Frontend software enginee...
Cribl, Inc., Marylebone, City of Westminster
- Full time
- Temporary
Apply on company site
Digital Release Train Eng...
NatWest Group, St James, City of Westminster
- Full time
- Permanent
Apply on company site
SAP Data & Analytics Lead
Infoplus Technologies UK Ltd, City of Westminster
- Full time
- Permanent
Apply on company site
Risk Director, IT Strateg...
Intercontinental Exchange, City of Westminster
- Full time
- Permanent
Apply on company site
Level 5 Data Engineering ...
DWP Digital, Chelsea, Greater London
- Part time
- Temporary
Apply on company site
Intapp Application Specia...
Mishcon de Reya, City of Westminster
- Full time
- Permanent
Apply on company site
Software Engineer (TypeSc...
TrustFlight, City of Westminster
- Full time
- Permanent
Apply on company site
Lead Software Engineer
TrustFlight, City of Westminster
- Full time
- Permanent
Apply on company site
Lead Product Manager (Dat...
ITV Consumer Limited 2024, City of Westminster
- Full time
- Permanent
Apply on company site
Senior Marketing Data Man...
SAGE GROUP PLC, Matthewsgreen, Wokingham
- Full time
- Permanent
Apply on company site
European MX Service Netwo...
Samsung Group, Ottershaw, Surrey
- Full time
- Permanent
Apply on company site
Tech Risk and Controls Le...
JPMorgan Chase & Co., City of Westminster
- Full time
- Permanent
Apply on company site
Audit Manager - Cloud Tec...
JPMorgan Chase & Co., City of Westminster
- Full time
- Permanent
Apply on company site
SAP Functional Consultant
NTT DATA UK Ltd., Bunhill, Islington
- Full time
- Permanent
Apply on company site
Machine Learning Engineer...
Amazon.com, Inc, City of Westminster
- Full time
- Graduate programme
Apply on company site
Infrastructure & Services...
Monsoon, Notting Hill, Kensington and Chelsea
- Full time
- Permanent
Apply on company site
Cyber Security Engineer
BAE Systems, Frimley, Surrey
- Full time
- Permanent
Apply on company site
Rust Developer / Promoter
Collabora Ltd, City of Westminster
- Full time
- Temporary
Apply on company site
Data Architect/Data Model...
Korn Ferry, St Luke's, Islington
- Full time
- Contract
Apply on company site
Front End Developer
Mozaic Services Limited, City of Westminster
- Full time
- Temporary
Apply on company site
You have 792 jobs to review
That's a lot to get through.
Most jobseekers use around 4 filters to sharpen their results and avoid endless scrolling.
Why not save time and refine your search with these filters?
Frontend software engineer (React)
Salary not available. View on company website.
Cribl, Inc., Marylebone, City of Westminster
- Remote working
- Full time
- Temporary
Posted today, 12 Sep
Job ref: 2f1468c182de4720b056871163cea4ec
Full Job Description
The Senior Security Operations Engineer will be a pivotal member of Cribl's Information Security team, primarily responsible for strengthening our security posture through robust security operations and advanced threat detection. You will lead security incident management, triage, and investigations, and be instrumental in developing innovative solutions to remediate current threats and proactively prevent future attacks. A key aspect of this role will be designing, implementing, and optimizing detection logic to identify sophisticated threats across our environment. You will partner closely with Product Security, IT, and Legal teams, and report to the Chief Information Security Officer.,
- Monitoring security events and alerting via our security tooling including MSSP, SIEM, AI, and CSPM tooling to identify and triage potential threats
- Developing, implementing, and maintaining high-fidelity detection rules and alerts within SIEM and other security platforms (e.g., EDR, Cloud Security tools) based on threat intelligence, MITRE ATT&CK framework, and identified risks
- Conducting continuous tuning and optimization of existing detection logic to reduce false positives and improve detection efficacy
- Responding to issues identified by our Cribl employees
- Acting as a security incident response lead, including leveraging and improving detection capabilities during investigations
- Building, enhancing, and managing security playbooks, incorporating detection engineering best practices
- Conducting security assessments of corporate assets through vulnerability testing and threat hunts, and purple team activities, with a focus on identifying detection gaps and opportunities
- Performing both internal and external security reviews of corporate properties e.g. the corporate website and enterprise applications
- Leading security incident response tabletop exercises
- Continuing to evolve and champion the use of Cribl products in our security tech stack to enhance detection, analysis, and response capabilities
- Collaborating with threat intelligence teams to integrate new indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs) into detection strategies
- Experience with SIEM platforms like Panther is a plus and its detection capabilities
- Familiarity with Wiz and cloud native security tooling for detection in AWS, Azure, or GCP
- Relevant certifications in cloud security or incident response (e.g., SANS GIAC certifications) Bring Your Whole Self Diversity drives innovation, enables better decisions to support our customers, and inspires change for the better. We're building a culture where differences are valued and welcomed, and we work together to bring out the best in each other. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or any other applicable legally protected characteristics in the location in which the candidate is applying. Interested in joining the Cribl herd? Learn more about the smartest, funniest, most passionate goats you'll ever meet at cribl.io / about-us. Seniority level Seniority level
- Knowledge of, and experience in, working with modern security principles e.g. security data lakes, detections as code, EDR, zero trust networking, and other security tooling, as well as demonstrated experience with incident response and management.
- Proven experience in developing, deploying, and maintaining detection rules (e.g., Sigma, YARA, Splunk SPL, KQL) across various security platforms.
- Strong understanding of common attack frameworks (e.g., MITRE ATT&CK) and how to map detections to TTPs
- Understanding of authentication and authorization schemes such as SAML, OpenID, OAuth2, and SCIM
- Experience scripting / coding in at least one of the following languages : Python, NodeJS, Ruby, Bash
- Be the go-to technical subject matter expert on security, compliance, and assurance topics
- Excellent communication skills and ability to communicate ideas to technical and non-technical audiences
- Comfortable with ambiguity, have a strong analytical acumen, self-motivated, able to work cross functionally