Job Specifications
About Us
At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world’s largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare all have web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. Cloudflare was named to Entrepreneur Magazine’s Top Company Cultures list and ranked among the World’s Most Innovative Companies by Fast Company.
We realize people do not fit into neat boxes. We are looking for curious and empathetic individuals who are committed to developing themselves and learning new skills, and we are ready to help you do that. We cannot complete our mission without building a diverse and inclusive team. We hire the best people based on an evaluation of their potential and support them throughout their time at Cloudflare. Come join us!
Available Locations: London, UK
About the Department:
Security Operations Center Engineers provide premium-level support for Cloudflare's security products and features. Our largest and most technically sophisticated customers will contact SOC for assistance and intelligence in dealing with threats or attacks on their infrastructure at OSI Layers 3, 4, and 7. This spans the range of Cloudflare security products from Magic Transit Infrastructure Protection, DDoS mitigation (including Advanced TCP Protection and Advanced DNS Protection), and Magic Firewall, to using the Web Application Firewall (WAF), Spectrum, Bot Management, API Security, and Rate Limiting to help customers.
Security Operations Center Analysts/Engineers analyze threats using customer-facing dashboards and internal tools, make detailed and informed suggestions for mitigation, and may implement mitigation strategies directly on behalf of the customer with appropriate approval. The team provides 24x7x365 proactive monitoring via our internal alerting systems, near real-time analysis of security events, and attack reporting beyond Cloudflare's self-service reports.
Responsibilities
Monitor and investigate proactive alerts to identify attacks
Work with Engineering and Operations teams to mitigate attacks, suggest steps to mitigate, and apply the appropriate mitigation when applicable
Work with Engineering and Product teams to improve products and tools
Communicate with customers via chat, email, and phone
Review alerts to determine relevancy and urgency; create tracking tickets for incidents requiring review or escalation
Adhere to SOC SLAs for alert response and customer communication
Configure and manage security monitoring rules; contribute to tool and threshold improvements
DDoS mitigation for OSI Layers 3, 4, & 7: filter malicious traffic using Cloudflare tools including Magic Transit, Magic Firewall, Advanced TCP Protection, WAF, Custom Rules, IP Access Rules, and Rate Limiting
Maintain customer-specific SOC runbooks and escalation matrices
Support SOC customer onboarding and deliver monthly security reviews
Key Skill Sets
Strong understanding of internet protocols (TCP, UDP, ICMP, GRE, BGP)
Networking fundamentals are crucial for success
Analysis of traffic for attack anomaly detection and creation of mitigation rules
Experience handling attack mitigation with knowledge of L3/4 and L7 attacks
Command line / Bash shell proficiency
Customer Facing or Technical support experience is mandatory
Strong communication skills, including with VIP customers during active attacks
Ability to remain calm under pressure
Ability to work 24x7 rotating shifts
Sysadmin skills - Linux, Mac, or Windows (Preferred)
Knowledge of Cloudflare Security Products & Features (Preferred)
Scripting skills, Python preferred (Preferred)
Prometheus/Grafana monitoring experience (Preferred)
Packet capture tools such as tcpdump or Wireshark (Preferred)
API/GraphQL experience (Nice to have)
Foundational Certifications: BTL1, ISC2 CC, Network+, Security+, CCNA Security, or equivalent (Highly Valued)
Advanced Certifications: GCIH, GCIA, CISSP, CCNP, or equivalent (Considered a Plus)
This role may require flexibility to be on-call outside of standard working hours to address technical issues as needed.
What Makes Cloudflare Special?
We’re not just a highly ambitious, large-scale technology company. We’re a highly ambitious, large-scale technology company with a soul. Fundamental to our mission to help build a better Internet is protecting the free and open Internet.
Project Galileo: Since 2014, we've equipped more than 2,400 journalism and civil society organizations in 111 countries with powerful tools to defend themselves against attacks that would
About the Company
Cloudflare, Inc. (NYSE: NET) is the leading connectivity cloud company. It empowers organizations to make their employees, applications and networks faster and more secure everywhere, while reducing complexity and cost. Cloudflare’s connectivity cloud delivers the most full-featured, unified platform of cloud-native products and developer tools, so any organization can gain the control they need to work, develop, and accelerate their business.
Powered by one of the world’s largest and most interconnected networks, Cloudfla...
Know more