Security Engineer enhancing security platform and controls at TMGM, an expanding CFD and Forex broker. Collaborate with teams to improve security measures in cloud and on-premises environments.
Responsibilities
Operate and fine-tune EDR, ensuring high visibility and timely response to detections.
Investigate alerts, triage incidents, and coordinate remediation with IT and engineering teams.
Develop and maintain detection rules, response playbooks, and operational dashboards.
Run regular vulnerability scans across endpoints, servers, and cloud workloads.
Prioritise findings based on exploitability and asset criticality.
Work with system owners to track remediation progress and verify fixes.
Review and improve AWS configurations using AWS tools or CNAPP / CSPM monitoring tools (e.g., Wiz, Orca)
Support secure architecture and IaC practices (Terraform, CloudFormation) with dev teams.
Automate checks and alerting for misconfigurations and policy violations.
Support developers on secure coding practices and pipeline integration (e.g., Snyk).
Review secrets management, API credential handling, and CI/CD pipeline security.
Implement and maintain least privilege and MFA policies across systems.
Assist with SSO/SCIM integrations (e.g., Entra ID, 1Password, Cloudflare Zero Trust).
Work alongside IT Operations and Cloud teams to deploy, harden, and monitor security tools.
Participate in incident response exercises, phishing simulations, and post-incident reviews.
Contribute to process documentation and internal knowledge base (e.g., runbooks, playbooks).
Requirements
4–6 years of hands-on security experience, ideally in endpoint protection, cloud security, or vulnerability management.
Strong working knowledge of AWS security services, IAM, and network fundamentals.
Practical experience with EDR tools (CrowdStrike, Defender, etc.) and vulnerability scanners (Qualys, Tenable, etc.).
Solid understanding of incident response, detection engineering, and access control principles.
Exposure to security frameworks (ISO 27001, SOC 2, NIST) is a plus, but not mandatory.
Clear communicator who can explain security findings to both technical and non-technical teams.
Benefits
Hybrid working arrangement - 2 Days of remote work per week
Opportunities for enriching career growth, including exposure to regional contexts
Complimentary snacks and beverages available in the office pantry
Cybersecurity Engineer at BECU securing enterprise infrastructure and managing multiple cybersecurity solutions. Collaborating on network security, incident response, and implementing security best practices.
Security & Emergency Management Manager overseeing site security, life safety, and emergency management systems at Hyundai. Engaging in corporate - level program deployment and operational oversight across multiple locations.
SAP Security Consultant focusing on role design and implementation for S/4HANA and ERP systems. Engaging in testing, workshops, and supporting SAP authorizations.
Security personnel for A PaRK International School in Lisbon, responsible for ensuring efficient access control and emergency response. Maintaining safety regulations and assisting students and visitors.
Information Systems Security Engineer at CACI supporting KMI and Crypto projects. Involves coordination for accreditation and security documentation management.
Cyber Security Intern assisting Cyber Developers in security testing and automation tasks. Engaging in hands - on experience while learning from experienced security professionals in a supportive environment.
Cybersecurity Support Analyst supporting government accounts for Hewlett Packard Enterprise. Responsibilities include maintaining security systems and mentoring team members in a hybrid role.
Security Officer ensuring safety and order at Metropolitan School of Panama through surveillance and reporting. Collaborating with school community and monitoring security systems.
Project Manager for Passive Safety at Volkswagen AG, responsible for strategic project planning and execution. Ensuring compliance with technical and financial objectives while optimizing resources.