SOC - Cloud WAF Security Engineer
BELFAST ARNOTT HOUSE
Full Time Clearance required GBP 63K - 118K *
Thales
From Aerospace, Space, Defence to Security & Transportation, Thales helps its customers to create a safer world by giving them the tools they need to perform critical tasksTitle: SOC - Cloud WAF Security Engineer
Base location: Belfast, N. Ireland (Hybrid model)
We're looking for SOC - Cloud WAF Security Engineer to join our Advanced Security Response team.
The Advanced Security Response team is a team dedicated to providing the first response to security incidents and is focused on the operational aspect of web application security: analysing the threat, suggesting immediate methods of remediation and mitigation, and actively working to block attacks in real time.
The scope of activity ranges throughout layers 3, 4, and 7.
Encompassing DoS & DDoS attacks, Brute-Force attacks, Scraping and filtering unwanted traffic, and extending into initial analysis and mitigation of application attack vectors, such as XSS, SQLi, and Remote code execution.
A complementary aspect of this activity is to handle cases of false positives. The ASRT will own the task of investigating the root cause of the misfire, suggesting the optimal way to avoid further cases, and applying changes accordingly when required.
The ASRT will work closely with the first-tier support team, acting as a focal point for security-related events and incidents.
It will also have a bi-directional line of communication with the Imperva Threat Research team to share findings and information, consultation, and maintain updated knowledge of current policies.
As a ASR team member, the specialist is expected to possess a good working knowledge of web application security and the current threat landscape, together with an in-depth familiarity with Imperva's security policies and processes.
The specialist will also maintain proficiency in field-related tools and methodologies and is encouraged to expand his knowledge of all security-related matters.
Job Requirements:
- At least one year of hands-on experience in the security or networking fields.
- Working knowledge of TCP/IP, HTTP/S, DNS, SSL, OWASP Top 10 Attacks (SQLi, XSS, RCE, RFI, LFI).
- Excellent communication skills.
- Advantage for experience in scripting languages: Python, Bash.
- Familiarity with popular tools in the industry of AppSec and their usage : Burp Suite, Postman, Wireshark.
#LI-VJ1
In line with Thales' Baseline Security requirements, candidates will be asked to provide evidence of identity, eligibility to work in the UK and employment and/or education history for up to three years. Some vacancies may require full Security Clearance which can require further evidence to be provided. For further details of the evidence required to apply for Baseline and Security Clearance please refer to the Defence Business Services National Security Vetting (DBS NSV) Agency.
At Thales we provide CAREERS and not only jobs. With Thales employing 80,000 employees in 68 countries our mobility policy enables thousands of employees each year to develop their careers at home and abroad, in their existing areas of expertise or by branching out into new fields. Together we believe that embracing flexibility is a smarter way of working.
Thales UK is committed to providing an inclusive and barrier-free recruitment process. We will provide reasonable adjustments and support to ensure neuro-diverse applicants or those with a disability or long-term condition can be their best during the recruitment process. To request an adjustment, if you need this job advert in an alternative format or if you have any questions about the recruitment process, please contact Resourcing Ops for mid to senior roles, or the Early Careers Team for graduate and apprentice roles.
Great journeys start here, apply now!
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Bash Burp Suite Business Intelligence Clearance Cloud DDoS DNS OWASP PostMan Python Scripting Security Clearance SOC SQL injection TCP/IP Threat Research XSS
Perks/benefits: Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.