8 авг

cyber security engineer in information security

ориентир по рынку
вакансия зп не указана
в среднем 351 041 ₽
Загрузи резюме, чтобы видеть мэтчи с вакансией

подготовьтесь к отклику

ai-инструменты

Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме

описание

SiGMA World operates in the technology, information, and media industry. Sigma Group maintains a multi-site environment supported by Microsoft 365, Cloudflare, network infrastructure, Linux servers, monitoring systems, and third-party SaaS platforms.

задачи

  • Own and continuously improve the Microsoft 365 security posture and Secure Score;
  • Configure and maintain Defender for Office 365 protections, including anti-phishing, anti-spam, Safe Links, Safe Attachments, SPF, DKIM, and DMARC;
  • Manage Conditional Access, MFA, privileged access controls, and identity security policies;
  • Implement and maintain Purview DLP across Microsoft 365 services;
  • Manage Defender for Endpoint and Intune security policies across Windows, macOS, and mobile devices;
  • Review risky applications, OAuth permissions, guest access, and privileged accounts;
  • Administer Cloudflare security controls, including WAF, custom rules, rate limiting, bot management, DDoS protection, and SSL/TLS;
  • Maintain Zero Trust access policies, Gateway filtering, secure tunnels, DNS security, and protection against misconfigurations;
  • Investigate WAF alerts and security events while balancing protection with business requirements;
  • Configure and review firewall rules, segmentation, IDS/IPS, VPN access, wireless security, and remote connections;
  • Perform regular security reviews and remove unnecessary exposure;
  • Secure office and event networks;
  • Review cloud security configurations, including IAM, security groups, logging, and encryption;
  • Define and review Linux security baselines together with DevOps;
  • Review server configurations, access controls, logging, and patch status;
  • Support vulnerability remediation and ensure security controls are properly implemented;
  • Review web-facing and containerised workloads, including TLS, secrets management, and least-privilege access;
  • Run vulnerability scans across servers, endpoints, networks, and cloud services;
  • Prioritise findings based on risk and business impact, track remediation, and validate fixes;
  • Perform targeted security testing using Nmap, Burp Suite, Metasploit, and OWASP methodologies;
  • Coordinate external penetration testing and remediation activities;
  • Manage and improve Log360 SIEM coverage, including onboarding log sources and tuning alerts;
  • Use Site24x7 and Log360 to monitor security events and investigate anomalies;
  • Act as a first responder for security incidents through detection, investigation, containment, and recovery;
  • Perform log analysis, preserve evidence, and conduct post-incident reviews;
  • Translate threat intelligence into practical security improvements;
  • Maintain security policies and ensure they reflect real system configurations;
  • Support risk assessments, security audits, and GDPR-related requirements;
  • Maintain alignment with ISO 27001, NIST CSF, and CIS Controls;
  • Support security awareness training and phishing simulations;
  • Review security requirements for new SaaS vendors and integrations;
  • Prepare monthly security posture reports covering incidents, vulnerabilities, compliance, and risks;
  • Maintain a security roadmap with priorities and expected risk reduction;
  • Communicate security risks and recommendations clearly to management;
  • Review Microsoft 365 security posture and deliver a hardening plan during the first three months;
  • Audit Cloudflare configuration and DNS security during the first three months;
  • Complete firewall and network security reviews during the first three months;
  • Establish a Linux security baseline with DevOps during the first three months;
  • Improve Log360 coverage and alert quality during the first three months;
  • Deliver the first vulnerability assessment cycle with tracked remediation during the first three months.

требования

  • 3–5+ Years of experience in cybersecurity, security engineering, or security-focused infrastructure roles;
  • Hands-on experience securing Microsoft 365 environments;
  • Practical experience with Cloudflare or similar Zero Trust and edge security platforms;
  • Strong firewall and network security knowledge, including Meraki, Ubiquiti, Fortinet, pfSense, or similar;
  • Working knowledge of Linux security, configuration, and troubleshooting;
  • Experience with SIEM platforms and security alert investigation;
  • Experience with vulnerability scanning and remediation processes;
  • Understanding of ISO 27001, NIST CSF, and CIS Controls;
  • Ability to communicate technical risks clearly to non-technical stakeholders;
  • Strong written and spoken English;
  • Nice to have: PowerShell, Microsoft Graph, Python, Bash, AWS/Azure security, penetration testing or red-team exposure, OWASP Top 10, container and CI/CD security, distributed multi-office environments, regulated industries such as iGaming, fintech, or events, CompTIA Security+ / CySA+, Microsoft SC-200 or SC-300, ISO 27001 Lead Implementer / Auditor, OSCP, CEH, CISSP, or CISM.

условия

  • Occasional travel to Malta.

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайтесь: это мошенничество.

Про зарплаты

Анонимные данные по зарплатам и грейдам.
Можно сверить вилку с рынком.

Посмотреть зарплаты

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайтесь: это мошенничество.