Cyber Security Engineer

Timișoara, Romania

Endava

We combine world-class engineering with deep industry expertise and a people-centric mindset to drive meaningful change.

View all jobs at Endava

Apply now Apply later

Company Description

Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change.
 
By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital experiences that drive innovation and transform businesses.
 
From prototype to real-world impact - be part of a global shift by doing work that matters.

Job Description

Our infrastructure specialists are responsible for designing and implementing back-end services. They ensure reliability, security, and scalability for all platform layers within our solutions. Infrastructure teams provide expertise across virtualization, cloud services, storage solutions, cybersecurity, and scripting and automation.  

 

Responsibilities:

  • SIEM and SOAR Operations: Utilize and optimize the organization’s SIEM and SOAR platforms to detect, analyze, and respond to security incidents effectively.
  • Cyber security tooling management: Configure, monitor, and fine-tune cyber security tools, particularly SIEM/EDR solutions (e.g., Chronicle, Splunk, MS Sentinel, CrowdStrike, or similar).
  • Threat Detection and Analysis: Develop and implement detection rules, use cases and alerts within SIEM/SOAR platforms to identify and address potential threats.
  • Cyber Risk Awareness: Support the identification and assessment of security risks within the organization, contributing to cyber risk assessments and mitigation strategies.
  • Incident Response Support: Work closely with the SOC team to help with the investigation and response to security incidents, ensuring timely and effective remediation.
  • Reporting and Documentation: Generate regular reports on security events, incidents, and overall cybersecurity posture for stakeholders.
  • Collaboration and Support: Work collaboratively with other IT and security teams to support overall business security initiatives, offer technical guidance, and drive security maturity.

Qualifications

Experience:

  • 2+ years in a cyber security engineering or related role, with practical experience in SIEM/EDR operations.
  • Hands-on experience with SIEM platforms like Google Chronicle, Splunk, MS Sentinel, or other leading SIEM/EDR solutions.
  • Exposure to SOAR solutions and automation processes within cyber security operations.

 

Technical Skills:

  • Proficiency in monitoring, configuring, and managing cyber security tools.
  • Strong understanding of incident response, threat detection, and SIEM rule creation.
  • Experience with scripting languages (e.g., Python) for automation within SOAR platforms is a plus

 

Cybersecurity Knowledge:

  • Familiarity with cybersecurity fundamentals, including risk management, security assessments, and threat intelligence.
  • General awareness of cybersecurity risk and a basic understanding of risk assessment processes.

Certifications:

  • Industry certifications like CompTIA Security+, CEH, CISSP (optional but beneficial).
  • Public Cloud and tooling specific certifications are desirable.

Personal Attributes:

  • Detail-oriented with strong analytical skills.
  • Strong communication skills for cross-functional collaboration.
  • Adaptability and eagerness to learn and stay updated with evolving cyber security threats and technologies.

Additional Information

Discover some of the global benefits that empower our people to become the best version of themselves:

  • Finance: Competitive salary package, share plan, company performance bonuses, value-based recognition awards, referral bonus;   
  • Career Development: Career coaching, global career opportunities, non-linear career paths, internal development programmes for management and technical leadership;
  • Learning Opportunities: Complex projects, rotations, internal tech communities, training, certifications, coaching, online learning platforms subscriptions, pass-it-on sessions, workshops, conferences;
  • Work-Life Balance: Hybrid work and flexible working hours, employee assistance programme;
  • Health: Global internal wellbeing programme, access to wellbeing apps;
  • Community: Global internal tech communities, hobby clubs and interest groups, inclusion and diversity programmes, events and celebrations.
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Automation CEH CISSP Cloud CompTIA CrowdStrike EDR Finance Incident response Monitoring Python Risk assessment Risk management Scripting Security assessment Sentinel SIEM SOAR SOC Splunk Threat detection Threat intelligence

Perks/benefits: Career development Competitive pay Conferences Flex hours Health care Salary bonus Team events

Region: Europe
Country: Romania

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.