Security Platform Engineer

Sun Life Ireland

Sun Life

Sun Life is a financial services company providing financial planning, life insurance, health insurance, investments and more.

View all jobs at Sun Life

Apply now Apply later

You are as unique as your background, experience and point of view. Here, you’ll be encouraged, empowered and challenged to be your best self. You'll work with dynamic colleagues - experts in their fields - who are eager to share their knowledge with you. Your leaders will inspire and help you reach your potential and soar to new heights. Every day, you'll have new and exciting opportunities to make life brighter for our Clients - who are at the heart of everything we do. Discover how you can make a difference in the lives of individuals, families and communities around the world.

Job Description:

Job description (heading) /  Description du poste (titre)

  • The successful candidate should have 3-4 years experience in information technology with a minimum of 3 years experience in the information security field. The candidate will join a growing security platform team working in agile environment.
  • Candidates must have the technical ability to plan, deploy and manage secure content delivery platforms and Web Application Protections, you will be responsible for the design, implementation, and management of the security infrastructure, primarily focusing on Secure Content delivery platforms' suite of security solutions, including Web Application Firewall (WAF), Bot Manager, and DDoS protection. Your role will ensure the security and availability of our web applications while minimizing risk from threats, attacks, and vulnerabilities

Preferred skills (heading) / Compétences particulières (titre)

  • Experience or knowledge of Secure Content delivery platforms like Akamai, Cloudflare or Fastly
  • Experience or knowledge of Implementing, configuring, and managing security platform tools such as Web Application Firewall (WAF), API protection, Bot protection and DDoS protection services
  • Experience or knowledge  to protect our web applications from common vulnerabilities (e.g., OWASP Top 10), exploits, and advanced threats by leveraging secure content platform suite of security services
  • Optimizing the secure content platform platform for performance and security, ensuring that web application protections do not degrade user experience or site performance
  • Monitor for and respond to security incidents, including real-time threats such as DDoS attacks and bot traffic, using the secure content platform alerting and security monitoring tools.
  • Developing, testing, and maintaining custom rules and configurations for the secure content platform WAF and other security solutions to ensure appropriate blocking of malicious traffic without affecting legitimate users.
  • Developing automation scripts and tools for managing and scaling security policies across web applications.
  • Work closely with DevOps, Network, and Application Development teams to ensure that security measures align with business objectives and product requirements.
  • Ensure security configurations meet regulatory compliance requirements (e.g., GDPR, PCI-DSS) and create regular reports to track and document security posture and incidents.
  • Knowledge of disaster recovery, technologies, and methods.
  • Strong communicator spoken and written with the ability to communicate technical issues to peers and management.

Qualifications (heading) / Compétences (titre)

  • An Information Technology University degree/college diploma in related discipline(s) or equivalent work experience, and/or 5 years experience in Information Technology
  • 2-3+ years in security IT industry experience
  • Professional designation in IT security (such as CISM, CISSP, CISA, GIAC, AWS or CompTIA) preferred.

Responsibilities (heading) / Responsabilités (titre)

  • Responsibility for the Secure Content delivery platforms like Akamai, Cloudflare or Fastly
  • Implementation, configuration, and managing security platform tools such as Web Application Firewall (WAF), API protection, Bot protection and DDoS protection services
  • Protection of web applications from common vulnerabilities (e.g., OWASP Top 10), exploits, and advanced threats by leveraging secure content platform suite of security services
  • Optimizing the secure content platform platform for performance and security, ensuring that web application protections do not degrade user experience or site performance
  • Monitoring and responding to security incidents, including real-time threats such as DDoS attacks and bot traffic, using the secure content platform alerting and security monitoring tools.
  • Developing, testing, and maintaining custom rules and configurations for the secure content platform WAF and other security solutions to ensure appropriate blocking of malicious traffic without affecting legitimate users.
  • Developing automation scripts and tools for managing and scaling security policies across web applications.
  • Work closely with DevOps, Network, and Application Development teams to ensure that security measures align with business objectives and product requirements.

Job Category:

IT - Technology Services

Posting End Date:

08/10/2024
Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: Agile APIs Automation AWS CISA CISM CISSP Cloudflare Compliance CompTIA DDoS DevOps Exploits Firewalls GDPR GIAC Monitoring OWASP SOAR Vulnerabilities

Perks/benefits: Career development

Region: Europe
Country: Ireland

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.