Job Details
Security Engineer IDo you love engineering operations of critical security systems and services Expedia Group Security Solutions Engineeringteam is searching for a top-notch Security Operations Engineer who could deliver on primary objectives like configure, manage, monitor critical security systems and tools in various security domains likes Web Content Filtering, Data Loss prevention, Endpoint Detection & Response, Vulnerability management, edge protection, SIEM and SOAR platformsAlso drive recurring operational upkeep tasks like monthly patching, tool monitoring reporting, user access reviews, cloud compliance effortsUnderstanding of our large, complex technical environment and has the ability to resolve operational issues within the system, also take action on security configuration issues on various security toolsWho you are:Security Incident response and handling like Log4J security event, patching critical systems, change management process, using ITSM tools for proper tracking, top notch documentation for on call guideRCA tracking for all security events, tool outages and other troubleshootingEmail and instant messaging support for critical tool alerts and customer queriesKnow how on what is PCI environment, what are various PCI-DSS standards and ensure complianceSystem, and tool infrastructure upgrade, asset patching with minimal outages and proper documentationSecurity tools operational support - Operational upkeep, platform monitoring of all security tools Identifying security agent coverage, troubleshooting issues with security agent, checking logs/system logsWhat you'll do:Web Content Filtering - Seamless Internet protection, On premise and cloud based web proxiesEndpoint detection and response - EDR Antimalware Agents, Advanced threat protection, Data Loss PreventionVulnerability Management - DC and cloud asset vulnerability patching and complianceThreat Intelligence - Intelligence feeds from sources like Recorded FutureThreat detection - User Behaviour Analysis and investigationSIEM & SOAR solutions and integrationsContainer security and discoveryNetwork security - Web Application Firewall, Intrusion Prevention, network based spyware, Antimalware detection and blocking, AWS Guard DutySecurity audit and Orchestration tools