Principal Security Operations Engineer at DEFEND Limited
Auckland City, Auckland, New Zealand -
Full Time


Start Date

Immediate

Expiry Date

29 Jun, 25

Salary

0.0

Posted On

30 Mar, 25

Experience

4 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Business Skills

Industry

Information Technology/IT

Description
  • Make an Impact: Provide first-class cybersecurity analysis and reporting. Apply your expertise to enhance the security posture of our government and enterprise customers.
  • Career Growth: Join one of New Zealand’s top security operations teams and work with cutting-edge security technologies from vendors such as CrowdStrike, Palo Alto, Qualys, and Microsoft. Engage in training, pass exams, and benefit from working alongside seasoned professionals focused solely on cybersecurity.

SPECIFIC REQUIREMENTS

  • Experience in Cybersecurity roles e.g. Analyst and SOC roles. (4 year +) and/or other relevant Cybersecurity experience.
  • Relevant Cybersecurity qualifications (e.g. Sans, CompTIA, Microsoft).
Responsibilities

ABOUT THE ROLE

As the Principal Security Operations Engineer, you will lead the charge in delivering cybersecurity excellence for our valued customers. In this role, you will oversee the monitoring and analysis of network traffic, identify and mitigate security threats, and ensure our customers’ IT infrastructure remains secure and resilient. Your expertise will be instrumental in detecting and responding to security incidents, conducting vulnerability assessments, and implementing robust security measures.
You will lead the team in active monitoring of our clients and spearhead incident investigation and response, utilizing Endpoint Protection, Firewalls, and Security Monitoring tools. Your leadership and deep technical knowledge will be essential in guiding the team and enhancing our overall security posture.

WHAT YOU’LL BE DOING

  • Regularly review events and alerts from a range of customers, looking for signs of compromise.
  • Flag noisy and underperforming alerts for improvement, and work to track and develop more robust detections.
  • Help build out our detection and response playbooks, adding new insights and automations to our investigation and incident response procedures.
  • Identify gaps in existing detection or response playbooks, ensuring they are always up-to-date and effective.
  • Provide SME support during Security Incident Response and Post-Mortem activities.
  • Train and develop junior team members and work to develop skills in the monitoring team.
  • Stay up to date with the latest security trends and threats.
Loading...