Senior Cyber Detect Engineer

3 Weeks ago • 4-8 Years

About the job

SummaryBy Outscal

Senior Cyber Detect Engineer

Maersk is the largest shipping and container logistics company in the world. A $40bn organisation with over 85,000 people, we ship roughly 20% of the world’s container freight. We’re bringing our organisation together to become an integrated container shipping and logistics company, fundamentally re-thinking how we do business.

Maersk is going through times of unprecedented change. As we aspire to secure sustainable growth of our businesses, we need to re-think the way we engage with our customers and partners. Digitisation and IT are taking centre stage in enabling this engagement. Join us in Transport and Logistics IT as we re-think what technology can do to drive growth.

Job Purpose

A Detection and Automation engineer is responsible for identifying potential security threats and automating the processes that detect and respond to these threats. Their role typically involves a combination of monitoring, analysis, and the implementation of automated systems to enhance the efficiency and effectiveness of an organization’s cybersecurity measures. They will help with the deployment, configuration, maintenance, and support our internal business critical systems. Look after services Lifecycle management (development, build, maintenance, and improvement) of the end to end / full-stack cyber security logging & monitoring platform. Supporting the business to transition to a more flexible, scalable approach that supports a distributed workforce and hybrid working mode.

Key responsibilities

Threat Detection:

  • Monitoring: reviewing networks, systems, and applications via the logs/ data received for signs of security breaches or unusual activities/ trends.
  • Develop and implement threat detection mechanisms across multiple platforms, including SIEM, EDR, XDR, and Deception tooling.
  •  Regularly test and validate detection logic and triggers to ensure accuracy and reliability.
  • Analysis: Analyse security alerts and logs to identify potential threats and vulnerabilities to build out use cases and playbooks and to reduce the manual effort of investigating them.
  • Incident Response: Collaborate with incident response teams to investigate and mitigate security incidents.

Automation:

  • Scripting and Tools Development: Develop and implement scripts and tools to automate repetitive tasks related to threat detection and incident response. o Integration: Integrate security tools and platforms (like SIEMs, IDS/IPS, firewalls) to streamline detection and response workflows.
  • Playbooks: Create and maintain automated response playbooks to standardize and accelerate incident handling processes.

·Security Operations:

  • SIEM Management: Manage Security Information and Event Management (SIEM) systems to ensure effective collection, correlation, and analysis of security data.
  •  Rule Tuning: Continuously fine-tune detection rules and signatures to reduce false positives and enhance detection accuracy.
  • Threat Intelligence: Utilize threat intelligence feeds to stay updated on emerging threats and adapt detection mechanisms accordingly.
  • XDR: Manage and ensure effective playbooks are in place to drive mundane activities.
  • EDR: Manage and maintain detections from the EDR platform to ensure aggregation and automation is driven via XDR.
  • Testing: Ensuring that simulations and testing against all detections are done quarterly to ensure all are still fit for purpose.

Collaboration and Communication:

  • Team Coordination: Work closely with other cybersecurity professionals, such as threat hunters, incident responders, and security engineers.
  • Reporting: Provide detailed reports on security incidents, detection performance, and the effectiveness of automated processes.

Primary internal stakeholders

·Detect engineering team

· Manager of Detect Engineering

· Capability and Strategy owners

Primary external stakeholders

· Vendors

· Cyber Operations Engineering teams

Required experience & skills

Technical Proficiency:

  • Knowledge of Security Tools: Proficient with security tools such as SIEM, IDS/IPS, EDR, and firewalls. XDR advantageous.
  • Programming and Scripting: Skilled in scripting languages like Python, Bash, or PowerShell for automation tasks.
  • Networking and Systems: Understanding of network protocols, operating systems, and common IT infrastructure.

Analytical Skills:

  • Threat Analysis: Ability to analyse complex security data and logs to identify patterns indicative of security threats.
  • Problem-Solving: Strong problem-solving skills to develop effective detection and automation solutions.

Attention to Detail:

  • Accuracy: Meticulous attention to detail to ensure accurate threat detection and efficient automation processes.
  • Continuous Improvement: Commitment to continuously improving detection mechanisms and automation workflows.

·Soft Skills:

o Communication: Effective communication skills to convey technical information to non-technical stakeholders and document processes clearly. o Collaboration: Ability to work collaboratively within a team and across departments.

Experience & Qualifications:

Typically, a Detection and Automation Engineer has a background in cybersecurity, computer science, or a related field. Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), or SANS GIAC certifications can be advantageous. Practical experience with security operations, incident response, and automation tools is highly valued. In summary, a Detection and Automation Analyst plays a crucial role in enhancing an organization’s cybersecurity posture by leveraging automation to improve the efficiency and effectiveness of threat detection and response processes.

Maersk is committed to a diverse and inclusive workplace, and we embrace different styles of thinking. Maersk is an equal opportunities employer and welcomes applicants without regard to race, colour, gender, sex, age, religion, creed, national origin, ancestry, citizenship, marital status, sexual orientation, physical or mental disability, medical condition, pregnancy or parental leave, veteran status, gender identity, genetic information, or any other characteristic protected by applicable law. We will consider qualified applicants with criminal histories in a manner consistent with all legal requirements.

 

We are happy to support your need for any adjustments during the application and hiring process. If you need special assistance or an accommodation to use our website, apply for a position, or to perform a job, please contact us by emailing  accommodationrequests@maersk.com

Maharashtra, India (On-Site)

Sichuan, China (On-Site)

Shanghai, China (On-Site)

Sindh, Pakistan (On-Site)

Tamil Nadu, India (On-Site)

Karnataka, India (On-Site)

Maharashtra, India (On-Site)

Maharashtra, India (On-Site)

Ho Chi Minh City, Vietnam (On-Site)

View All Jobs

Similar Skill Jobs

Marvell - Senior Product Engineer

Singapore (On-Site)

dentsu - SEO Consultant

Lombardy, Italy (On-Site)

HP - Systems Engineering Program Manager

Singapore, Singapore (On-Site)

HP - Technical Consultant, Print Ecosystem (ANZ Market)

Federal Territory Of Kuala Lumpur, Malaysia (On-Site)

HP - Engineering Project/Program Management

Singapore, Singapore (On-Site)

HP - Estagio em Business Intelligence

São Paulo, Brazil (On-Site)

PwC - Senior Associate - Forensics Services

Federal Territory Of Kuala Lumpur, Malaysia (On-Site)

Jobs in Bengaluru, Karnataka, India

Software Engineering Jobs

NXP - Global Technical Service Desk Engineer

Uttar Pradesh, India (On-Site)

CAE - Proposals Manager

Queensland, Australia (On-Site)

NXP - Backend Mold Process Engineer

Federal Territory Of Kuala Lumpur, Malaysia (On-Site)

dentsu - SEO Consultant

Lombardy, Italy (On-Site)

dentsu - Programmatic Manager

England, United Kingdom (On-Site)

HP - Software Engineer - CPQ and Sales

Karnataka, India (On-Site)

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug