Skip to main content

Cyber Security Engineer

We’re looking for a Cybersecurity Engineer with strong hands-on experience in security operations and incident response. If you excel at optimizing XDR platforms like SentinelOne and CrowdStrike, have a solid grasp of system hardening, and are proactive in threat detection and mitigation, this role is for you. Experience in forensic analysis, cloud security, and secure coding practices will be a bonus.

Sri Lanka

About the Role

As a Cybersecurity Engineer, you’ll play a critical role in strengthening and maintaining the security posture of our organization. You’ll work across cloud and on-prem environments to detect, respond to, and mitigate threats while driving automation and best practices in cybersecurity operations.

Responsibilities

  • Administer and optimize XDR platforms such as SentinelOne, CrowdStrike, or similar tools
  • Monitor, triage, and analyze security alerts; respond to incidents quickly and effectively
  • Implement system hardening protocols across OS, cloud, and network environments
  • Build automation into detection and response workflows
  • Track and report emerging vulnerabilities, threats, and mitigation strategies
  • Maintain accurate documentation of incidents, response efforts, and system changes
  • Support internal security audits, assessments, and compliance efforts (e.g., ISO 27001, SOC 2)
  • Conduct end-user awareness training and security best practice sessions

Requirements

  • 3+ years of experience in cybersecurity operations and incident response
  • Strong working knowledge of SentinelOne, CrowdStrike, or equivalent XDR tools
  • Familiarity with forensic analysis techniques
  • Solid understanding of system hardening standards (e.g., CIS Benchmarks)
  • Experience working with SIEM platforms and log analysis
  • Understanding of ISO 27001, SOC 2, and other security compliance standards
  • Excellent communication and problem-solving skills
  • Bachelor's degree in Cybersecurity or a related field (mandatory)

Nice to Have

  • Certifications such as AZ-500, SC-900, or any other cloud security certifications
  • Experience with application security and secure coding
  • Familiarity with DevSecOps practices
  • Exposure to penetration testing tools like Burp Suite, OWASP ZAP, or Metasploit
  • Working knowledge of cloud security in Azure or AWS