
Senior Security Operations Engineer
- Cape Town, Western Cape
- Permanent
- Full-time
- Infrastructure Security
- Partner with our DevSecOps team to design, implement and manage security controls and policies for our Microsoft Azure Infrastructure
- Partner with our Engineering teams to ensure that code deployed on Lula's infrastructure is done securely
- Conduct regular security assessments and audits of Azure and internal infrastructure and platforms, including vulnerability scanning and penetration testing
- Identity Security
- Manage and regularly audit our privileged accounts to ensure access remains relevant and required
- Design, implement and manage policies and controls to secure Lula's accounts and access to our resources using Microsoft Entra ID toolsets
- Provide security awareness training to the business to improve our security posture
- Perform security incident/phishing simulations to ensure our processes and training are robust and effective
- On-Premise Security
- Monitor and manage Lula's access control and camera systems
- Provide guidance and support to internal departments on handling of confidential information
- Partner with our Technical Support team to ensure Lula's network and endpoints are configured securely and monitored for threats
- Regulatory Compliance and Governance
- Be a critical part of Lula's PCI DSS annual re-certification process
- Develop and maintain security documentation including policies, procedures and technical standards that adhere to compliance requirements
- Collaborate with external auditors and partners to ensure compliance with various regulatory requirements and industry standards
- Security Incident Management
- Be the key point of contact for security incident and alert investigations
- Develop remediation plans, conduct Root Cause Analysis' and provide corrective and preventative measures during Post Incident Reviews
- Participate in on-call rotation to provide 24/7 support for Security Incidents
- Tertiary qualification in Computer Science, Information Security, or equivalent experience
- 5+ years of experience in a SecOps field, preferably using Microsoft technologies, with a focus on Azure
- Expert knowledge of Cloud focussed security features, including Azure Defender for Cloud, Azure Sentinel, Entra ID, Front Door, Privileged Identity Management, Intune and Defender for Endpoint
- Experience with security assessments and audits, including vulnerability scanning, penetration testing and incident simulations
- Hands-on Kali experience would be beneficial
- Exposure to configuring SAST tools, like SonarCloud
- Familiarity with industry standards and regulatory requirements, such as POPIA, PCI DSS and ISO 27001
- Familiarity with security related network technologies such as firewalls & VPNs
- Azure or Cyber Security certifications, such as Azure Security Engineer Associate, Azure Solutions Architect Expert or CISSP are a plus
- Knowledge of securing coding practices, like OWASP
- Knowledge of secure API implementation technologies, OAuth and OIDC