Regional Senior Security Operations
ZUS Coffee
As a Regional Senior Security Operations, you will serve as a key technical contributor within the SecOps function. You will be responsible for detecting and responding to cyber threats, managing security technologies, supporting vulnerability management, and strengthening operational security capabilities across the organization. The role requires strong analytical and technical skills, a proactive security mindset, and the ability to collaborate effectively with infrastructure, application, cloud, and business teams to reduce cyber risk and enhance the organization's overall security resilience
Position Responsibilities
1.Threat Detection &Monitoring
- Monitor security events and alerts across endpoints, servers, cloud environments, networks,
andcollaboration platforms.
- Investigate and triage security alerts generated by security monitoring tools, SIEM platforms,
EDR/XDR solutions, and threat intelligence sources.
- Identify suspicious activities, indicators of compromise (IOCs), and potential security
incidents.
- Perform event correlation and analysis to detect emerging threats and security anomalies
2.Incident Response &Threat Hunting
- Participate in cybersecurity incident response activities, including identification,
containment, eradication, recovery, and post-incident reviews.
- Conduct threat hunting activities to proactively identify malicious behaviors, attack
techniques, and hidden threats within the environment.
- Support forensic investigations by collecting and analyzing logs, system artifacts, and
security evidence.
3.Vulnerability & Risk Management
- Coordinate and perform vulnerability management programs, ensuring regular scanning,
risk prioritization, and timely remediation.
- Conduct advanced risk assessments to identify and address security gaps within
infrastructure, applications, and cloud environments.
- Implement risk mitigation strategies aligned with business objectives
4.Security Policy Development &Compliance
- Design, implement, and maintain security policies, standards, and procedures to meet
regulatory requirements (e.g., GDPR, HIPAA, NIST, ISO 27001).
- Guide compliance audits and ensure continuous improvement of security controls
5.Security Tool Management & Optimization
- Manage and enhance security tools, including firewalls, SIEM platforms, endpoint protection
solutions, and intrusion detection systems.
- Evaluate and integrate new security technologies to improve defense mechanisms.
6.Cloud Security
- Monitor cloud environments for security threats, policy violations, misconfigurations, and
suspicious activities.
- Review cloud security alerts and investigate identified security events.
- Support implementation and monitoring of cloud security controls, including identity
security, logging, and access management.
- Assist in cloud security posture reviews and remediation of identified risks.
- Work with Platform & Infrastructure team to strengthen cloud security governance and
operational controls.
7.Log Analysis & Automation
- Perform deep-dive analysis of security logs from multiple sources to identify anomalies and
potential threats.
- Automate security processes using scripting languages (Python, Bash) and security
orchestration tools.
8.Security Awareness & Mentorship
- Design and deliver security training programs for employees to foster a security-first culture.
- Support the execution of security awareness and phishing simulation programs across the
organization.
Qualifications & Experiences
Qualifications
- Bachelor's Degree in Cybersecurity, Information Technology, Computer Science, Information
Systems, or a related field.
- Relevant professional certifications such as CEH, CISSP, CCSP, AWS Security Specialty, or
equivalent are preferred.
Experience
- 3+ years of hands-on experience in Security Operations (SecOps), Cloud Security, and
Information Security.
- Proven expertise in managing enterprise security tools, incident response, and cloud
security best practices
Technical Skills
- Proficiency in SIEM platforms (e.g., Splunk, QRadar), EDR solutions, IDS/IPS, and
vulnerability management tools.
- Extensive experience with cloud security frameworks and tools (AWS, Azure, Google Cloud).
- Strong knowledge of encryption, IAM, secure cloud configurations, and microservices
security.
- Familiarity with automation and scripting (Python, Bash, PowerShell) for security operations
Knowledge
- Deep understanding of security frameworks (e.g., NIST, ISO 27001) and industry best
practices.
- Strong grasp of networking, threat intelligence, and security architecture principles.
- Experience with regulatory compliance and governance in security environments.
Problem-Solving & Leadership
- Exceptional analytical skills for assessing complex security threats and devising effective
solutions.
- Ability to lead security initiatives, drive continuous improvements, and influence security
decisions across teams.
Communication
- Excellent verbal and written communication skills, with the ability to convey complex
security concepts to technical and non-technical audiences.
- Strong documentation and reporting abilities to support security governance and
compliance efforts
a Necessity, not a Luxury
Skills
- Analytical
- AWS
- Azure
- Bash
- Business continuity
- Collections
- Communication
- Compliance
- Cybersecurity
- Event management
- Gcp
- Iam
- Leadership
- Networking
- Problem solving
- Process improvement
- Python
- Risk assessment
- Solution architecture
- Splunk
- Teamwork
