Lead Operational Engineer L3

at  The Emirates Group

Dubai, دبي, United Arab Emirates -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate15 Jun, 2024Not Specified16 Mar, 2024N/AGood communication skillsNoNo
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

Job Purpose: At Emirates, we believe in connecting the world, to and through, our global hub in Dubai and in constantly innovating to ensure our customers ‘Fly Better
’.
Our Cyber Defence Operations team is looking to urgently hire a dynamic and
experienced
Lead Operational Enginee
r - Platform/Endpoint Security - L3
to join our team.
Our Lead engineer is expected to lead,
investigate
and manage complex cybersecurity incidents as well as manage escalations from security operations and investigate intrusions of all anomalous and misuse activities on hosts and networks. Additionally they manage the critical incidents and
provide
deep
expertise
to guide engineers and ensure a robust security posture to protect the organisation. You will also be accountable for threat detection, identification, prevention, and reporting of cyber-attacks
.

What you will do:

  • Manage critical incidents and challenges as the focal point of contact for major incidents. Coordinate with other departments during critical incidents and drive post-incident reviews and formulate preventive strategies.
  • Detect, identify , and re spond to possible cyber-attacks, intrusions, anomalous and misuse activities as well as evaluate incident triage activities to ensu re opti mum incident resolution including the ownership of escalated incidents.
  • Analyse network traffic and system data to detect potential threats to resources and provide recommendations for remediation. Conduct analysis that encompasses defining the scope, urgency, and potential impact.
  • Perform correlation of security incidents and events to build threat detection and prevention capabilities, baselining network traffic and host activity across the enterprise.
  • Manage and document the incident throughout its cycle, including tracking and documenting incidents from initial detection through final resolution and the update the knowledge bases, preventative controls, and standards operating procedures.
  • Executing incident trend analysis, reporting and assessing the impact on data and infrastructure as a result of cyber incidents as well as leading security operations, responding to feedback from internal IT departments, business and audit operational performance against the defined metrics and goals.Collaborate with intelligence analysts to correlate threat assessment data and recommend methods to enhance defence capabilities as well as liaising with the content Engineering Team to identify and implement automation and service improvement programs to manage security operations efficiently.

  • Specific Knowledge and Skills relevant for the role of to
    Enginee
    r - Platform/Endpoint Security - L3
    The following are critical skills required to be successful in this role:

  • Designing and architecting robust security infrastructure that integrates endpoint firewalls, CASB, and mail filtering solutions seamlessly across the organization’s network.

  • Creating advanced and granular security policies for endpoint firewalls, CASB, and mail filtering systems, customizing rules to protect against evolving threats and compliance requirements.
  • Employing advanced monitoring tools and techniques to analyse traffic, logs, and events generated by endpoint firewalls, CASB, and mail filtering systems, conducting sophisticated analysis for threat detection.
  • Leading incident response efforts related to these security platforms, conducting in-depth forensic analysis, understanding attack vectors, and formulating strategies to prevent future occurrences.
  • Ensuring seamless integration and compatibility between endpoint firewalls, CASB, and mail filtering solutions within the broader security ecosystem, including SIEM and other security tools.
  • Ensuring configurations, policies, and activities across these platforms align with industry standards, regulatory compliance (such as GDPR, HIPAA), and organizational security requirements.

  • Qualifications & Experience: What you will bring:
    Qualifications:
    Degree or Honours (12+3 or equivalent)
    Computer science, Information Systems, Engineering, Telecommunications, or other related scientific or technical disciplines.
    Experience:
    · Minimum 5 years in Information Technology and CyberSecurity
    · Experience working in cross-functional and interdisciplinary teams to solve complex problems.
    · Experience in operating systems, networks, databases, and web application security with a focus on advanced preventative capabilities. Hands-on experience in technical analysis with a focus on cyber threats.
    · Experience analysing network traffic and host activities for potential attack vectors and developing mitigation strategies.
    · Experience in advanced technical analysis.
    · Experience in gathering a predictive understanding of adversarial strategies, priorities, and overlapping interests.
    · Experience in technical writing such as event bulletins, cyber digests, and quarterly summary reports.
    Knowled
    ge/skills
    :
    · Threat Detection and Response (CSOC): Expertise in threat intelligence and advanced threat detection.
    · Infrastructure Protection: Mastery over network security architecture and advanced intrusion prevention systems.
    · Identity: Deep understanding of identity governance and sophisticated IAM solutions.
    · In-depth knowledge of cyber threats and understanding of enterprise IT and Cybersecurity operational environments.
    · Ability to evaluate threat actors based on motivation and common TTPs
    ·
    Leadership Role: Yes
    Salary & Benefits: Join us in Dubai and enjoy an attractive tax-free salary and travel benefits that are exclusive to our industry, including discounts on flights and hotels stays around the world. You can find out more information about our employee benefits in the Working Here section of our website www.emirates.com/careers. Further information on what’s it like to live and work in our cosmopolitan home city, can be found in the Dubai Lifestyle section

Responsibilities:

  • Manage critical incidents and challenges as the focal point of contact for major incidents. Coordinate with other departments during critical incidents and drive post-incident reviews and formulate preventive strategies.
  • Detect, identify , and re spond to possible cyber-attacks, intrusions, anomalous and misuse activities as well as evaluate incident triage activities to ensu re opti mum incident resolution including the ownership of escalated incidents.
  • Analyse network traffic and system data to detect potential threats to resources and provide recommendations for remediation. Conduct analysis that encompasses defining the scope, urgency, and potential impact.
  • Perform correlation of security incidents and events to build threat detection and prevention capabilities, baselining network traffic and host activity across the enterprise.
  • Manage and document the incident throughout its cycle, including tracking and documenting incidents from initial detection through final resolution and the update the knowledge bases, preventative controls, and standards operating procedures.
  • Executing incident trend analysis, reporting and assessing the impact on data and infrastructure as a result of cyber incidents as well as leading security operations, responding to feedback from internal IT departments, business and audit operational performance against the defined metrics and goals.Collaborate with intelligence analysts to correlate threat assessment data and recommend methods to enhance defence capabilities as well as liaising with the content Engineering Team to identify and implement automation and service improvement programs to manage security operations efficiently


REQUIREMENT SUMMARY

Min:N/AMax:5.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Software Engineering

Graduate

Proficient

1

Dubai, United Arab Emirates