Identity & Access Management Engineer at Farfetch, enhancing security operations in luxury e-commerce. Collaborating with engineers and stakeholders for scalable IAM solutions.
Responsibilities
Act as the functional lead for the Lisbon DART unit, managing local team members and overseeing the day-to-day security response operations for the region.
Manage security response workflows and collaboration across both Coupang and Farfetch environments.
Lead and coordinate responses to complex security anomalies, intrusion attempts, and breaches; oversee root-cause analysis and comprehensive executive reporting.
Drive advanced threat-hunting initiatives across cloud, endpoint, and network environments to identify undetected threats.
Serve as the final escalation point for the SOC and provide expert guidance and technical mentorship to Senior engineers and analysts.
Continuously improve and standardize incident response policies, automated playbooks, and SOC operational processes.
Partner with global engineering and business leaders through clear, technical, and executive-level communication to neutralize threats and mitigate vulnerabilities.
Participate in and oversee the on-call rotation to ensure 24/7 response readiness for urgent security events.
Requirements
You have ~10 years experience in Information Security, with at least 7+ years specifically dedicated to Cyber Security Incident Response (CSIRT) or Digital Forensics.
Experienced in a lead or managerial role, preferably within a global or regional office structure.
A professional with advanced hands-on experience analyzing and securing events within AWS, Azure or other major Cloud environments.
An expert in host-based investigations (Windows/Linux) and analyzing logs from EDR, HIPS, DLP, and SaaS solutions.
You demonstrate mastery of querying SIEM solutions and analyzing high-volume "big data" logs to identify sophisticated patterns of compromise.
Able to lead the automation of response workflows using Python, Bash, or PowerShell.
Knowledgeable of mitigating web-based security events using CDN solutions like Akamai or Cloudflare.
Graduate in Computer Science, Cybersecurity, or equivalent practical experience.
Advanced industry credentials such as GCIH, GCFA, GNFA, CISSP, or OSCP.
Deep understanding of container security (Kubernetes, Docker) and network forensics (packet analysis).
Experience operating SIEM platforms and developing custom detection use cases.
Fluency in English is required; proficiency in Portuguese or Korean is a plus for regional and headquarters coordination.
Benefits
Health insurance for the whole family, flexible working environment and well-being support and tools
Extra days off, sabbatical program and days for you to give back for the community
Manager overseeing Command Systems hardware engineering at Northrop Grumman. Driving hardware design, development, and integration for various defense projects.
Técnico em Segurança do Trabalho realizando visitas técnicas e treinamentos para elaboração do PGR e NR's. Atuando na área de segurança do trabalho na empresa Perfil Medicina.
Security Sergeant at Busch Gardens ensuring safety for guests and employees. Leading the security team in a fast - paced amusement park environment with a focus on guest service and safety.
Cybersecurity & Information Technology Faculty position at Austin Community College. Instructing students on cybersecurity principles and practices in a multicultural setting.
Technical Engineer providing cybersecurity expertise and collaborating with sales teams for Power Grid Cybersecurity solutions. Supporting customers in the transition to secure digital power grids.
Associate Cybersecurity Consultant at Datacom working in Wellington or Auckland, delivering managed security services and advising clients on cybersecurity strategy.
Information Security Engineer improving cloud security and conducting risk assessments at fintech company. Collaborating with teams to ensure compliance and integrate security measures across the organization.
Security Guard ensuring safety of residential and commercial properties while performing routine patrols. Responsibilities include access verification, surveillance monitoring, and incident reporting.
Principal Security Engineer managing enterprise security SIEM and data ingestion stack. Leading a team to innovate and optimize cybersecurity solutions while ensuring compliance.