System & Hypervisor Hardening: Design and implement security baselines for Windows Server (Active Directory, Group Policy) and various Linux distributions. Oversee the security posture of VMware environments, ensuring vCenter and ESXi hosts are isolated and patched.
Threat Detection & Response: Act as the primary engineer for CrowdStrike Falcon, managing sensor deployment, policy tuning, and incident response.
Vulnerability Management: Lead the end-to-end vulnerability lifecycle using Tenable (Nessus/IO). This includes scheduled scanning, risk prioritization, and collaborating with infrastructure teams to validate remediation.
SIEM Engineering: Manage and optimize LogRhythm, ensuring high-fidelity log ingestion from diverse sources (firewalls, servers, applications) and developing custom correlation rules to detect anomalous behaviour.
Hardware Security: Oversee the security of physical assets, including firmware updates, BIOS hardening, and secure lifecycle management of server hardware.
Incident Response: Serve as a technical lead during security incidents, performing root cause analysis and implementing preventative measures.
You will be successful in this role if you have:
Technical Qualifications
Operating Systems: Advanced proficiency in Windows Server management and Linux (RHEL) administration.
Security Tooling: EDR: Expert-level knowledge of CrowdStrike.
Vulnerability Management: Proven experience with Tenable.
SIEM: Practical experience with LogRhythm (AI Engine, Case Management).
Infrastructure: Solid understanding of TCIP/IP networking, and hardware-level security.
Automation: Ability to script in PowerShell, Bash, repetitive security tasks.
Familiarity with compliance frameworks (e.g., NIST, ISO 27001, or Essential Eight).
Strong communication skills to translate complex technical risks into actionable business insights.
#LI-NV1
Local employment practices and rights may vary by jurisdiction and are subject to applicable local laws. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers.
Benefits
Parental leave
Additional Information
What success looks like in this role:
Role Overview
We are seeking a highly technical Security Engineer to join our infrastructure team. This role is critical in bridging the gap between traditional systems administration and modern security operations. You will be responsible for securing a diverse environment encompassing Windows and Linux servers, VMware virtualization, and physical hardware, while managing a robust security stack including CrowdStrike, Tenable, and LogRhythm.
The ideal candidate thrives on "under the hood" troubleshooting and has a deep understanding of how infrastructure vulnerabilities translate into enterprise risk.