Incident Response Engineer, Security Team
4 giorni fa
Are you ready to power the World's connections?
If you don't think you meet all of the criteria below but are still interested in the job, please apply. Nobody checks every box - we're looking for candidates that are particularly strong in a few areas, and have some interest and capabilities in others.
About The Role
This position will build a working leader reporting to the security manager, who is responsible for creating a collaborative environment between Kong Inc. Security and all impacted business/engineering teams by working together in the effective incident detection, response, recovery, identification, and protection. Stakeholder management and clean thinking under pressure are critical requirements for the role, together with a strong passion for Cyber Security and its fantastic ability to make a real difference in protecting customers, partners and employees.
The company's leadership team, and a cross-functional team of skilled engineers from various perspectives, all working with a singular focus of maintaining our customer's trust. You'll be exposed to the reality of how Kong functions on a technical and process level and will build a comprehensive base of knowledge around how it all works together. In doing so, you'll be playing a role in keeping Kong secure and compliant, bringing security to our company's forefront.
What You'll Be Doing
- Execute, develop and document incident handling guides and processes for Kong
- Prioritizes events using existing tools to correlate data to reduce false positives and detect threats
- Analyze and tune security alerts and interpret events, as well as create new signals based on signatures and behavioral activities
- Respond to security incidents and perform forensics on IT systems as necessary.
- Guide/lead mitigation strategies for identified vulnerabilities and threats
- Design, automate and maintain a portfolio of security alerts, automated actions, and escalation workflows supporting a high-performing 24/7 incident response capability.
- Conduct threat hunting activities, anticipate future threats, and maintain forward-thinking strategies for tools/technology/processes that combat sophisticated threat actors.
- Assist with implementation of counter-measures or mitigating controls
- Develop and maintain Incident Response capabilities in public cloud environments
- Prepare incident reports of analysis methodology and results.
- Recognize potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information
- Partner with key stakeholders and communicate effectively to improve preparation, identification, analysis, containment, and post-mortem activities feedback loop.
- Develop monthly reporting dashboards and metrics on incidents and response capabilities
- Prepare executive summaries and conduct briefings on significant investigations.
What You'll Bring
- Experience in crisis management, namely in preventing incidents from becoming a crisis
- Insight of using incidents as opportunities by leveraging Incidents to drive innovation, situation awareness, and fixes
- Passion for automation, delegation, and scalability via playbooks and highly effective processes
- Drive for automating processes and workflows to detect, contain and eliminate active malicious agents
- Expertise in building and operating security information/event management systems (SIEM), centralized logging, and enrichment solutions (Endpoint protection/detection, Panther, Crowdstrike, AWS Security Hub, codebase infrastructure, build infrastructure).
- Practical experience working with cloud technologies; ability to build and deploy a solution using Terraform.
- Experience with building and deploying solutions (Ansible, Terraform)
- Competency in Linux, windows;
- Ability to automate workflows via Python or javascript scripting languages.
About Kong
Kong Inc., a leading developer of cloud API technologies, is on a mission to enable companies around the world to become "API-first" and securely accelerate AI adoption. Kong helps organizations globally — from startups to Fortune 500 enterprises — unleash developer productivity, build securely, and accelerate time to market. For more information about Kong, please visit or follow us on X @thekonginc.
-
Incident Response Engineer, Security Team
4 giorni fa
Milano, Lombardia, Italia KONG A tempo pienoAre you ready to power the World's connections?If you don't think you meet all of the criteria below but are still interested in the job, please apply. Nobody checks every box - we're looking for candidates that are particularly strong in a few areas, and have some interest and capabilities in others.About the Role:This position will build a working leader...
-
Senior Incident Response Security Engineer
4 giorni fa
Milano, Lombardia, Italia Prima A tempo pienoAre you looking for a new challenge?Fancy helping us shape the future of motor insurance?Prima could be the place for you.Since 2015, we've been using our love of data and tech to rethink motor insurance and bring drivers a great experience at a great price. Our story began in Italy, where we've quickly become the number one online motor insurance provider....
-
Cyber Security Incident Response Lead
2 giorni fa
Milano, Lombardia, Italia ServiceNow A tempo pienoCompany Description It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500. Our intelligent cloud-based...
-
security engineer
2 giorni fa
Milano, Lombardia, Italia ECIT SpA A tempo pienoChi siamo?Siamo una società dinamica, giovane e flessibile che opera da oltre 10 anni nel campo dell'Information & Communication Technology.Offriamo servizi e soluzioni altamente qualificati a partner e Clienti di livello Enterprise grazie ad un team smart composto da tecnici pluricertificati in grado di comprendere e soddisfare le esigenze che i progetti...
-
Milano, Lombardia, Italia A2A A tempo pienoChi cerchiamoPer la nostra sede diMilano – San Babilasiamo alla ricerca di una risorsa da inserire comeDigital Security Incident and Operations Specialistall'interno del teamDigital Security Solutions & IAM. La struttura ha lo scopo di garantire, nell'ambito del proprio perimetro di competenza, che le misure di sicurezza siano integrate nelle fasi di...
-
Milano, Lombardia, Italia Gruppo A2A A tempo pienoDescriptionChi cerchiamoPer la nostra sede di Milano – San Babila siamo alla ricerca di una risorsa da inserire come Digital Security Incident and Operations Specialist all'interno del team Digital Security Solutions & IAM. La struttura ha lo scopo di garantire, nell'ambito del proprio perimetro di competenza, che le misure di sicurezza siano integrate...
-
SOC Analyst L2
4 giorni fa
Milano, Lombardia, Italia Jobbit A tempo pienoMichael PageGestione e analisi di incidenti di sicurezza complessi (livello L2/L3), inclusa investigazione approfondita e root cause analysis.Monitoraggio avanzato tramite SIEM e piattaforme di correlazione eventi (es. Splunk, QRadar, Sentinel).Analisi di log provenienti da firewall, IDS/IPS, EDR, proxy, sistemi di autenticazione.Coordinamento delle...
-
Cloud Security Engineer
4 giorni fa
Milano, Lombardia, Italia Prima A tempo pienoAre you looking for a new challenge?Fancy helping us shape the future of motor insurance?Prima could be the place for you.Since 2015, we've been using our love of data and tech to rethink motor insurance and bring drivers a great experience at a great price. Our story began in Italy, where we've quickly become the number one online motor insurance provider....
-
Cloud Security Engineer
9 ore fa
Milano, Lombardia, Italia Prima A tempo pienoAre you looking for a new challenge?Fancy helping us shape the future of motor insurance?Prima could be the place for you.Since 2015, we've been using our love of data and tech to rethink motor insurance and bring drivers a great experience at a great price. Our story began in Italy, where we've quickly become the number one online motor insurance provider....
-
Cyber Security Senior Consultant
9 ore fa
Milano, Lombardia, Italia Horizon Security A tempo pienoAl fine di supportare il continuo trend di crescita del business aziendale, Horizon Security è alla ricerca di una figura di:Cybersecurity Senior ConsultantLa persona sarà inserita al nostro interno e prenderà parte al team impegnato in attività di consulenza su clienti nazionali ed internazionali di diversi settori.Cerchiamo profili che possano prendere...