Dein persönlicher KI-Karriere-Agent
Automating cloud, IT, and application workload monitoring with IaC and Python/Go. Public cloud security monitoring and incident response experience required. Hybrid work, discounted meal boxes.
Deine Match-Analyse
Warum dieser Job zu dir passt
Mögliche Lücken
Tipps für deine Bewerbung
Anforderungen
- Proven security monitoring and incident response in public cloud
- Experience with cloud SIEM & SOAR platforms, DDoS mitigation, preventing tools, and Layer-7 Web perimeter security
- Excellent programming (automation) skill with Python/Go
- AI coding assistants for Python scripts (security automation, data parsing)
- Proficiency writing detection rules (Sigma, KQL) with AI tools
- Understanding of network intrusion, containment, segregation techniques, Sandboxes, and ID/PS
- Ability to analyze disparate log sources and filter noise
- Good communication and reporting skills
- Command over log analysis stacks (ElasticSearch, Splunk/SumoLogic, Graylog)
- Open to working on-call in rotational shifts
- Meeting response time and incident closure metrics with documentation and updates
Aufgaben
- Mature logging and monitoring of cloud, IT, and application workloads using automation and IaC
- Filter, ingest, and optimize security-specific events from large log streams
- Conduct threat hunts against file-less malware and APTs using EDR, OS, and network telemetry
- Leverage specialized open-source tools for threat hunting
- Use AI coding assistants to write scripts for security automation and data parsing
- Build detection logic using AI coding assistants
- Use LLMs to summarize high-volume JSON logs
- Use LLMs to investigate and explain complex code snippets
- Develop advanced correlation and cross-correlation rules to detect sophisticated attacks and fraud
- Generate security metrics and reporting on incidents and SOC operation effectiveness
- Lead incident detection and response in AWS cloud and enterprise IT environments
- Serve as the shift's main communicator during active incidents
- Update Berlin SOC leadership and local stakeholders during active incidents
- Suggest detection rule tuning and SOP refinements
- Contribute to the team knowledge base to improve workflows
- Mentor level 1 SOC team members
- Conduct purple teaming workshops
- Participate in CTFs
Berufserfahrung
Ausbildung
Sprachen
Tools & Technologien
Benefits
- On-call rotational shifts
- Access to HelloFresh Academy
- Spill access
- Hybrid working model
- Subsidized pension scheme
- Discounts on weekly HelloFresh box
- Discounts on office meals
- German language learning budget
- Mental health support
- Headspace access
- Transportation perks
- Working-parent-friendly benefits
- 24/7 gym access
- Sabbatical leave options
Von Nejo automatisch aufbereitet
Nejo hat diesen Job automatisch von der Website des Unternehmens HelloFresh erfasst und die Informationen auf Nejo mit Hilfe von KI für dich aufbereitet. Trotz sorgfältiger Analyse können einzelne Informationen unvollständig oder ungenau sein. Bitte prüfe immer alle Angaben in der Originalanzeige! Inhalte und Urheberrechte der Originalanzeige liegen beim ausschreibenden Unternehmen.
Zur Originalanzeige bei HelloFreshÜber das Unternehmen
HelloFresh is one of Europe's fastest-growing tech powerhouses, offering meal kit delivery services and a diverse workplace culture.
Nejo bewertet ihn, und bringt ihn danach gemeinsam mit dir in Bestform.
Noch nicht perfekt?
- HelloFresh.Security Engineer (SOC) (m/w/x)Vollzeitmit HomeofficeBerufserfahrenBerlin
- HelloFreshCloud Security Engineer (m/w/x)Vollzeitmit HomeofficeBerufserfahrenBerlin
- Delivery HeroStaff Security Engineer, CSIRT (m/w/x)Vollzeitmit HomeofficeSeniorBerlin
- HelloFreshSecurity Engineer (ITSec) (m/w/x)Vollzeitmit HomeofficeKeine AngabeBerlin
- PipedrivePrincipal Security Engineer (m/w/x)Vollzeitmit HomeofficeSeniorBerlin