Job Summary:
As a Security Engineer at BizLink, you will be a key member of our global security team, responsible for safeguarding our enterprise infrastructure and driving critical security initiatives. You will design, implement, and manage robust security solutions across our global offices and data centers, ensuring the integrity and resilience of our digital perimeter. This role offers the opportunity to lead transformative projects, from optimizing network zoning to overseeing the evolution of our global Security Operations Center (SOC).
Responsibilities:
- Security Operations & SOC Management: Serve as a primary technical lead for the Security Operations Center, overseeing the transition to new providers and defining global requirements for threat detection and response.
- SIEM Log Analytics: Manage and optimize log analytics within a co-managed SIEM environment to ensure comprehensive threat visibility.
- Infrastructure Hardening: Drive the Digital Perimeter Hardening initiative, focusing on network path optimization and re-routing strategies between switches and firewalls.
- Endpoint Integrity: Manage the lifecycle and integrity of global endpoints using tools such as Trellix and Rapid7, ensuring consistent patching and permission standards.
- Network Security Architecture: Implement and manage advanced security solutions, including Fortinet Firewalls and Cisco ISE (Identity Services Engine), to enforce granular network access control.
- Threat Mitigation: Develop and maintain automated threat mitigation solutions, such as dynamic SSLVPN brute-force protection leveraging FortiAnalyzer, FortiManager, and custom API integrations.
- Network Zoning: Lead the Network Zoning initiative by performing global firewall policy assessments and creating baseline standards for traffic flow control.
- Cloud & Hybrid Security: Design and maintain secure connectivity for cloud environments (Azure, GCP, AWS), including the management of Azure VWAN and other cloud-native security services.
- Compliance & Audit: Participate in and support ISO 27001 internal and external audits to ensure global compliance with international security standards.
Qualifications
- :Experience: Proven experience in security engineering, specifically with enterprise-grade technologies
- .Security Monitoring & Incident Response: Experience deploying and managing SIEM/SOAR systems (e.g., Splunk, Microsoft Sentinel) and EDR/XDR platforms (e.g., CrowdStrike, SentinelOne) to detect and mitigate threats in real time
- .Technical Knowledge: Deep understanding of secure protocols and technical configuration
- sTool Proficiency: Hands-on experience with security platforms such as Trellix, Rapid7, and network monitoring tools like Wireshark
- .Cloud Expertise: Solid understanding of cloud networking and security architectures within AWS, Azure, or GCP environments
- .Certifications: Any professional Security certifications are highly appreciated
.
Skill
- s:Communication: Excellent English communication skills, with the ability to articulate complex technical risks to diverse global stakeholder
- s.Automation Skills: Familiarity with scripting (e.g., Python, Flask) and API integration for automating security responses and log managemen
- t.Resilience & Threat Hunting: Maintain composure during high-pressure incidents while systematically identifying and mitigating potential security threat
s.