Senior Cyber Detect Engineer

4 Months ago • 4-8 Years • Cyber Security

Job Summary

Job Description

Job Details

Senior Cyber Detect Engineer

Maersk is the largest shipping and container logistics company in the world. A $40bn organisation with over 85,000 people, we ship roughly 20% of the world’s container freight. We’re bringing our organisation together to become an integrated container shipping and logistics company, fundamentally re-thinking how we do business.

Maersk is going through times of unprecedented change. As we aspire to secure sustainable growth of our businesses, we need to re-think the way we engage with our customers and partners. Digitisation and IT are taking centre stage in enabling this engagement. Join us in Transport and Logistics IT as we re-think what technology can do to drive growth.

Job Purpose

A Detection and Automation engineer is responsible for identifying potential security threats and automating the processes that detect and respond to these threats. Their role typically involves a combination of monitoring, analysis, and the implementation of automated systems to enhance the efficiency and effectiveness of an organization’s cybersecurity measures. They will help with the deployment, configuration, maintenance, and support our internal business critical systems. Look after services Lifecycle management (development, build, maintenance, and improvement) of the end to end / full-stack cyber security logging & monitoring platform. Supporting the business to transition to a more flexible, scalable approach that supports a distributed workforce and hybrid working mode.

Key responsibilities

Threat Detection:

  • Monitoring: reviewing networks, systems, and applications via the logs/ data received for signs of security breaches or unusual activities/ trends.
  • Develop and implement threat detection mechanisms across multiple platforms, including SIEM, EDR, XDR, and Deception tooling.
  •  Regularly test and validate detection logic and triggers to ensure accuracy and reliability.
  • Analysis: Analyse security alerts and logs to identify potential threats and vulnerabilities to build out use cases and playbooks and to reduce the manual effort of investigating them.
  • Incident Response: Collaborate with incident response teams to investigate and mitigate security incidents.

Automation:

  • Scripting and Tools Development: Develop and implement scripts and tools to automate repetitive tasks related to threat detection and incident response. o Integration: Integrate security tools and platforms (like SIEMs, IDS/IPS, firewalls) to streamline detection and response workflows.
  • Playbooks: Create and maintain automated response playbooks to standardize and accelerate incident handling processes.

·Security Operations:

  • SIEM Management: Manage Security Information and Event Management (SIEM) systems to ensure effective collection, correlation, and analysis of security data.
  •  Rule Tuning: Continuously fine-tune detection rules and signatures to reduce false positives and enhance detection accuracy.
  • Threat Intelligence: Utilize threat intelligence feeds to stay updated on emerging threats and adapt detection mechanisms accordingly.
  • XDR: Manage and ensure effective playbooks are in place to drive mundane activities.
  • EDR: Manage and maintain detections from the EDR platform to ensure aggregation and automation is driven via XDR.
  • Testing: Ensuring that simulations and testing against all detections are done quarterly to ensure all are still fit for purpose.

Collaboration and Communication:

  • Team Coordination: Work closely with other cybersecurity professionals, such as threat hunters, incident responders, and security engineers.
  • Reporting: Provide detailed reports on security incidents, detection performance, and the effectiveness of automated processes.

Primary internal stakeholders

·Detect engineering team

· Manager of Detect Engineering

· Capability and Strategy owners

Primary external stakeholders

· Vendors

· Cyber Operations Engineering teams

Required experience & skills

Technical Proficiency:

  • Knowledge of Security Tools: Proficient with security tools such as SIEM, IDS/IPS, EDR, and firewalls. XDR advantageous.
  • Programming and Scripting: Skilled in scripting languages like Python, Bash, or PowerShell for automation tasks.
  • Networking and Systems: Understanding of network protocols, operating systems, and common IT infrastructure.

Analytical Skills:

  • Threat Analysis: Ability to analyse complex security data and logs to identify patterns indicative of security threats.
  • Problem-Solving: Strong problem-solving skills to develop effective detection and automation solutions.

Attention to Detail:

  • Accuracy: Meticulous attention to detail to ensure accurate threat detection and efficient automation processes.
  • Continuous Improvement: Commitment to continuously improving detection mechanisms and automation workflows.

·Soft Skills:

o Communication: Effective communication skills to convey technical information to non-technical stakeholders and document processes clearly. o Collaboration: Ability to work collaboratively within a team and across departments.

Experience & Qualifications:

Typically, a Detection and Automation Engineer has a background in cybersecurity, computer science, or a related field. Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or SANS GIAC certifications can be advantageous. Practical experience with security operations, incident response, and automation tools is highly valued. In summary, a Detection and Automation Analyst plays a crucial role in enhancing an organization’s cybersecurity posture by leveraging automation to improve the efficiency and effectiveness of threat detection and response processes.

Maersk is committed to a diverse and inclusive workplace, and we embrace different styles of thinking. Maersk is an equal opportunities employer and welcomes applicants without regard to race, colour, gender, sex, age, religion, creed, national origin, ancestry, citizenship, marital status, sexual orientation, physical or mental disability, medical condition, pregnancy or parental leave, veteran status, gender identity, genetic information, or any other characteristic protected by applicable law. We will consider qualified applicants with criminal histories in a manner consistent with all legal requirements.

 

We are happy to support your need for any adjustments during the application and hiring process. If you need special assistance or an accommodation to use our website, apply for a position, or to perform a job, please contact us by emailing  accommodationrequests@maersk.com

Similar Jobs

PwC - Cloud Security Engineering - Senior Manager

PwC

Prague, Prague, Czechia (On-Site)
4 Months ago
Forcepoint - Sr. Systems Engineer

Forcepoint

Mumbai, Maharashtra, India (On-Site)
4 Months ago
ness - Principal Architect - Sr Director

ness

Dallas, Texas, United States (Hybrid)
3 Months ago
Razer - Cybersecurity Intern

Razer

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)
4 Months ago
The Walt Disney Company - Senior Systems Reliability Operations Engineer

The Walt Disney Company

Mumbai, Maharashtra, India (On-Site)
3 Months ago
PwC - Cybersecurity-ETS-SAP GRC security-Senior Associate-Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Cotiviti - Senior Security Engineer

Cotiviti

(On-Site)
4 Months ago
PwC - Associate - TLS - IT Staff

PwC

Jakarta, Jakarta, Indonesia (On-Site)
4 Months ago
PwC - Financial Sector Cyber Security Senior Manager

PwC

Amsterdam, North Holland, Netherlands (On-Site)
4 Months ago
Marvell - Identity and Access Management Engineer

Marvell

Santa Clara, California, United States (Hybrid)
6581 Years ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

varonis-internal - DevOps Engineer

varonis-internal

Herzliya, Tel Aviv District, Israel (On-Site)
4 Months ago
Scopely - UI/UX Designer

Scopely

Bengaluru, Karnataka, India (Hybrid)
3 Months ago
CloudLinux - Middle SDET/QA Automation Engineer (worldwide remote)

CloudLinux

Ljubljana, Ljubljana, Slovenia (Remote)
3 Months ago
Sinch - Site Reliability Engineer Mid-Level

Sinch

France (Remote)
4 Months ago
Whoop - IT Application Engineer

Whoop

Boston, Massachusetts, United States (On-Site)
4 Months ago
Thatgamecompany - Backend Engineer - China

Thatgamecompany

Shanghai, Shanghai, China (On-Site)
5 Months ago
PwC - Manager - Coordinación SOC

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
4 Months ago
2K - Incident Responder

2K

Prague, Prague, Czechia (Hybrid)
7 Months ago
Playrix - Lead QA Engineer (Resources Team)

Playrix

Georgia (Remote)
4 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

PwC - IN-Manager_Employee Central_Enterprise Apps SAP_Advisory_Kolkata

PwC

Kolkata, West Bengal, India (On-Site)
4 Months ago
Flexera Software - Senior Quality Assurance Engineer

Flexera Software

Bengaluru, Karnataka, India (On-Site)
4 Months ago
SparkCognition - Senior IT Cloud Engineer

SparkCognition

Bengaluru, Karnataka, India (On-Site)
5 Months ago
Scopely - Animator

Scopely

Bengaluru, Karnataka, India (Hybrid)
8 Months ago
Head Digital Works - Senior Associate - Copywriter

Head Digital Works

Hyderabad, Telangana, India (On-Site)
4 Months ago
JIFFY.ai - STAFF ENGINEER SRE

JIFFY.ai

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
HRingZa Solutions - Unity Game Developer

HRingZa Solutions

India (On-Site)
6 Months ago
Hitachi - Senior AI Data Scientist

Hitachi

Chennai, Tamil Nadu, India (On-Site)
4 Months ago
Gallagher - Video & Motion Designer

Gallagher

Pune, Maharashtra, India (On-Site)
3 Months ago
Bounteous - Lead Cloud Systems Engineer

Bounteous

Chennai, Tamil Nadu, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

ByteDance - Software Engineer - Network Security - San Jose

ByteDance

San Jose, California, United States (On-Site)
3 Months ago
Intel Corporation - Information Systems Security Officer (ISSO)

Intel Corporation

Fairfax, Virginia, United States (On-Site)
3 Months ago
PwC - IN- Senior Associate_M365 Admin _IN_IT Services CO_IFS_PAN India

PwC

Kolkata, West Bengal, India (On-Site)
4 Months ago
Trellix - Pre Sales Solutions Engineer

Trellix

Indonesia (Remote)
4 Months ago
Playtika - Application Security Researcher

Playtika

Israel (On-Site)
3 Months ago
Zeta - Cloud Security Enegineer II/III

Zeta

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Google - Senior Security Engineer, Google Cloud

Google

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Google - Technical Program Manager, Security Operations

Google

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Electronic Arts - Security Software Engineer

Electronic Arts

Vancouver, British Columbia, Canada (On-Site)
4 Months ago
PwC - IN_Associate_SOC L1/L2_Managed Services_Advisory_Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Bengaluru, Karnataka, India (Remote)

Greer, South Carolina, United States (On-Site)

Pune, Maharashtra, India (Remote)

Porto, Porto District, Portugal (Remote)

Porto, Porto District, Portugal (Remote)

Bangkok, Bangkok, Thailand (On-Site)

Mexico City, Mexico City, Mexico (On-Site)

Taoyuan City, Taiwan (On-Site)

Rotterdam, South Holland, Netherlands (On-Site)

View All Jobs

Get notified when new jobs are added by Maersk Careers

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug