Security Engineer (SIEM/SOC)
28th May 2019
Welwyn Garden City
£40000 - £65000
This job has now expired please search on the home page to find live IT Jobs.
About The Cyber Security Team
Our cyber security team are the eyes and ears of our organisation. We use the latest technologies to increase visibility and protection of systems, services and data. To do this we need to stay ahead of the latest threats and continuously improve our tooling, techniques, and processes.
The opening date for this role is 19th March 2019 and the closing date will be 16th April 2019.
Responsible for developing and running security processes day-to-day for the Tesco Group, we're continually working to step change security capability to further enhance the protection and controls that we offer for our customers and colleagues across the UK, Europe and Asia, and we're looking to add great people to our growing team.
We're looking to add great people to our growing team because we believe that skilled and passionate people are our greatest asset in reducing risk to our business and customers. We encourage and support continual development and learning, and recognise the importance of keeping up with changes in technology and an evolving threat landscape.
Communication is key - working collaboratively with our software and systems engineering teams to support security throughout the development lifecycle, as well as to build proactive monitoring and responses to security events.
You will be responsible for
The Role - Security Engineer
You will focus on improving the telemetry, processes and tools for Tesco's SIEM system and SOC team. This role requires proven experience with security telemetry, security intelligence, anomaly hunting and incident response.
The Engineer must leverage intuition, security knowledge and a broad of array of tools and advanced security techniques to help us uncover and stay alert to malicious activity. Bilaterally, we're building a threat hunting capability to feed back into our telemetry and processes.
You will need
Key Skills and Experience
Experience performing technical analysis involving security event data and evaluating malicious activity.
Knowledge of TCP/IP and related network protocols: knowledge of standard network protocols like TCP, ARP, ICMP, DHCP, DNS, HTTP, SNMP etc., and accompanying protocol/packet analysis/manipulation tools.
Knowledge of information security protection/detection and authentication systems (firewalls, IDS, IPS, anti-virus, etc).
Knowledge of commonly-accepted information security principles and practices, as well as techniques attackers would use to identify vulnerabilities, gain unauthorized access, escalate privileges and access restricted information.
Knowledge of current operating environments (Microsoft, Linux, & OS X).
Development / Configuration experience with any industry leading SIEM platform.
Experience of development using a programming language in a DevOps environment using agile techniques.
Exceptional analytical and critical thinking, willingness to challenge status quo.
Excellent interpersonal skills.
Advanced written and oral communications, self-motivator.
Team player and independent worker, highly adaptive.
Desirable Tools / Technologies:
Splunk (including Enterprise Security, UBA and CIM)
Devops toolsets - Github, Jenkins, Jira etc.
Academia: College degree or equivalent work experience.
Desirable Certifications: SSCP, GSEC, GCIH, GCIA or other industry relevant certifications.
Tesco Technology is not your standard IT Department, we're a Technology organisation driving change and delivering value by building great products for our customers and colleagues every day.
The retail environment is changing, brought about through developments in technology. The growth of internet shopping, mobile and convenience is changing the way customers want to shop. As a retailer, the customer is at the heart of everything we do and Technology is no different; our aim is to focus on serving customers wherever, whenever and however they want to shop with us.
Our team is innovative, highly-skilled, agile, passionate and fun. If you're looking for an environment to create cutting edge solutions which make a difference to millions of customers and colleagues across the globe, then this is the place for you.
The position will be based within our technology centre in Welwyn Garden City.
Please note: A UK Bank Account is a necessary requirement
What's in it for you
We offer excellent benefits that help make Tesco a great place to work. These include but aren't limited to:
An annual bonus scheme which you can achieve up to 3.5% of base salary
Colleague Clubcard (including a 2nd card for a family member) after 6 months service with 10% off most purchases at Tesco
Holiday starting at 25 days plus a personal day
A retirement savings plan - 4%-7.5% contribution rate
Life Assurance - 5 x contractual pay
Buy As You Earn Scheme
Save As You Earn Scheme
Deals & Discounts through Tesco including Tesco Mobile & Tesco Bank
Deals and Discounts through many other external businesses