
Senior Cyber Engineer
- Porto
- Permanente
- Horário completo
- Work as part of Cyber Frontline Operations to manage a number of security tools and capabilities based on the level of risk identified.
- Deploy, configure, and maintain Endpoint security tooling ensuring our environment is protected against any malicious activity.
- Establish clear understanding and documentation of processes related to cyber security tooling.
- Support the integration and implementation of security controls for global Information Technology platforms, capabilities and applications to ensure adherence to critical business objectives, regulatory requirements and cyber security policies.
- Establish clear maintenance and support procedures for endpoint security capabilities.
- Maintain detailed knowledge of emerging threats, risks, technical innovations and security capabilities.
- Investigate incidents and provide solutions to the business stakeholders using the security tools available at hand.
- Optimize policies for endpoint, network, server and cloud environments to reduce false positives and improve detection on endpoint tooling.
- Proactively engage with the Security Operations Centre, global business unit stakeholders and other Cyber Security teams on the design, deployment and management of security tooling focusing on risk reduction and to reduce attack surface.
- Develop documentation, dashboards, and reports for security posture, trends and compliance.
- Provide Tier 2/3 support for issues related to security tooling and ensuring any potential business impact is dealt with swiftly.
- Participate in security audits, incident response, and post-incident reviews
- Bachelor’s degree in computer science, Information Security, Cybersecurity, or a related field, or equivalent practical experience in a professional IT/security role.
- Proven experience with Endpoint Security tooling such as CrowdStrike, Trend Micro, Sentinel One, MS Defender etc
- Strong understanding of cybersecurity concepts such as malware analysis, intrusion detection, server hardening, incident response etc.
- Experience with endpoint protection, server security, cloud workload protection platforms and resolving any incidents related to Cyber Security
- Familiarity with cloud environments (AWS, Azure, GCP)
- Working knowledge of networking, firewalls, and common security protocols.
- Strong troubleshooting, analytical, and problem-solving skills.
- Knowledge of ITIL service methodology and Agile frameworks
- Strong written and verbal communication skills and able to be understood by both technical and non-technical personnel.
- Knowledge of securing operational technology (OT), industrial control systems, application control etc.
- Willingness to cross-skill and support a wide range of cyber tooling and not limited to endpoint security.
- Cyber Security certifications such as CompTIA Security+, CISSP, CEH and Endpoint Security Vendor certifications would be preferable.
- Knowledge of scripting (PowerShell, Python etc.)