Software Developer/ Engineer/ Architect

SOC Security Engineer

About the Role

We are looking for a problem solver with a taste for complex challenges who can devise practical, innovative and effective solutions using the most appropriate languages, tools and hardware. You will assist in the effort of finding known and unknown threats and understanding new adversary TTPs (Tactics, Techniques and Procedures).

This is a technical security role with the understanding that you are already conversant in the functions delivered by CSOC such as alert triage, incident response, automation, and have a broad knowledge of Cyber Security technology and practises. You will rotate between the alerting program (monitoring, detection and response) and project program (security engineering projects) and will get the opportunity to advance your skills in both areas. Additionally you will take part in red, blue and purple team events, as well as collaborate with other Workday teams on various security projects aimed to enhance Workday’s cybersecurity capabilities.
 

What you’ll do

  • Support the SOC in understanding incidents targeting Workday.
  • Improve threat detection using network or system capabilities.
  • Drive security monitoring efforts.
  • Build automation solutions around open-source and proprietary tools.
  • Gather requirements and develop solutions from the SOC and wider Security team.
  • Evaluate new tools and techniques to create innovative and practical security solutions.
  • Help drive team development by mentoring new and existing staff.
  • 5+ years of experience in a similar technical security role
  • BS Degree in Computer Science (or equivalent)
  • Mature approach to supporting a 24/7 SOC in a follow-the-sun model
  • Experience with cloud security concepts, solutions, and automation
  • IDS/IPS/HIDS systems, SIEM systems, and vulnerability scanning tools
  • Python, Ruby and other scripting languages is essential, as is a strong understanding of Linux/OSX and Windows
  • Deep understanding of network and application security threats, attack techniques, and mitigation options and network related protocols (e.g. TCP/IP, IPSEC, routing protocols, etc.)
  • Relevant Security, Systems, and Networking certifications a plus.

Basic Qualifications

  • 3+ years’ relevant security experience
  • Must have the right to work in Ireland
     

Other Qualifications

  • Experience with SIEM and SOAR security technologies and solutions
  • Demonstrated knowledge of adversary TTPs (Tactics, Techniques and Procedures)
  • Experience in incident response and incident management
  • Experience with threat intelligence platforms and hunting techniques
  • Proven ability in performing technical security analysis
  • Strong coding skills (python preferred)
  • Tertiary level qualification in an Information Technology related field or relevant certification/s
  • Excellent verbal and written communication skills