certificate per year