Principal Information Security Rep

Overview

In 2023, we are pursuing our ambitions to continue to enable organizations’ digital transformation. We are looking for our new SOC Engineer to join Axway’s family. Are you ready? Join us now!!

Together we can. Together we will. Axway is an enterprise integration company that’s been around for over 20 years to digitally transform businesses of all sizes with more than 11,000 customers in 100 countries. Axway revitalizes IT infrastructures to enable brilliant digital customer experiences to unlock new business innovation and capabilities. Axway puts companies on a secure, future-proof path for growth.

With Axway, you’ll go far because we’re better together. You’ll exchange ideas with a culturally rich global community of over 1,550 members who connect remotely or show up onsite in every time zone on the planet. And you’ll have the support and camaraderie of your Axway leadership and colleagues to remind you that you’re not alone on your journey and have taken one more step forward every day. Together we can accomplish anything. Learn more: www.axway.com.

Responsibilities

The selected candidate will:

·       Interface with technical teams to promote security initiatives, ensure policy compliance, and protect Axway sensitive data and critical infrastructure;

·       Take part in 24x7x365 monitoring, incident analysis, and respond to information security related threats including malware, policy violations, and advanced persistent threats;

·       Value documentation creation and communication, leverage technical experience to enhance team collaboration, and be self-driven to solve problems with a focus on achieving the team mission;

·       Collaborate with the Director, Cybersecurity and various IT Teams to support the IT Security Mission;

In addition, the successful candidate will have responsibility for the various policies and procedures related to our managed Security Operation Center:

Manage Security Analysis Process

  • Manage Triage and Response to alerts and incidents;
  • Define proper threat hunting and analysis procedures;
  • Define SLAs and incident reporting procedures;
  • Define and document proper procedures;
  • Document findings and recommendations;
  • In conjunction with CSG Management;
  • Create and maintain SOC process documentation;
  • Manage remediations and recommendations processes;
  • Define Incident Response processes.

Compliance and Security Reporting

  • Administer compliance reporting;
  • Administer Security Posture reporting;
  • Assist in reporting automation development;
  • Assist in evidence collection for company audits;

Policy Definition and Maintenance

  • Define and document policies in conjunction with CSG Management;
  • Maintain policy documentation;
  • Monitor and report on policy adherence/violations;

Security Tool Monitoring

  • Monitor System Upgrades, Management and Policy/Rules Tuning;
  • Evaluate and recommend automation;

Qualifications

Key qualities :

The foundation of success is found in the ability to work with diverse technical and non-technical teams to promote the implementation of security principles into the business processes.  A successful candidate must be able to communicate effectively (verbal and written) with our internal and external customers while analyzing and solving security problems collaboratively to ensure the best customer experience to our internal and external customers.  And in every case, strong ethical behavior must guide the work to protect our customers and their data. 

Requirements :

Minimum of 8+ years of progressively increasing responsibility in the following areas of expertise:

SOC Analyst or similar role

  • Proficient in triage and escalation of alerts;
    • Proficient in Incident Management and Response;
    • Understand and proven adherence to documented SOC processes and concepts;
    • Experience in reports preparation plus dashboard and documentation creation;

Technical IT Engineer (network, server, and/or desktop)

  • Detailed knowledge regarding the administration, use, securing and exploitation of common operating systems [ Windows, MAC OS, Linux, iOS, and Android];
    • Knowledge of various cloud and on-premises business applications, databases, and middleware;
    • Knowledge of server administration including patching, command line, configuration and maintenance;
    • Knowledge of network administration including patching, configuration and maintenance;
    • Experience managing implementation projects;
    • Establishing repeatable processes (manual and automated);

Security engineering

  • Administering SIEM [Splunk, QRadar, McAfee SIEM, ArcSight];
    • Administering AV technology [Symantec, McAfee, Crowdstrike, Cylance];
    • Experience administering AV policies and issues;
    • Administering security configurations for network firewalls [Checkpoint, Palo Alto, Cisco];
    • Administering security configurations for server, desktop and mobile systems [Windows, MacOS, Linux, Android, iOS];
    • Experience analyzing log sources originating from security and networking devices such as firewalls, routers, proxy, anti-virus products, and operating systems required.

Demonstrated knowledge and/or experience in the following:

  • In-depth knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.;
  • Strong understanding of networking technologies and architectures [TCPIP, OSPF, BGP];

Demonstrated Lead and/or Management experience

  • Ability to effectively communicate (verbal and written) with diverse technical and non-technical teams;
  • Ability to analyze and solve problems with limited direction;
  • Always maintain ethical behavior for all security processes;
  • A strong desire to learn and improve skill sets;
  • Ability to self-start, prioritize and complete work with minimal supervision;
  • Strong focus on customer service in all work efforts;

Other preferred skills:

  • CISSP, SANS GSEC, GCIH, GCIA, CompTIA Network+, Security+ or equivalent industry recognized certifications;
  • Intermediate to Expert knowledge of PowerShell and/or Python scripting;
  • Malware analysis experience;
  • Forensic recovery experience;

Career Development and Benefits:

Employee career development is one of Axway’s major company values; and we are deeply committed to helping them leverage the promotion and job mobility opportunities that are right for them.

This is what our candidates can expect from us if they choose to join our team:

  • personal development plan and training plan (technical, product & functional) in order to insure your integration and your performance
  • Competitive remuneration package and real benefits (gym access, Bookster, Safari, Amazon – E-library, Udemy platform, private medical insurance with dental included, team-buildings, Fun Day, Christmas Party etc.)
  • Potential for growth in an international company
  • Friendly working environment with experienced professionals
  • Flexible working hours when need and remote work policy (60% remote work starting 2022)
  • Extra paid vacation days – 25 days/year
  • Open games area – table tennis, sports and more!

In addition, Axway’s global presence creates opportunities for geographical mobility both within Axway subsidiaries.

#LI-AS1