Incident Response Engineer, Security Team
3 giorni fa
Are you ready to power the World's connections? If you don't think you meet all of the criteria below but are still interested in the job, please apply. Nobody checks every box - we're looking for candidates that are particularly strong in a few areas, and have some interest and capabilities in others. About the Role This position will build a working leader reporting to the security manager, who is responsible for creating a collaborative environment between Kong Inc. Security and all impacted business/engineering teams by working together in the effective incident detection, response, recovery, identification, and protection. Stakeholder management and clean thinking under pressure are critical requirements for the role, together with a strong passion for Cyber Security and its fantastic ability to make a real difference in protecting customers, partners and employees. The company's leadership team, and a cross-functional team of skilled engineers from various perspectives, all working with a singular focus of maintaining our customer's trust. You'll be exposed to the reality of how Kong functions on a technical and process level and will build a comprehensive base of knowledge around how it all works together. In doing so, you'll be playing a role in keeping Kong secure and compliant, bringing security to our company's forefront. What you'll be doing Execute, develop and document incident handling guides and processes for Kong Prioritizes events using existing tools to correlate data to reduce false positives and detect threats Analyze and tune security alerts and interpret events, as well as create new signals based on signatures and behavioral activities Respond to security incidents and perform forensics on IT systems as necessary. Guide/lead mitigation strategies for identified vulnerabilities and threats Design, automate and maintain a portfolio of security alerts, automated actions, and escalation workflows supporting a high-performing 24/7 incident response capability. Conduct threat hunting activities, anticipate future threats, and maintain forward-thinking strategies for tools/technology/processes that combat sophisticated threat actors. Assist with implementation of counter-measures or mitigating controls Develop and maintain Incident Response capabilities in public cloud environments Prepare incident reports of analysis methodology and results. Recognize potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information Partner with key stakeholders and communicate effectively to improve preparation, identification, analysis, containment, and post‑mortem activities feedback loop. Develop monthly reporting dashboards and metrics on incidents and response capabilities Prepare executive summaries and conduct briefings on significant investigations. What you'll bring Experience in crisis management, namely in preventing incidents from becoming a crisis Insight of using incidents as opportunities by leveraging Incidents to drive innovation, situation awareness, and fixes Passion for automation, delegation, and scalability via playbooks and highly effective processes Drive for automating processes and workflows to detect, contain and eliminate active malicious agents Expertise in building and operating security information/event management systems (SIEM), centralized logging, and enrichment solutions (Endpoint protection/detection, Panther, Crowdstrike, AWS Security Hub, codebase infrastructure, build infrastructure). Practical experience working with cloud technologies; ability to build and deploy a solution using Terraform. Experience with building and deploying solutions (Ansible, Terraform) Competency in Linux, windows; Ability to automate workflows via Python or javascript scripting languages. About Kong Kong Inc., a leading developer of cloud API technologies, is on a mission to enable companies around the world to become "API-first" and securely accelerate AI adoption. Kong helps organizations globally - from startups to Fortune 500 enterprises - unleash developer productivity, build securely, and accelerate time to market. For more information about Kong, please visit or follow us on X @thekonginc. #J-18808-Ljbffr
-
WorkFromHome, Italia Amazon A tempo pienoSecurity Engineer I, Threat Hunting, Security Incident Response Team (SIRT) Job ID: | Amazon.com Services LLC Amazon’s Threat Hunting team is looking for a Security Engineer, Threat Hunting who is excited by the idea of searching for and uncovering undetected threat activities at petabyte scale. In this role, you will work alongside other Threat Hunting...
-
Incident Response Engineer
3 giorni fa
WorkFromHome, Italia Kong Inc A tempo pienoA leading developer of cloud API technologies is seeking a Cyber Security professional to enhance incident response capabilities. This role involves developing incident handling processes, responding to security incidents, conducting threat analysis, and automating workflows. Candidates should have experience with SIEM systems, cloud technologies, and...
-
CYBER SECURITY ENGINEER
4 settimane fa
WorkFromHome, Italia Lansol Gmbh A tempo pienoOverview CYBER SECURITY ENGINEER (L2/L3) In WIIT, società italiana di respiro internazionale quotata al segmento Star, abbiamo scelto di fare la differenza per i nostri clienti. Siamo leader nell’erogazione di servizi di Hosted Private e Hybrid Cloud per aziende con necessità di servizi di gestione di processi critici. Ricerchiamo valore in ogni cosa che...
-
OT Security Analyst
2 settimane fa
WorkFromHome, Italia Energent S.p.A. A tempo pienoIl Gruppo EIES , composto da Energent, I&M, Enway e Skienda è una realtà di consulenza e di prodotto consolidata nel mercato delle soluzioni e dei servizi ICT. Per ampliamento dell’organico ricerchiamo figura di OT Security Analyst - Incident Responder . L’OT Security Analyst – Incident Responder sarà parte integrante del Security Operations Center...
-
SOC Analyst L2/L3 — Incident Response
5 giorni fa
WorkFromHome, Italia Jobbit A tempo pienoAzienda leader nei servizi di cybersecurity cerca un professionista esperto per gestire incidenti di sicurezza complessi e monitorare sistemi avanzati. Offriamo modalità di lavoro ibrida con accesso a tecnologie all'avanguardia e percorsi di formazione continua. Requisiti comprendono laurea in STEM e 3-5 anni di esperienza in SOC. Se sei un esperto di...
-
CYBER SECURITY SPECIALIST
7 giorni fa
WorkFromHome, Italia Aeroporti di Roma A tempo pienoJob Description Il Gruppo Aeroporti di Roma, all’interno di Transformation & Technology nell’unità organizzativa ICT Security, è alla ricerca di: Cyber Security Specialist . Il team di Cyber Defence, all’interno dell’unità di ICT Security, è responsabile della definizione, del coordinamento e della gestione delle attività di protezione...
-
Remote Incident Manager — ITIL
2 settimane fa
WorkFromHome, Italia Herzum Software S.R.L. Unipersonale A tempo pienoAn IT consulting company in Italy is seeking an experienced Incident Manager to join their remote team. The candidate should have 2-3 years of experience in IT Service Management, with a solid understanding of ITIL processes. Responsibilities include managing incident resolution and communicating with stakeholders. A good command of both Italian and English...
-
Remote Incident Manager — ITIL
7 giorni fa
WorkFromHome, Italia Herzum Software S.R.L. Unipersonale A tempo pienoAn innovative IT consulting company is seeking an Incident Manager to join their remote team in Catania, Italy. The ideal candidate will manage and coordinate major incident resolutions, ensuring minimal business impact. This role requires 2-3 years of experience in IT Service Management, a solid understanding of ITIL processes, and strong communication...
-
SP2025-86 Senior System Engineer-Cyber-Sec
4 settimane fa
WorkFromHome, Italia Project S.r.l. A tempo pienoPer un nostro cliente in ambito trasporti, siamo alla ricerca di una figura professionale da inserire all'interno del team. Il profilo ideale deve avere questo: 1) Infrastrutture complesse e Data Center Progettazione e gestione di data center enterprise Ambienti mission critical, H24, alta affidabilità Consolidamento infrastrutturale Continuità operativa,...
-
SP2025-86 Senior System Engineer-Cyber-Sec
2 settimane fa
WorkFromHome, Italia Project S.r.l. A tempo pienoPer un nostro cliente in ambito trasporti, siamo alla ricerca di una figura professionale da inserire all'interno del team. Il profilo ideale deve avere questo: 1) Infrastrutture complesse e Data Center Progettazione e gestione di data center enterprise Ambienti mission critical, H24, alta affidabilità Consolidamento infrastrutturale Continuità operativa,...