We are the original creators of Apache Flink, the open-source unified batch/stream processing system that powers applications for all types of companies, from tech giants (Alibaba, Amazon, Netflix, etc) to more traditional enterprises like banks and telecommunications companies. We contribute heavily to Apache Flink while building enterprise-grade products on top of Flink.
Come join our highly talented team at Ververica and work with friendly colleagues on problems and products that change how companies implement data processing, analytics, and applications. Become part of one of the biggest and most active open-source communities, connect with users around the world, and do work that has a visible impact. You will have the opportunity to contribute to cutting-edge technology or be an advocate for new approaches to long-standing problems.
Innovation thrives when diverse points of view come together. Thus, we strive for an equal and inclusive work environment and welcome diverse life experiences and diverse work/educational backgrounds. We’d love to hear how you bring something unique and valuable to our teams.
We are seeking an experienced and highly skilled Lead Engineer - Security Operations Management (m/f/d) to join our dynamic team. As a rapidly growing company at the forefront of the data stream processing industry, we recognize the paramount importance of security and reliability in everything we do. In this pivotal role, you will be entrusted with fortifying our infrastructure, applications, and processes through the implementation of cutting-edge security practices, incident response mechanisms, and comprehensive observability solutions.
Responsibilities:
- SIEM Implementation: Lead the design, deployment, and maintenance of our Security Information and Event Management (SIEM) platform. Develop and implement strategies to effectively monitor, detect, and respond to security threats in real-time.
- Incident Response: Establish and maintain a well-defined incident response process. Collaborate closely with cross-functional teams to rapidly identify and contain security incidents, mitigate potential impacts, and implement measures to prevent recurrence.
- Observability Solutions: Spearhead the implementation of observability tools and practices across our systems and applications. Ensure the timely collection, analysis, and visualization of crucial security and operational data for proactive threat hunting and overall system health monitoring.
- Kubernetes Security: Provide expertise in securing our Kubernetes environment. Design and implement observability practices for multi-tenancy containerized applications and microservices running on Kubernetes.
- DevSecOps Integration: Champion the culture of a security-first mindset within our DevOps teams.
- Threat Hunting and Vulnerability Management: Conduct proactive threat hunting exercises to identify potential security weaknesses, vulnerabilities as well as indicators of compromisation. Work with relevant teams to prioritize and remediate these issues effectively.
- KPI and Reporting: Define and track key performance indicators (KPIs) for security operations and observability efforts. Prepare regular reports and dashboards to provide insights into security incidents, response times, and system performance. Present findings to relevant stakeholders and management.
- Continuous Improvement: Drive continuous improvement initiatives for security operations, optimizing tools, processes, and strategies to enhance overall security posture.
Requirements:
- Bachelor's or Master's degree in Computer Science, Information Security, or a related field.
- Proven experience (5+ years) in Security Operations, Incident Response, and SIEM implementation in a cloud-based environment
- Strong knowledge of security principles, standards, protocols, and industry best practices.
- Familiarity with Kubernetes security and best practices for container orchestration.
- Experience with DevSecOps principles and hands-on experience integrating security into the CI/CD pipeline.
- Excellent communication and interpersonal skills, with the ability to collaborate effectively with cross-functional teams.
If this is the next step in your career, please apply! We are looking forward to getting to know you personally.
Please be informed that by applying for the job offer you hereby agree that Ververica would use your personal data in the recruitment process. The legal basis for processing your application data is Article 6 par. 1 lit. b) GDPR. Your rights in respect of data protection can be found in Chapter 3 of GDPR, and you have the right to contact a supervisory authority. Further, you may contact our data protection officer via dataprotection@ververica.com.