Role Overview
The Senior Cyber Security Engineer has the remit of proactively driving development of the cyber security capability in line with the evolving threat landscape. This includes; vulnerability management, access control, security platform engineering, detection and response activities. Coordinate with offensive security personnel to improve security posture based on Red/Purple team campaign findings.
Role Responsibilities
- Security platform engineering and projects
- Vulnerability identification and remediation
- Privileged access management
- Maintain current tooling operating effectiveness
- Identify areas for improvement within current tooling
- Proactively identify opportunities for control improvements
- Develop strong relationships with stakeholders across the business
- Provide security tooling metrics
- Review and provide security input on architecture design briefs and technical solution documents
- Collaborate with solution architects to ensure security is embedded in system and cloud designs
- Penetration test report remediation
- Define and validate security controls across cloud environments, particularly AWS
- Maintain awareness of cloud security architecture best practices and emerging technologies
- Support the development and implementation of secure-by-design principles across projects
- Maintain knowledge of current ATP TTPs
- Maintain knowledge of security tool landscape
Experience / Competences
Required
- 5 to 8 years of Cybersecurity experience.
- Broad Cybersecurity Engineering Background: Deep technical exposure across multiple security domains rather than administration of a single tool.
- Experience implementing vulnerability management, SIEM, PAM, IDS/IPS, EDR, DLP, CNAPP and AV platforms
- Intermediate level knowledge of incident response processes for OS and network level events
- Comfortable with Windows and Linux operating systems
- Solid knowledge of networking, active directory and web applications
- Comfortable with at least one scripting or programming language such as Python, PowerShell, Bash, or Go
- Experience with reviewing and implementing Cloud security controls
- Experience reviewing architecture design documents and identifying security risks
- Strong understanding of AWS security services and controls (e.g., IAM, Guard Duty, SCPs, KMS)
- Familiarity with cloud-native security frameworks and reference architectures
Nice-to-Have
- Previous leadership or mentoring experience is beneficial but not required
- Highly advantageous to have direct engineering experience with CrowdStrike (EDR/XDR) and/or Fortinet (Network Security/Firewalls).
- Previous experience in offensive security, penetration testing, or hands-on Purple Team exercises.
- Incident response and forensics
- Offensive security experience
- Degree level accreditation or equivalent experience
- OSCP, CEH or SANS certification
- Experience with threat modelling and secure design principles
Work Setup:
- Location: Bonifacio Global City, Taguig
- Type: Full time, Permanent
- Shift: Mid shift aligned with EMEA timezone
- Onboarding: First month fully onsite; then hybrid 3 days onsite per week