The ideal candidate is a mid- to senior-level cybersecurity engineer with a track record in security monitoring, incident response, and threat analysis, ideally with exposure to OT/ICS environments. They should be technically hands-on, comfortable working across global teams, and eager to lead security improvement efforts in a mission-critical data center environment.
about the job
- Operate and maintain core security platforms, ensuring continuous availability, performance, and lifecycle management (patching, upgrades, break-fix).
- Monitor and analyze logs, events, and alerts across network, endpoint, server, and cloud infrastructure to detect threats and abnormal behavior.
- Act as a frontline responder to cybersecurity incidents—investigating, containing, and remediating security events through tools such as SIEM, EDR, and firewalls.
- Conduct vulnerability scans, assess risk exposure, and provide remediation guidance to internal IT teams and system owners.
- Collaborate with engineering, IT, and external vendors to design and implement effective mitigation strategies and improve security controls.
- Participate in forensic analysis, malware investigation, and root cause evaluation of complex security incidents.
- Work closely with ICS/SCADA systems where applicable; experience in industrial security is highly desirable.
- Identify and develop opportunities for automation to streamline incident detection and response workflows.
- Contribute to updating and maintaining security documentation, knowledge base articles, and runbooks.
- Lead or support regional/global security initiatives and projects, including architecture reviews, tool evaluations, and platform rollouts.
- Ensure alignment with internal SLAs and compliance with global security policies and operational standards.
skills and experience required
Strong hands-on experience with a wide range of security technologies, such as SIEM, EDR, PAM, IAM, SOAR, firewalls, and proxy systems.
Familiarity with log ingestion, collection mechanisms (e.g., syslog, API), and log correlation techniques.
Solid foundation in networking and Linux systems, including security protocols, access controls, and Zero Trust frameworks. Knowledge of security architecture and secure infrastructure design.
Working experience in SOC, CSIRT, or blue team environments, preferably within global enterprises.
What’s the offer
Opportunity to widen up the cybersecurity portfolio; positive and supportive culture. The permanent opportunity for a Security Operations Engineer (Data Center), will pay a salary range of $ 8,000 - $ 10,000 plus benefits.
To apply online please use the 'apply' function, alternatively you can reach me at https://www.linkedin.com/in/Oliviatoh-032330132/. (EA: 94C3609 / R22109942)