أبلاي إيدج ابدأ البحث عن عمل

Cyber Security Engineer – Security Controls & Operations

Jardine Service Centre · Mandaluyong, National Capital Region, Philippines

قدّم وتابع مع أبلاي إيدج
About Jardine Service Centre Philippines (JSC)Jardine Service Centre Philippines is an organization fully owned by Jardine Matheson Group which is a diversified Asian-based group with unsurpassed experience in the region, having been founded in 1832. JSC is responsible for providing back-office support to the business units of Jardine Group by administrating transactional and rule-based activities. We aim to deliver world-class services to our internal customers in a cost-efficient manner via process harmonization, application of state-of-the-art technologies, automation and process simplification.We are seeking a highly skilled and proactive Cyber Security Engineer to strengthen, engineer, and continuously improve enterprise security controls across network, endpoint, identity, cloud, and detection domains. The successful candidate will serve as a key technical contributor responsible for designing, implementing, monitoring, and optimizing cybersecurity technologies that protect critical business assets. This role requires strong hands-on experience with security engineering, threat detection, incident response enablement, and control validation. Candidates with Purple Team experience, adversary emulation exposure, or a background bridging offensive and defensive security operations are highly preferred.Key Responsibilities:Manage and optimize Next-Generation Firewalls (Palo Alto, Fortinet, Check Point), WAFs, secure remote access, VPN, ZTNA, DNS security, and network segmentation controls.Administer Secure Email Gateways including phishing protection, DMARC, SPF, DKIM enforcement, malware filtering, and executive protection controls.Manage EDR/XDR technologies such as CrowdStrike, Microsoft Defender for Endpoint, SentinelOne, or equivalent platforms.Secure identity systems including Active Directory, Microsoft Entra ID, Conditional Access, MFA, privileged access controls, and identity governance.Develop and maintain detection rules in Microsoft Sentinel, Splunk, Elastic, and Defender technologies using KQL, SPL, Sigma, and related languages.Create SOAR workflows and automation playbooks to accelerate containment, investigation, and remediation activities.Perform security control validation through Purple Team exercises, breach-and-attack simulation, Atomic Red Team testing, and MITRE ATT&CK mapping.Collaborate with SOC analysts, infrastructure teams, cloud teams, and third-party providers to improve visibility and threat coverage.Lead technical investigations, root-cause analysis, and security improvement initiatives following incidents or control gaps.Lead vulnerability management activities including vulnerability scanning, risk-based prioritization, remediation tracking, exception management, and reporting across on-premises, cloud, endpoint, and network environmentsKey Qualifications & Technical Skills:Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent practical experience.Minimum 4-6 years of experience in cybersecurity engineering, security operations, network security, or detection engineering.Perimeter Security: Architect, deploy, and manage Next-Generation Firewalls (NGFW), Web Application Firewalls (WAF), Secure Email Gateways (SEG), and DNS Security solutions. Implement and maintain strict Network Segmentation policies to reduce the attack surface.Endpoint & Identity Protection: Oversee endpoint protection strategies using EDR/XDR platforms. Manage and secure identity infrastructures including on-premises Active Directory and Entra ID (Azure AD), enforcing Conditional Access policies and Multi-Factor Authentication (MFA).Cloud Security: Secure hybrid and multi-cloud environments (Azure, AWS) by implementing cloud-native security controls, conducting posture management, and ensuring compliance with cloud security best practices.Detection Engineering: Develop, tune, and maintain detection logic and analytics rules within SIEM platforms (Microsoft Sentinel, Splunk). Author complex queries using KQL, SPL, and Sigma to identify advanced threats and improve threat-hunting capabilities.Security Automation: Design and implement automated security workflows and remediation scripts utilizing PowerShell, Python, and Bash to streamline operational efficiency and incident response.Vulnerability Management (Lifecycle): Lead the full lifecycle of vulnerability management utilizing tools such as Tenable, Qualys, Rapid7 InsightVM, and Microsoft Defender Vulnerability Management. This includes conducting vulnerability assessments, performing risk-based prioritization, tracking remediation efforts, coordinating patching cycles, and generating executive reporting.Security Frameworks & Compliance: Apply industry-standard security frameworks (MITRE ATT&CK, NIST CSF, CIS Controls) to assess security posture, guide control implementation, and align security operations with regulatory and industry best practices.Preferred Qualifications:Purple Team, threat emulation, adversary simulation, or penetration testing experience.Experience with Microsoft Defender XDR, Sentinel automation, and cloud-native security tooling.Knowledge of PAM, PKI, Zero Trust, SASE, IaC security, Terraform, or Bicep.Experience identifying command-and-control activity, malware behaviors, and advanced attack techniques.Experience with vulnerability assessment tools such as Tenable, Qualys, Rapid7, Microsoft Defender Vulnerability Management, or equivalent solutions is highly desirable.Preferred certifications: CISSP, GSEC, CySA+, CCNP Security, PCNSE, Fortinet NSE, SC-200, AZ-500, OSCP, eJPT, GDAT.We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.At JSC, you can play a role in our business success. We understand that key to our success is our people, which is our foundation and priority. We invest in our people to ensure we have the right talent with the leadership and strategic skills the company needs for the future.We are an equal opportunity employer and do not discriminate on the grounds of sex, race, disability, family status or any other factors.Come and explore with us!