Senior Information Security Engineer (Blue team)

Seoul, South Korea

โš ๏ธ We'll shut down after Aug 1st - try foo๐Ÿฆ for all jobs in tech โš ๏ธ

Coupang

Join us to innovate. Rocket your career. Collaborate with teams across the globe. Find your role and learn more about our culture.

View all jobs at Coupang

ํšŒ์‚ฌ ์†Œ๊ฐœ

์ฟ ํŒก์€ ๊ณ ๊ฐ ๊ฐ๋™ ์‹คํ˜„์„ ์œ„ํ•ด ์กด์žฌํ•ฉ๋‹ˆ๋‹ค. ๊ณ ๊ฐ๋“ค์ด "์ฟ ํŒก ์—†์ด ๊ทธ๋™์•ˆ ์–ด๋–ป๊ฒŒ ์‚ด์•˜์„๊นŒ?" ๋ผ๊ณ  ๋งํ•  ๋•Œ, ๋น„๋กœ์†Œ ์šฐ๋ฆฌ์˜ ๋ฏธ์…˜์„ ์‹คํ˜„ํ•˜๊ณ  ์žˆ์Œ์„ ์•Œ ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค. ๊ณ ๊ฐ๋“ค์˜ ์‡ผํ•‘๊ณผ ์‹์‚ฌ, ์ƒํ™œ ์ „๋ฐ˜์„ ํŽธํ•˜๊ฒŒ ๋งŒ๋“ค๊ฒ ๋‹ค๋Š” ์œ ์ผํ•œ ์ง‘๋…์œผ๋กœ ์ฟ ํŒก์€ ์ˆ˜์–ต ๋‹ฌ๋Ÿฌ ๊ทœ๋ชจ์˜ ์ด์ปค๋จธ์Šค ์‚ฐ์—… ์ „๋ฐ˜์˜ ํ˜์‹ ์„ ์ด๋Œ๊ณ  ์žˆ์Šต๋‹ˆ๋‹ค. ์ฟ ํŒก์€ ๊ฐ€์žฅ ๋น ๋ฅด๊ฒŒ ์„ฑ์žฅํ•˜๋Š” ์ด์ปค๋จธ์Šค ๊ธฐ์—… ์ค‘ ํ•˜๋‚˜๋กœ, ๊ตญ๋‚ด ์ปค๋จธ์Šค ์—…๊ณ„์—์„œ์˜ ๋…๋ณด์ ์ธ ์ž…์ง€์™€, ๊ณ ๊ฐ ์‹ ๋ขฐ๋ฅผ ๊ตฌ์ถ•ํ–ˆ์Šต๋‹ˆ๋‹ค.ย 

์ฟ ํŒก์€ ์Šคํƒ€ํŠธ์—… ๋ฌธํ™”๋ฅผ ๊ธฐ๋ฐ˜์œผ๋กœ ํ•œ ๊ธ€๋กœ๋ฒŒ ๋Œ€ํ˜• ์ƒ์žฅ์‚ฌ๋ผ๊ณ  ์ž๋ถ€ํ•ฉ๋‹ˆ๋‹ค. ์ด๊ฒƒ์ด ์ฐฝ๋ฆฝ ๋‹น์‹œ์˜ ๊ธฐ๋ฏผํ•จ์„ ์œ ์ง€ํ•˜๋ฉฐ, ์‹ ๊ทœ ์„œ๋น„์Šค๋ฅผ ๋Š์ž„์—†์ด ์ถœ์‹œํ•˜๋ฉฐ ๋น„์ฆˆ๋‹ˆ์Šค๋ฅผ ํ™•์žฅํ•ด ๋‚˜๊ฐ€๋Š” ์šฐ๋ฆฌ์˜ ์„ฑ์žฅ ๋™๋ ฅ์ž…๋‹ˆ๋‹ค. ์ฟ ํŒก์˜ ๋ชจ๋“  ์ž„์ง์›์—๊ฒŒ๋Š” ๊ธฐ์—…๊ฐ€ ์ •์‹ ์„ ๊ฐ–์ถ”๊ณ  ์ƒˆ๋กœ์šด ํ˜์‹ ๊ณผ ์ด๋‹ˆ์…”ํ‹ฐ๋ธŒ๋ฅผ ์ถ”์ง„ํ•  ์ˆ˜ ์žˆ๋Š” ๊ธฐํšŒ๊ฐ€ ์ฃผ์–ด์ง‘๋‹ˆ๋‹ค. ์ฃผ์ € ์—†์ด ์ผ์— ๋›ฐ์–ด๋“ค์–ด ์„ฑ๊ณผ๋ฅผ ์ด๋ฃจ๊ณ ์ž ํ•˜๋Š” ๊ณผ๊ฐ์„ฑ์ด, ๋ฐ”๋กœ ์ฟ ํŒก์ด ์ผํ•˜๋Š” ๋ฐฉ์‹์˜ ๋ณธ์งˆ์ž…๋‹ˆ๋‹ค. ์ฟ ํŒก์—์„œ๋Š” ์—ฌ๋Ÿฌ๋ถ„ ์ž์‹ , ๋™๋ฃŒ, ํŒ€ ๊ทธ๋ฆฌ๊ณ  ํšŒ์‚ฌ ์ „์ฒด๊ฐ€ ๋งค์ผ ์„ฑ์žฅํ•˜๋Š” ๋ชจ์Šต์„ ๋ชฉ๊ฒฉํ•  ๊ฒƒ์ž…๋‹ˆ๋‹ค.ย 

์ฟ ํŒก์˜ ๋ชจ๋“  ์ง์›์€ ์ปค๋จธ์Šค์˜ ๋ฏธ๋ž˜๋ฅผ ๋งŒ๋“ค๊ฒ ๋‹ค๋Š” ์ฟ ํŒก์˜ ๋ฏธ์…˜์— ์ง„์‹ฌ์ž…๋‹ˆ๋‹ค. ์šฐ๋ฆฌ๋Š” ๊ณ ๊ฐ์˜ ๋ฌธ์ œ๋ฅผ ํ•ด๊ฒฐํ•ด ๋‚˜๊ฐ€๊ณ , ์ „ํ†ต์ ์ธ ๊ด€๋…๊ณผ ํ†ต๋…์— ๋งž์„œ๋ฉฐ ์‹คํ˜„ ๊ฐ€๋Šฅํ•œ ํ•œ๊ณ„๋ฅผ ๋›ฐ์–ด๋„˜๊ณ  ์žˆ์Šต๋‹ˆ๋‹ค. ๊ณ ๊ฐ€์šฉ์„ฑ (always-on) ๊ณผ ์ตœ์ฒจ๋‹จ์˜ ์•ž์„  ๊ธฐ์ˆ  (high-tech), ์ดˆ์—ฐ๊ฒฐ์‚ฌํšŒ (hyper-connected world) ์—์„œ์˜ ๋†€๋ผ์šด ์—…๋ฌด ๊ฒฝํ—˜์„ ์›ํ•˜์‹ ๋‹ค๋ฉด, ์ง€๊ธˆ ๋ฐ”๋กœ ์ฟ ํŒก์— ํ•ฉ๋ฅ˜ํ•˜์„ธ์š”.ย 

ย 

ํŒ€ ์†Œ๊ฐœย 

Coupang Blue Team์€ ์ฟ ํŒก์—์„œ ๋ฐœ์ƒํ•˜๋Š” ๋ชจ๋“  ์‚ฌ์ด๋ฒ„ ์‚ฌ๊ฑด์„ ๋กœ๊ทธ๋ฅผ ๊ธฐ๋ฐ˜์œผ๋กœ ๋ชจ๋‹ˆํ„ฐ๋งํ•˜๊ณ  ์œ„ํ˜‘์„ ํƒ์ง€ํ•ด ๋น ๋ฅด๊ฒŒ ๋Œ€์‘ํ•จ์œผ๋กœ์จ ํ”ผํ•ด๋ฅผ ์ตœ์†Œํ™” ํ•˜๋Š” ์—ญํ• ์„ ์ˆ˜ํ–‰ํ•ฉ๋‹ˆ๋‹ค. Blue Team์€ ์ด๋Ÿฐ ๋ชฉํ‘œ๋ฅผ ๋‹ฌ์„ฑํ•˜๊ธฐ ์œ„ํ•ด SOC(Security Operation Center)์™€ ์นจํ•ด์‚ฌ๊ณ ๋Œ€์‘ ์ „๋ฌธ ์กฐ์ง์ธ DART(Detection And Response Team)ํŒ€, ์—…๋ฌด ์ž๋™ํ™”์™€ Blue Team์— ํ•„์š”ํ•œ ๊ฐœ๋ฐœ์„ ๋‹ด๋‹นํ•˜๋Š” BlueEngineeringํŒ€, ์นจํ•ด์‚ฌ๊ณ  ํƒ์ง€ ๋Šฅ๋ ฅ ํ–ฅ์ƒ์„ ์œ„ํ•œ Detection EngineeringํŒ€๊ณผ Blue Team ์—์„œ ์šด์˜ํ•˜๋Š” ๋‹ค์–‘ํ•œ ๋ณด์•ˆ ์†”๋ฃจ์…˜๊ณผ ์žฅ๋น„๋“ค์„ ํšจ๊ณผ์ ์ด๊ณ  ์•ˆ์ •์ ์œผ๋กœ ์šด์˜ํ•˜๋Š” Blue Ops Team์œผ๋กœ ๊ตฌ์„ฑ๋˜์–ด ์žˆ์Šต๋‹ˆ๋‹ค.

ย 

์—…๋ฌด ๋‚ด์šฉ:

  • ๋ฐ์ดํ„ฐ ์œ ์ถœ๊ฒฝ๋กœ ๋ถ„์„
  • Data Loss Prevention (DLP) ํƒ์ง€/์ฐจ๋‹จ ๋ฃฐ ๊ฐœ๋ฐœ, ๊ด€๋ฆฌ, ๋ฐ ๊ณ ๋„ํ™” (์˜ค์ง„ ์ตœ์†Œํ™”, ์ •ํƒ๋ฅ  ํ–ฅ์ƒ)
  • DLP ์†”๋ฃจ์…˜ ๋„์ž…, ์šด์˜ ๋ฐ ๊ด€๋ฆฌ
  • DLP๋ฅผ ์œ„ํ•œ ๋ชจ๋‹ˆํ„ฐ๋ง, ํƒ์ง€, ๋Œ€์‘ ๋ฐ ๋ณด๊ณ ์„œ ์ž‘์„ฑ
  • DLP๊ด€๋ จ SOP(Security Operation Process) ํ”„๋กœ์„ธ์Šค ๊ฐœ๋ฐœ, ๋ฌธ์„œํ™”, ๋ฐ ์ž๋™ํ™”
  • ๋‹ค์–‘ํ•œ ๊ธฐ์—…ํ™˜๊ฒฝ์—์„œ ๋ฐ์ดํ„ฐ ์œ ์ถœ ํƒ์ง€๋ฅผ ์œ„ํ•œ ๋น„์ •ํ˜•ํ™” ๋ฐ์ดํ„ฐ ๋ถ„์„ ๋ฐ ์ƒ๊ด€๋ถ„์„
  • ์œ ๊ด€๋ถ€์„œ์™€ ํ˜‘์—…์„ ํ†ตํ•ด DLP ์†”๋ฃจ์…˜ ๊ด€๋ฆฌ ๋ฐ ์‚ฌ๊ฑด ๋Œ€์‘

ย 

์ž๊ฒฉ ์š”๊ฑด:

  • ๋›ฐ์–ด๋‚œ ๋ถ„์„๊ธฐ์ˆ  ๋ฐ ๋ฌธ์ œํ•ด๊ฒฐ ๋Šฅ๋ ฅ ๋ณด์œ 
  • ๋ฐ์ดํ„ฐ์™€ ํ†ต์ฐฐ๋ ฅ์„ ๊ทผ๊ฑฐ๋กœ ์‚ฌ๋žŒ๋“ค์„ ์„ค๋“ํ•˜๊ณ  ๊ณต๊ฐ๋Œ€๋ฅผ ํ˜•์„ฑํ•ด๊ฐˆ ์ˆ˜ ์žˆ๋Š” ๋›ฐ์–ด๋‚œ ์˜์‚ฌ์†Œํ†ต ๋Šฅ๋ ฅ ๋ณด์œ 
  • Data Loss Prevention (DLP) ๊ด€๋ จ ์—…๋ฌด ๊ฒฝํ—˜ 3๋…„ ์ด์ƒ
  • ์ง€์ ์žฌ์‚ฐ๊ถŒ์„ ๋ณดํ˜ธํ•˜๊ธฐ์œ„ํ•œ ๋„๊ตฌ, ์ •์ฑ…, ์ ˆ์ฐจ์— ๋Œ€ํ•œ ์ง€์‹๊ณผ 3๋…„ ์ด์ƒ์˜ ๊ฒฝํ—˜
  • Data Lifecycle ๊ณผ ๋ฐ์ดํ„ฐ ๋ณดํ˜ธ์— ๋Œ€ํ•œ ์ „๋ฌธ๊ฐ€ ์ˆ˜์ค€์˜ ์ดํ•ด
  • ๋›ฐ์–ด๋‚œ Windows, MacOS๋“ฑ ์šด์˜์ฒด์ œ ๋ณด์•ˆ ์ดํ•ด
  • ์•”ํ˜ธํ™” ๊ด€๋ จ ์‹ค๋ฌด์ง€์‹ ๋ณด์œ 
  • ๊ธฐ์—…ํ™˜๊ฒฝ์—์„œ ์‚ฌ์šฉ์ž ํ–‰์œ„ ๋ถ„์„(User Behavior Analytics; UBA) ์™€ Cloud Access Security Brokers (CASB) ๊ฒฝํ—˜
  • Python, Go, JavaScript ์™€ ๊ฐ™์€ ์ปดํ“จํ„ฐ ํ”„๋กœ๊ทธ๋ž˜๋ฐ ์–ธ์–ด ์‚ฌ์šฉ ๋Šฅ๋ ฅ ๋ณด์œ 
  • ์ปดํ“จํ„ฐ ํ˜น์€ ์‚ฌ์ด๋ฒ„๋ณด์•ˆ๊ด€๋ จ ํ•™์‚ฌํ•™์œ„ ์ทจ๋“์ž ๋˜๋Š” ๋™๋“ฑํ•œ ์ˆ˜์ค€์˜ ์‹ค๋ฌด ๊ฒฝํ—˜ ๋ณด์œ 

ย 

์šฐ๋Œ€ ์‚ฌํ•ญ:

  • ์‚ฌ์ด๋ฒ„ ๋ณด์•ˆ ๊ด€๋ จ ์ž๊ฒฉ์ฆ (์˜ˆ: CISSP, ์ •๋ณด์ฒ˜๋ฆฌ๊ธฐ์‚ฌ, ๋“ฑ)
  • SQL ์ฟผ๋ฆฌ, ๋ฐ์ดํ„ฐ ์‹œ๊ฐํ™” ๋“ฑ ๋ฐ์ดํ„ฐ ๋ถ„์„๊ด€๋ จ ์—…๋ฌด ์ง€์‹
  • ํด๋ผ์šฐ๋“œ ํ”Œ๋žซํผ(์˜ˆ: AWS, Azure, GCP) ๊ด€๋ จ ์ง€์‹
  • E-commerce ์‚ฌ์—…๊ด€๋ จ ์—…๋ฌด ํ”„๋กœ์„ธ์Šค ์ „๋ฌธ ์ง€์‹
  • OWASP, MITRE ATT&CK ๊ด€๋ จ ์ง€์‹ ๋˜๋Š” ์ ์šฉ ๊ฒฝํ—˜

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index ๐Ÿ’ฐ

Job stats:  25  2  0

Tags: Analytics AWS Azure Blue team CASB CISSP Cloud E-commerce GCP JavaScript MITRE ATT&CK OWASP Python SOC SQL Windows

Region: Asia/Pacific
Country: South Korea

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.