Senior IT Security Engineer

Responsibilities

  • Lead implementation and management of endpoint security platforms (EDR/XDR) including tuning, threat detection and response improvements

  • Work closely with SOC team to investigate alerts, respond to incidents and enhance detection rules and playbooks

  • Analyze and act on Indicators of Compromise (IoCs) using threat intelligence to proactively detect and mitigate threats

  • Manage and optimize DLP solutions to prevent data exfiltration across endpoints and platforms

  • Implement and maintain platform security controls including DNS security, web filtering and browser security hardening

  • Perform continuous endpoint hardening, vulnerability remediation and attack surface reduction

  • Monitor and respond to DDoS alerts and network-based threats, coordinating with infrastructure teams

  • Lead IAM platform operations including SailPoint IGA, PAM solutions and endpoint privilege management

  • Conduct access reviews and regulatory workflows for privileged users

  • Collaborate with risk, cybersecurity, IT and business teams to enforce RBAC and least-privilege access policies

  • Ensure security controls align with policies and regulatory requirements (e.g., BNM FinTips)

  • Support incident response activities including containment, eradication and recovery

  • Evaluate and implement new security tools, automation and improvements to enhance operational efficiency

  • Maintain technical documentation and operational procedures for security platforms

Requirements

  • Minimum 3–5 years of experience in cybersecurity engineering or operations

  • Hands-on experience with EDR/XDR platforms including detection tuning and incident handling

  • Strong experience with DLP, DNS security and endpoint/browser security controls

  • Experience working with SOC team, SIEM tools and threat intelligence feeds

  • Understanding of IoCs, attack techniques and threat hunting concepts

  • Familiarity with network security and DDoS mitigation

  • Experience in vulnerability management and endpoint hardening

  • Experience in IAM/IGA administration, privileged access or enterprise identity management

  • Hands-on experience with PAM solutions and endpoint privilege management is a plus

  • Ability to lead compliance programs, access review initiatives and IAM platform improvements

  • Basic scripting/automation skills (PowerShell, Python) is a plus

  • Strong analytical and problem-solving skills

Similar jobs