Senior Security Engineer Sec Ops

Barry Callebaut Group


Date: 2 weeks ago
City: Petaling Jaya
Contract type: Full time
About The Role

  • As a Senior Security Engineer SecOps, you’ll report directly to the Director of Security Operations. Your responsibilities will include coordinating incident response, improving security configurations and integrations of the SOC toolset, managing vulnerabilities, analyzing threat intelligence, performing threat hunting, developing security monitoring use- cases and IR procedures, conducting resilience exercises in collaboration with cybersecurity partners and other teams. Working closely with professionals across Digital and Security teams, you’ll leverage cutting-edge tools to enhance our Barry Callebaut’s cyber resilience. If you thrive in a dynamic environment and are passionate about cybersecurity, seize this opportunity to make a tangible impact!

Key Responsibilities Include

  • Proactively analyze security alerts and identify vulnerabilities across the entire IT/OT and cloud landscape, working closely with the 24/7 SOC to implement effective mitigation strategies.
  • Collaborate with cross-functional teams to enforce security controls and ensure adherence to best practices.
  • Develop security monitoring use-cases and automations.
  • Perform threat hunting and threat intelligence analysis.
  • Develop and improve IR security procedures.
  • Conduct in-depth root cause analyses, extract key learnings, and drive remediation efforts to prevent recurrence.
  • Optimize and maintain security tools including vulnerability management, posture management, SIEM, and XDR/EDR solutions.
  • Actively participate in security awareness initiatives to foster a culture of security within the organization.
  • Spearhead regular threat and vulnerability assessments, as well as red and purple team exercises to enhance security posture.
  • Provide essential operational support, including incident response planning and execution, post-incident analysis, and business continuity management.
  • Identify process and system improvement opportunities, gathering requirements to enhance IT security practices.
  • Support the implementation of robust security policies and systems to safeguard the IT environment.

About You

  • Degree in IT/technology, data, business administration, or infrastructure security in a comparable field.
  • CISSP, CISM, GIAC , CompTIA Security+, or other relevant security-related certifications are appreciated, but not required.
  • Proficient in English.
  • Advanced knowledge of infrastructure security layered security approaches including network security measures, endpoint security, and cloud security with a minimum of 5 years of relevant working experience.
  • Experience in security operations, analyzing security threats / security alerts and responding to security incidents.
  • Knowledge of threat hunting and experience in analyzing threat intelligence data sources.
  • Experience in performing security incident analysis and improving the configurations for the following types of technologies:
    • SIEM (eg. Microsoft Sentinel knowledge is a plus),
    • XDR (eg. Microsoft Defender for Endpoint knowledge is a plus),
    • SOAR,
    • Vulnerability Management.
  • Experience in implementing SOC security solutions and configuration enhancement (SIEM/EDR/Vulnerability Management/SOAR etc.) is a plus.
  • Good knowledge of vulnerability testing, incident management, or business continuity management is a plus .
  • Scripting or programming experience (Python, PowerShell) is beneficial.
  • Knowledge of security orchestration, automation and response (SOAR) to optimize the day-to-day activities.
  • Independent and self-driven personality, taking responsibility and owning tasks.
  • The ability to bring people together and mobilize individuals to pursue a joint agenda.
  • Strong analytical and problem-solving skills.
  • Ability to interpret business requirements and draw insights.
  • Excellent written and verbal communication skills, ability to present to diverse audiences.
  • Willingness to learn and try new technologies and topics.
At Barry Callebaut, we are committed to Diversity & Inclusion. United by our strong values, we thrive on the diversity of who we are, where we come from, what we’ve experienced and how we think. We are committed to nurturing an inclusive environment where people can truly be themselves, grow to their full potential and feel they belong. #oneBC - Diverse People, Sustainable Growth.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Field Service Engineer

Siemens Energy, Petaling Jaya
3 hours ago
A Snapshot of Your DayThe Field Service Engineer's immediate supervisor is the Head of Field Service for the Asia Pacific region. This means the FSE will take direction, provide updates, and receive guidance from the Head of Field Service in this region and involves collaborating with various teams on different levels:How You’ll Make An ImpactProvide Technical Field Advice, Supervision and...

Manager - System Application

GAMUDA, Petaling Jaya
19 hours ago
Job description: Job Summary The System Application Manager collaborates with teams to understand business needs, conducts requirements analysis, and drives the development of innovative solutions. They manage application projects, optimize designs, and foster stakeholder relationships while ensuring data security and effective documentation throughout the application lifecycle. Key Responsibilities Collaborate with colleagues to gather and analyze business needs and strategies. Identify...

Senior Cybersecurity Specialist

BJAK, Petaling Jaya
21 hours ago
About usBjak is focused on providing access to affordable and sustainable financial services for people in ASEAN. Headquartered in Malaysia, Bjak is the largest insurance portal in Southeast Asia. Our main portal, Bjak.com, helps millions find the insurance policy with the best value and highest coverage for them. Our investments in technology such as Custom API, trading systems and data...