IS Security Engineer III - Hyderabad, India - F5

    F5
    Default job background
    Full time
    Description

    At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation.

    Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.

    F5 is a multi-cloud application services and security company committed to bringing a better digital world to life. F5 partners with the world's largest, most advanced organizations to optimize and secure every app and API anywhere, including on-premises, in the cloud, or at the edge. F5 enables organizations to provide exceptional, secure digital experiences for their customers and continuously stay ahead of threats. For more information, visit

    Description:

    As a Security Engineer III you will work closely with junior Security Engineers, Incident response manager and Cyber threat intelligence team to detect and prevent cyber-attacks across F5. The engineer will have a strong passion for cyber security and its best standards. Candidate should have strong analytical and decision making, process improvement strategies, mentorship qualities, and organization wide collaboration. Highly organized, super curious, and thrive in an environment where priorities shift fast.

    Responsibilities:

  • Ability to handle Cybersecurity incident response activities, external attack investigations, Insider threat investigations and digital forensic investigations.
  • Perform in-depth investigations using security platforms such as SIEM, EDR, DLP, Email threats detection solutions and cloud platforms such as Azure, AWS and GCP.
  • Ability to perform threat hunting for known and unknown threats in F5 environments based on available threat intelligence reports and knowledge of the attackers TTPs.
  • Ability to apply analytical and technical skills to investigate cyber intrusions, detect malicious activity and potential insider threats, and perform incident response.
  • Correlate events from multiple log sources to detect and disrupt threat actor by detecting unknown threats.
  • Ability to prepare, detailed incident analysis report during investigation and present the same to other business functions such as legal, privacy and technology functions.
  • Ability to prepare process driven playbook/runbook for cyber threat investigations.
  • Ability to automate cyber response tasks to ensure seamless security operations.
  • Propose risk mitigating strategies to leadership, advise on acceptable mitigating controls and ensure they are documented.
  • Strong knowledge on cyber investigations, eDiscovery and digital forensics, malware analysis, Network attacks, phishing attacks, cloud attacks and Web application attacks.
  • Required Skills & Knowledge:

  • Bachelor's degree in information systems, MIS or related technical degree and 6-8 years of experience in Cyber Security Incident Response /Threat Hunting/Digital Forensics.
  • Experience with SIEM, EDR, DLP, Email threats detection solutions, Cloud infrastructure, Forensic tools, and networks security solutions.
  • Strong understanding on operating systems: Windows, Linux and/or Mac at a filesystem level and familiarity with MITRE ATT&CK framework.
  • Detecting anomalous system activities, Lateral movements, living-off-the-land, persistence establishment mechanisms and potential intrusions.
  • Highly motivated, independently driven with good interpersonal skills, both written and verbal; mindfulness and phenomenal organizational and time management skills.
  • Ability to research and characterize security threats including crafting right countermeasures.
  • Demonstrated record of finding and pursuing strategic and complex areas of security research in collaboration with internal and external partners at all levels, to include defining right policies, practices, and countermeasures.
  • Preferred certifications:

  • SANS GCIH, SANS GCIA, SANS GCFA, SANS GCFE, CEH, Blue team certifications or other industry-relevant cyber-security certifications are a plus.
  • The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.