Security Engineer
Svitla Systems Inc. is looking for a Senior Cloud Security Operation Analyst for a full-time position (40 hours per week) in Ukraine. Our client is a Canadian courier and package delivery company. The company delivers nearly 500,000 parcels daily across Canada thanks to a technological platform offering more than 3500 optimized routes to almost 500 independent delivery employees. The company’s services are provided via a digital order tracking platform that lets suppliers and logistics service dealers accept bulk orders, track parcel delivery routes, check and communicate shipment details, manage bills and invoices, and fasten the cargo shipment processes by partnering with certified transporters, enabling clients to request and enjoy secured transportation of their parcels and cargos by being able to track them in real-time. The client’s customers include Amazon, Pitney Bowes, and Landmark Global, which handle shipping for Etsy and eBay.
You will join a team to contribute to the continuous improvement of cloud security and cloud security incident response practices in a dynamic, growing organization. You will work in an environment where ideas are welcomed, contributions are recognized, and cross-functional collaboration enables teams to achieve ambitious outcomes. If you are motivated to drive change and partner with developers, DevOps, system administrators, architects, and cybersecurity stakeholders, we would like to hear from you. This role is ideal for someone who is hands-on, curious, analytical, and comfortable working with cloud platforms, security monitoring, automation, orchestration and response tools, and scripting, as well as collaborating with cross-functional technical teams.
Requirements:
- Degree in computer science, 5 to 10 years of experience, or an equivalent combination of training and experience.
- Security Certification(s) required: CISSP, CSSLP, CEH, Security+, GIAC, or demonstrated equivalent security knowledge and experience.
- Cloud or Vendor-specific security certification(s) or demonstrated equivalent security knowledge and experience.
- Experience in cloud cybersecurity operations, cloud incident response, and cloud security.
- Hands-on knowledge of cloud platforms.
- Experience with cloud-native security tools.
- Ability to investigate security events, document findings, and communicate recommendations clearly.
- Proficiency in data analysis and querying using scripting languages and tools such as Python, PowerShell, Bash, YARA-L, SQL, KQL, SPL, or others.
- Experience with SIEM, Endpoint Detection and Response tools, Network Security tools, Security Orchestration, and Cloud Posture Management tools.
- Knowledge of information security risks, frameworks, and industry best practices.
- Ability to work independently and collaborate effectively with technical and non-technical stakeholders.
- Hands-on experience with security orchestration and automation.
- Hands-on security experience with implementation and support of CI/CD pipelines, Secret Management solutions, WAF, Cloud Firewall rules management, Kubernetes, Containers, API gateways, Infrastructure as Code, Compliance as Code, cloud policies, and GitOps.
- Knowledge of development languages: at least one or two of the following: Java, Node.js, C#, .NET.
Responsibilities:
- Identify and drive resolution of dangerous cloud misconfigurations, overly permissive access policies, and identity-based vulnerabilities.
- Protect our organization’s cloud-native infrastructure and digital assets by monitoring real-time signals and investigating threats.
- Review and validate cloud security controls, including identity and access management, network security, logging, encryption, and workload protection.
- Review security alerts, track log data, and tune detection rules using cloud-native platforms.
- Investigate suspicious activities, isolate compromised cloud resources, and mitigate active incursions or data exposures.
- Support cloud incident response activities, including containment, evidence collection, root cause analysis, and post-incident documentation.
- Proactively search cloud environments for hidden indicators of compromise and unusual activities.
- Configure and Support Cloud Security Services and hardening configuration.
- Support compliance, audit, and reporting activities related to cloud security operations.
- Mentor and enable stakeholders on cloud security to uplift posture and address technical debt.
We Offer:
- US and EU projects based on advanced technologies.
- Competitive compensation based on skills and experience.
- Regular performance appraisals to support your growth.
- Flexibility in workspace, either remote or in one of our development offices.
- Comprehensive medical insurance, including dental and massages.
- Personalized learning program tailored to your interests and skill development.
- Sport reimbursement program for onsite and online activities.
- Bonuses for recommendations of new employees.
- Bonuses for article writing, public talks, and other activities.
- 20 vacation days, 10 national holidays and 5 sick leaves.
- Maternity leave policy and family days off.
- Free tech webinars and meetups organized by Svitla.
- Welcome and anniversary presents, gifts for children, and more.
- Regular corporate events and meetups.
- Awesome team, friendly and supportive community!