Verified today
Senior Security Engineer
About the role
The Senior Security Engineer role sits within Arctic Wolf’s Internal Security Operations team and supports the implementation and operation of security technologies within the Security Operations Center (SOC), including security detection content development to protect Arctic Wolf. Day-to-day work involves developing, mapping, testing, and deploying threat detections and risk-based alerting in a SIEM, analyzing security events across network, endpoint, and log sources, supporting incident escalations, and collaborating with Cyber Operations Engineers and other security teams to deploy and operationalize technical security capabilities. The role also assists in designing, developing, and deploying Agentic AI SOC platform capabilities. This is a full-time position based in Bengaluru, India.
What you’ll do
- Develop, map, test, and deploy threat detections, correlations, and risk-based alerting within a SIEM
- Assist and review creation of predictions for the future of the threat landscape and goals and methods of threat actors
- Analyze incoming security events based on network, endpoint, and log sources expediently, consistently, and accurately
- Provide support for security incident escalations as needed
- Demonstrate excellent communication and negotiation skills to articulate proposed solutions to the internal security team and other stakeholders
- Implement and configure off-the-shelf security technologies in the Arctic Wolf internal environment
- Continually strive for improved integration between technologies to enhance capabilities from existing investments
- Assist in design, development, and deployment of Agentic AI SOC platform capabilities
What you’ll bring
- Bachelor’s degree in computer science, Information Systems, Engineering, or related technical field, or equivalent experience
- 5+ years of experience in security and infrastructure engineering, including assessing and escalating to vendors for troubleshooting purposes
- Strong understanding of adversary tactics, techniques, and procedures using the MITRE ATT&CK framework and other attack methodologies
- Good understanding of software development or scripting and API integration
- Good experience deploying security technologies such as SIEM, SOAR, content filters, Threat Intelligence Platform, EDR, and Threat Detection/MITRE ATT&CK mapping
- Familiarity with network protocols and operating systems including Windows, Linux, and Unix
- Knowledge of industry-adopted frameworks and methodologies (MITRE ATT&CK, CIS, NIST, ISO 27002:2013, PCI-DSS)
- Strong in-depth technical knowledge of security engineering, computer and network security, authentication, security protocols, and applied cryptography
Nice to have
- Strong familiarity with cloud infrastructures and managing Security Information Event Management solutions, with AWS or Microsoft Azure Cloud certification considered a strong plus
- Strong analytical and problem-solving skills
- Understanding of all phases of incident response
- Ability to perform assessment of cybersecurity incidents to identify root cause, respond, and recover the environment
Skills
Benefits
- Equity for all employees
- Flexible annual leave, paid holidays and volunteer days
- Training and career development programs
- Comprehensive private benefits plan including medical insurance for you and your family, life insurance (3x compensation), and personal accident insurance
- Fertility support and paid parental leave
Education
A bachelor’s degree in computer science, Information Systems, Engineering, or related technical field; or equivalent experience.