- Company Name
- Olo
- Job Title
- Senior Security Engineer (Blue Team)
- Job Description
-
Job title: Senior Security Engineer (Blue Team)
Role Summary:
Lead blue‑team security initiatives, enhancing detection, response, and mitigation across SaaS platforms. Drive incident handling, automation, and security architecture alignment with industry standards while mentoring junior staff and collaborating with cross‑functional teams.
Expectations:
- 3+ years in security engineering/operations (blue‑team focused).
- Strong incident response, threat hunting, and vulnerability assessment expertise.
- Proficiency in SIEM, IDS/IPS, DLP, MFA, WAF, and related tools.
- Experience with AWS security, IaC (Terraform, Ansible, CloudFormation), and automation scripting.
Key Responsibilities:
- Optimize monitoring, alerting, and incident response processes; maintain 24/7 on‑call support.
- Conduct detailed vulnerability assessments and implement remediation strategies.
- Mentor junior/mid‑level engineers; set security best‑practice standards.
- Own security projects: prioritize, plan, and execute with cross‑functional stakeholders.
- Deploy and maintain security technologies: SIEM, IDS/IPS, DLP, MFA, WAF, antivirus, web proxies.
- Lead automated detection/response scripting and tool integration.
- Develop, document, and enforce security policies, procedures, and incident playbooks.
- Support compliance, audits, and regulatory requirements; sustain certifications.
- Drive security awareness and secure coding training for technical teams.
- Provide leadership with metrics, incident reports, and risk insights.
Required Skills:
- In‑depth knowledge of OS hardening (Windows, macOS, Linux), networking, virtualization security.
- Advanced threat hunting, incident response, and forensic analysis.
- SIEM administration, log management, rule tuning, and correlation.
- Vulnerability scanning (Nessus, Qualys, OpenVAS) and remediation.
- Cloud security for AWS: IAM, KMS, security groups, GuardDuty, Config, CloudTrail.
- IaC tools: Terraform, Ansible, CloudFormation.
- Automation/scripting: Python, PowerShell, Bash.
- Application security fundamentals, modern web protocols, WAF configuration.
- Understanding of data protection, privacy regulations (GDPR, PCI‑DSS, SOC 2).
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Certifications such as CompTIA Security+, CEH, OSCP, CISSP, or equivalent/SWC preferred.