Principal Information Security Engineer
Prague (Hlavní město Praha) Infra / Networks / Telecom
Job description
Ref: req48820
SUMMARY:
Principal Information Security Engineer works with Cyber Defense Center and other Security teams on security incident prevention, hunting, detection and response in large and diverse DP DHL IT environment. We are currently hiring blue and red team members - the first should be part of so called Fire Brigade, the other should do penetration tests and attack simulations.
RESPONSIBILITIES:
• Proactively monitor information security events, trends and vulnerabilities
• Execute threat hunting, attack simulations and security reviews
• Participate at 3rd-5th level on security incident response (IR) and remediation
• Cooperate closely with various IT Services and Business IT teams to discover and resolve operational
security issues
• Work on implementation and maintenance of security solutions
• Participate on Information Security Programs
• Participate on development and maintenance of Information Security Policies, Standards and
Guidelines, Procedures and Processes as well as on compliance efforts
• Present technical material in a clear, organized briefing to a mix of technical and non-technical
personnel
• Assist and train junior team members
Desired profile
REQUIREMENTS:
• Experience in an IT security area
• Very good knowledge of:
o System Security (Windows, UNIX/Linux)
o Network Security (incl. ability to analyze packet captures)
o IT Infrastructure & Solution Architecture
o Incident Management
• Good understanding of:
o Information Security topics
o Security Technologies (e.g. Antimalware, Sandboxing, AntiDDoS)
o Cyber Attack principles
• Essential Scripting & Data Analytics skills
• Communication and time-management skills
• Ability to work under the pressure and to do overtime
• Proficient in spoken and written English
NOT REQUIRED BUT ADVANTAGE:
• Knowledge of (Web) Application Security and/or Threat Intel (TI) topics
• Ability to perform Malware and/or Forensic Analyses
• Ability to do Penetration Tests
• Certifications like GIAC family, CISSP, CEH, CompTIA Security+ or similar