15 Incident Response jobs in Hong Kong
Senior Security Operations Engineer
Posted 10 days ago
Job Viewed
Job Description
Join to apply for the Senior Security Operations Engineer role at Canonical
3 months ago Be among the first 25 applicants
Join to apply for the Senior Security Operations Engineer role at Canonical
Get AI-powered advice on this job and more exclusive features.
We have opened several senior/staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO. We are looking for a range of experience in these positions - at the high end we are looking for deep experience defending highly contested critical assets and high-value cyber targets against advanced persistent threats and state-level actors. We have more junior roles for exceptional individuals with a proven personal interest an engagement in cyber attack and defence, and outstanding academic and career performance even if experience is limited.
Our goal is to build an entirely new level of assurance and observable rigour into the open source supply chain. We have our own estate to monitor, but more broadly our goal is to raise the robustness of the entire global Ubuntu estate through the work of this team.
The Security Operations (SecOps) team is responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build processes. They are responsible for assuring the security and integrity of our own infrastructure and product deployments. They design and implement technical security controls that ensure security threats are automatically identified, contained and remediated. The team will also contribute ideas and requirements for Canonical product security, improving the resilience and robustness of all Ubuntu customers and users subject to cyber attack.
The SecOps team's mission is not only to secure Canonical, but also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies.
What you will do in this role:
- Implement and evolve Canonical's Security Operation Center
- Analyse and improve Canonical's security architecture
- Evaluate, select and implement new security tools and practices
- Identify, contain and guide the remediation of security threats and cyber attacks
- Grow the presence and thought leadership of Canonical SecOps practice
- Contribute to open source threat intelligence initiatives
- Drive threat modelling, table top exercises and other SecOps practices across Engineering, IS and Canonical
- Develop Canonical SecOps learning and development materials
- Publish blog posts, whitepapers and conference presentations
- Identify, implement and track SecOps KPIs
- Plan and deliver SecOps work in the framework of Canonical's agile engineering practice
- Work with Security leadership to present information and influence change
- An exceptional academic track record
- Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
- Previous professional experience working or leading a Security Operation Center
- Deep personal motivation to be at the forefront of technology security
- Expertise in threat modelling and risk management frameworks
- Knowledge of security architecture and market-leading security tools
- Experience contributing to, and consuming, threat intelligence feeds
- Experience in security risk management frameworks such as NIST CSF and ISO27001
- Experience in a security operations team or a security operations centre (SOC)
- Experience in offensive or defensive security teams with hands-on ability
- Experience with state-actor and other advanced persistent threats
We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.
- Distributed work environment with twice-yearly team sprints in person
- Personal learning and development budget of USD 2,000 per year
- Annual compensation review
- Recognition rewards
- Annual holiday leave
- Maternity and paternity leave
- Employee Assistance Programme
- Opportunity to travel to new locations to meet colleagues
- Priority Pass, and travel upgrades for long haul company events
Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.
Canonical is an equal opportunity employer
We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.
Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Software Development
Referrals increase your chances of interviewing at Canonical by 2x
Sign in to set job alerts for “Senior Security Engineer” roles. Linux Cryptography and Security Engineer Global Security GRC Analyst (Governance, Risk, and Compliance)We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrStaff Security Operations Engineer
Posted 11 days ago
Job Viewed
Job Description
Join to apply for the Staff Security Operations Engineer role at Canonical
3 months ago Be among the first 25 applicants
Join to apply for the Staff Security Operations Engineer role at Canonical
Get AI-powered advice on this job and more exclusive features.
We have opened several senior/staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO. We are looking for a range of experience in these positions - at the high end we are looking for deep experience defending highly contested critical assets and high-value cyber targets against advanced persistent threats and state-level actors. We have more junior roles for exceptional individuals with a proven personal interest an engagement in cyber attack and defence, and outstanding academic and career performance even if experience is limited.
Our goal is to build an entirely new level of assurance and observable rigour into the open source supply chain. We have our own estate to monitor, but more broadly our goal is to raise the robustness of the entire global Ubuntu estate through the work of this team.
The Security Operations (SecOps) team is responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build processes. They are responsible for assuring the security and integrity of our own infrastructure and product deployments. They design and implement technical security controls that ensure security threats are automatically identified, contained and remediated. The team will also contribute ideas and requirements for Canonical product security, improving the resilience and robustness of all Ubuntu customers and users subject to cyber attack.
The SecOps team's mission is not only to secure Canonical, but also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies.
What you will do in this role:
- Implement and evolve Canonical's SecOps security standards and playbooks
- Analyse and improve Canonical's security architecture
- Evaluate, select and implement new security tools and practices
- Identify, contain and guide the remediation of security threats and cyber attacks
- Grow the presence and thought leadership of Canonical SecOps practice
- Contribute to open source threat intelligence initiatives
- Drive threat modelling, table top exercises and other SecOps practices across Engineering, IS and Canonical
- Develop Canonical SecOps learning and development materials
- Publish blog posts, whitepapers and conference presentations
- Identify, implement and track SecOps KPIs
- Plan and deliver SecOps work in the framework of Canonical's agile engineering practice
- Work with Security leadership to present information and influence change
- An exceptional academic track record
- Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
- Drive and a track record of going above-and-beyond expectations
- Deep personal motivation to be at the forefront of technology security
- Expertise in threat modelling and risk management frameworks
- Knowledge of security architecture and market-leading security tools
- Experience contributing to, and consuming, threat intelligence feeds
- Experience in security risk management frameworks such as NIST CSF
- Experience with security standards such as ISO 27001
- Experience in a security operations team or a security operations centre (SOC)
- Experience in offensive or defensive security teams with hands-on ability
- Experience with state-actor and other advanced persistent threats
We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.
- Distributed work environment with twice-yearly team sprints in person
- Personal learning and development budget of USD 2,000 per year
- Annual compensation review
- Recognition rewards
- Annual holiday leave
- Maternity and paternity leave
- Employee Assistance Programme
- Opportunity to travel to new locations to meet colleagues
- Priority Pass, and travel upgrades for long haul company events
Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.
Canonical is an equal opportunity employer
We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.
Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Software Development
Referrals increase your chances of interviewing at Canonical by 2x
Sign in to set job alerts for “Security Engineer” roles. Global Security GRC Analyst (Governance, Risk, and Compliance) Linux Cryptography and Security Engineer Graduate Software Engineer, Open Source and Linux, Canonical Ubuntu Python and Kubernetes Software Engineer - Data, AI/ML & Analytics Python and Kubernetes Software Engineer - Data, Workflows, AI/ML & Analytics Software Engineer - Solutions EngineeringHong Kong, Hong Kong SAR
SGD24,000.00
-
SGD60,000.00
3 weeks ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrHead of Security Operations
Posted 13 days ago
Job Viewed
Job Description
Join to apply for the Head of Security Operations role at Canonical
Continue with Google Continue with Google
Join to apply for the Head of Security Operations role at Canonical
This global leadership role in cyber security is to manage the Security Operations (SecOps) team responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build processes. They are responsible for assuring the security and integrity of our own infrastructure and product deployments. They design and implement technical security controls that ensure security threats are automatically identified, contained and remediated. The team will also contribute ideas and requirements for Canonical product security, improving the resilience and robustness of all Ubuntu customers and users subject to cyber attack.
As a leader on cyber security in the company, the SecOps team manager will collaborate with our Organisational Learning and Development team to develop playbooks and facilitate SecOps training across Canonical. They will operate in a wider security organisation, run a high performing security team and improve Canonical's security posture. They will lead initiatives to integrate the team's insights into Canonical's broader software development process.
While this is a management position, we expect managers to be expert practitioners, able to lead by example, contribute at the highest level, and assess work based on their own professional experience and skill. Candidates should have deep, hands-on expertise with a range of open source and proprietary security tooling and practices, which they can integrate into a holistic next generation security solution across the breadth of Canonical's interests.
The SecOps team's mission is not only to secure Canonical, but also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies.
This role reports to the CISO.
What you will do in this role:
- Hire and mentor a team of outstanding technical security professionals
- Define Canonical's SecOps security standards and playbooks
- Own and drive the architecture and design of the SOC
- Analyse and improve Canonical's security architecture
- Evaluate, select and implement new security tools and practices
- Identify, contain and guide the remediation of security threats and cyber attacks
- Grow the presence and thought leadership of Canonical SecOps practice
- Contribute to open source threat intelligence initiatives
- Drive threat modelling, table top exercises and other SecOps practices across Engineering, IS and Canonical
- Develop Canonical SecOps learning and development materials
- Publish blog posts, whitepapers and conference presentations
- Identify, implement and track SecOps KPIs
- Plan and deliver SecOps work in the framework of Canonical's agile engineering practice
- Work with Security leadership to present information and influence change
- Proven track record of mitigating with advanced threat actors and nation state threats
- Expert technical understanding of SOCs from the ground up
- In depth knowledge of SOC architecture and design including strategies for logging, firewalls, network segmentation, honeypots etc
- Someone who understands how the SOC works not just how to use it
- Expert in Linux security
- Ability to define, implement, automate and measure effective incident response playbooks
- Knowledge of security architecture and market-leading security tools
- Experience contributing to, and consuming, threat intelligence feeds
- Experience in security risk management frameworks such as NIST CSF
- An exceptional academic track record from both high school and university
- Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
- Drive and a track record of going above-and-beyond expectations
- Deep personal motivation to be at the forefront of technology security
- Leadership and management ability
- Excellent business English writing and presentation skills
- Confidence to report security performance metrics with accountability for accuracy and completeness
- Experience in offensive or defensive security teams with hands-on ability
- Experience with open source security tools
- Experience with security standards such as ISO 27001
- Experience with security posture management of corporate endpoitns
- Seniority level Director
- Employment type Full-time
- Job function Other, Information Technology, and Management
- Industries Software Development
Referrals increase your chances of interviewing at Canonical by 2x
Get notified about new Head of Security jobs in Hong Kong SAR .
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr(Senior) Security Operations Engineer
Posted 20 days ago
Job Viewed
Job Description
Join to apply for the (Senior) Security Operations Engineer role at OSL
1 day ago Be among the first 25 applicants
Join to apply for the (Senior) Security Operations Engineer role at OSL
Get AI-powered advice on this job and more exclusive features.
- Maintain and enhance cybersecurity tools and solutions, including SIEM, EDR, SOAR, Vulnerability Management, HIDS/NIDS technologies, Data Loss Prevention, Network Proxy and Open-Source Tools.
- Maintain and enhance log sources (e.g., firewalls, servers, endpoints, cloud platforms) for centralized monitoring, ensuring comprehensive visibility and correlation in SIEM platforms.
- Maintain secure configurations for network devices, proxies, and cloud infrastructure
- Automate security processes using scripting (e.g., Python, Bash) to enhance threat detection, log analysis, and incident response workflows.
- Conduct vulnerability assessments and support the end-to-end vulnerability management lifecycle, prioritizing remediation for critical systems.
- Integrate security controls into development pipelines, ensuring secure software development and deployment.
- Monitor and analyze security logs to detect anomalies, cross-referencing with approved domains and app traffic.
- Support digital forensic investigations and e-Discovery, analyzing logs and endpoints for evidence of compromise.
Requirement
- At least 5-8 years of experience in Information Security, Computer Science, or related field, or equivalent experience.
- Working Experience with SIEM, EDR, SOAR, Vulnerability Management, HIDS/NIDS technologies, Network Proxy and Open-Source Tools
- Strong scripting skills in Python, Bash, or similar languages for automation and log analysis.
- Experience with cloud security (e.g., AWS, GCP, Azure) and managing log sources from cloud platforms.
- Experience with DevSecOps and integrating security into CI/CD pipelines.
- Exposure to container security (e.g., Docker, Kubernetes) and cloud-native tools.
- Understanding of network protocols, firewall configurations, and secure proxies.
- Excellent problem-solving and analytical skills, with a focus on process automation.
- Ability to work under pressure, managing multiple priorities in a fast-paced environment.
- Collaborative mindset, working effectively with diverse teams to champion cybersecurity
- Seniority level Director
- Employment type Full-time
- Industries Securities and Commodity Exchanges
Referrals increase your chances of interviewing at OSL by 2x
Sign in to set job alerts for “Senior Security Engineer” roles. Security Architect - Director/Executive Level Securities Trade Data Modeling Business Analyst - Leading Investment Bank Analyst - Dealer, Equities Institutional Business, Vickers Securities (Licensed) ELV System Engineer or Manager(ICT & Security) Web3 Security Engineer (Wallet Security) IT Support Analyst for Security Financing Analyst, Credit Monitoring, Securities FinancingWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSenior Security Operations Engineer
Posted 10 days ago
Job Viewed
Job Description
Join to apply for the Senior Security Operations Engineer role at Canonical
3 months ago Be among the first 25 applicants
Join to apply for the Senior Security Operations Engineer role at Canonical
Get AI-powered advice on this job and more exclusive features.
We have opened several senior/staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO. We are looking for a range of experience in these positions - at the high end we are looking for deep experience defending highly contested critical assets and high-value cyber targets against advanced persistent threats and state-level actors. We have more junior roles for exceptional individuals with a proven personal interest an engagement in cyber attack and defence, and outstanding academic and career performance even if experience is limited.
Our goal is to build an entirely new level of assurance and observable rigour into the open source supply chain. We have our own estate to monitor, but more broadly our goal is to raise the robustness of the entire global Ubuntu estate through the work of this team.
The Security Operations (SecOps) team is responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build processes. They are responsible for assuring the security and integrity of our own infrastructure and product deployments. They design and implement technical security controls that ensure security threats are automatically identified, contained and remediated. The team will also contribute ideas and requirements for Canonical product security, improving the resilience and robustness of all Ubuntu customers and users subject to cyber attack.
The SecOps team's mission is not only to secure Canonical, but also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies.
What you will do in this role:
- Implement and evolve Canonical's Security Operation Center
- Analyse and improve Canonical's security architecture
- Evaluate, select and implement new security tools and practices
- Identify, contain and guide the remediation of security threats and cyber attacks
- Grow the presence and thought leadership of Canonical SecOps practice
- Contribute to open source threat intelligence initiatives
- Drive threat modelling, table top exercises and other SecOps practices across Engineering, IS and Canonical
- Develop Canonical SecOps learning and development materials
- Publish blog posts, whitepapers and conference presentations
- Identify, implement and track SecOps KPIs
- Plan and deliver SecOps work in the framework of Canonical's agile engineering practice
- Work with Security leadership to present information and influence change
- An exceptional academic track record
- Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
- Previous professional experience working or leading a Security Operation Center
- Deep personal motivation to be at the forefront of technology security
- Expertise in threat modelling and risk management frameworks
- Knowledge of security architecture and market-leading security tools
- Experience contributing to, and consuming, threat intelligence feeds
- Experience in security risk management frameworks such as NIST CSF and ISO27001
- Experience in a security operations team or a security operations centre (SOC)
- Experience in offensive or defensive security teams with hands-on ability
- Experience with state-actor and other advanced persistent threats
We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.
- Distributed work environment with twice-yearly team sprints in person
- Personal learning and development budget of USD 2,000 per year
- Annual compensation review
- Recognition rewards
- Annual holiday leave
- Maternity and paternity leave
- Employee Assistance Programme
- Opportunity to travel to new locations to meet colleagues
- Priority Pass, and travel upgrades for long haul company events
Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.
Canonical is an equal opportunity employer
We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.
Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Software Development
Referrals increase your chances of interviewing at Canonical by 2x
Sign in to set job alerts for “Senior Security Engineer” roles. Linux Cryptography and Security Engineer Global Security GRC Analyst (Governance, Risk, and Compliance)We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrHead of Security Operations
Posted 10 days ago
Job Viewed
Job Description
Join to apply for the Head of Security Operations role at Canonical
Continue with Google Continue with Google
Join to apply for the Head of Security Operations role at Canonical
This global leadership role in cyber security is to manage the Security Operations (SecOps) team responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build processes. They are responsible for assuring the security and integrity of our own infrastructure and product deployments. They design and implement technical security controls that ensure security threats are automatically identified, contained and remediated. The team will also contribute ideas and requirements for Canonical product security, improving the resilience and robustness of all Ubuntu customers and users subject to cyber attack.
As a leader on cyber security in the company, the SecOps team manager will collaborate with our Organisational Learning and Development team to develop playbooks and facilitate SecOps training across Canonical. They will operate in a wider security organisation, run a high performing security team and improve Canonical's security posture. They will lead initiatives to integrate the team's insights into Canonical's broader software development process.
While this is a management position, we expect managers to be expert practitioners, able to lead by example, contribute at the highest level, and assess work based on their own professional experience and skill. Candidates should have deep, hands-on expertise with a range of open source and proprietary security tooling and practices, which they can integrate into a holistic next generation security solution across the breadth of Canonical's interests.
The SecOps team's mission is not only to secure Canonical, but also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies.
This role reports to the CISO.
What you will do in this role:
- Hire and mentor a team of outstanding technical security professionals
- Define Canonical's SecOps security standards and playbooks
- Own and drive the architecture and design of the SOC
- Analyse and improve Canonical's security architecture
- Evaluate, select and implement new security tools and practices
- Identify, contain and guide the remediation of security threats and cyber attacks
- Grow the presence and thought leadership of Canonical SecOps practice
- Contribute to open source threat intelligence initiatives
- Drive threat modelling, table top exercises and other SecOps practices across Engineering, IS and Canonical
- Develop Canonical SecOps learning and development materials
- Publish blog posts, whitepapers and conference presentations
- Identify, implement and track SecOps KPIs
- Plan and deliver SecOps work in the framework of Canonical's agile engineering practice
- Work with Security leadership to present information and influence change
- Proven track record of mitigating with advanced threat actors and nation state threats
- Expert technical understanding of SOCs from the ground up
- In depth knowledge of SOC architecture and design including strategies for logging, firewalls, network segmentation, honeypots etc
- Someone who understands how the SOC works not just how to use it
- Expert in Linux security
- Ability to define, implement, automate and measure effective incident response playbooks
- Knowledge of security architecture and market-leading security tools
- Experience contributing to, and consuming, threat intelligence feeds
- Experience in security risk management frameworks such as NIST CSF
- An exceptional academic track record from both high school and university
- Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
- Drive and a track record of going above-and-beyond expectations
- Deep personal motivation to be at the forefront of technology security
- Leadership and management ability
- Excellent business English writing and presentation skills
- Confidence to report security performance metrics with accountability for accuracy and completeness
- Experience in offensive or defensive security teams with hands-on ability
- Experience with open source security tools
- Experience with security standards such as ISO 27001
- Experience with security posture management of corporate endpoitns
- Seniority level Director
- Employment type Full-time
- Job function Other, Information Technology, and Management
- Industries Software Development
Referrals increase your chances of interviewing at Canonical by 2x
Get notified about new Head of Security jobs in Hong Kong SAR .
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrStaff Security Operations Engineer
Posted 11 days ago
Job Viewed
Job Description
Join to apply for the Staff Security Operations Engineer role at Canonical
3 months ago Be among the first 25 applicants
Join to apply for the Staff Security Operations Engineer role at Canonical
Get AI-powered advice on this job and more exclusive features.
We have opened several senior/staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO. We are looking for a range of experience in these positions - at the high end we are looking for deep experience defending highly contested critical assets and high-value cyber targets against advanced persistent threats and state-level actors. We have more junior roles for exceptional individuals with a proven personal interest an engagement in cyber attack and defence, and outstanding academic and career performance even if experience is limited.
Our goal is to build an entirely new level of assurance and observable rigour into the open source supply chain. We have our own estate to monitor, but more broadly our goal is to raise the robustness of the entire global Ubuntu estate through the work of this team.
The Security Operations (SecOps) team is responsible for design, implementation and evolution of Canonical security practices, techniques, tools, systems and policies. The team is the primary owner of strategy and practices that determine how Canonical secures its data, internal infrastructure and build processes. They are responsible for assuring the security and integrity of our own infrastructure and product deployments. They design and implement technical security controls that ensure security threats are automatically identified, contained and remediated. The team will also contribute ideas and requirements for Canonical product security, improving the resilience and robustness of all Ubuntu customers and users subject to cyber attack.
The SecOps team's mission is not only to secure Canonical, but also to contribute to the security of the wider open source ecosystem. They might share knowledge through public presentations and industry events, and share threat intelligence with the wider community or represent Canonical in sector-specific governance bodies.
What you will do in this role:
- Implement and evolve Canonical's SecOps security standards and playbooks
- Analyse and improve Canonical's security architecture
- Evaluate, select and implement new security tools and practices
- Identify, contain and guide the remediation of security threats and cyber attacks
- Grow the presence and thought leadership of Canonical SecOps practice
- Contribute to open source threat intelligence initiatives
- Drive threat modelling, table top exercises and other SecOps practices across Engineering, IS and Canonical
- Develop Canonical SecOps learning and development materials
- Publish blog posts, whitepapers and conference presentations
- Identify, implement and track SecOps KPIs
- Plan and deliver SecOps work in the framework of Canonical's agile engineering practice
- Work with Security leadership to present information and influence change
- An exceptional academic track record
- Undergraduate degree in Computer Science or STEM, or a compelling narrative about your alternative path
- Drive and a track record of going above-and-beyond expectations
- Deep personal motivation to be at the forefront of technology security
- Expertise in threat modelling and risk management frameworks
- Knowledge of security architecture and market-leading security tools
- Experience contributing to, and consuming, threat intelligence feeds
- Experience in security risk management frameworks such as NIST CSF
- Experience with security standards such as ISO 27001
- Experience in a security operations team or a security operations centre (SOC)
- Experience in offensive or defensive security teams with hands-on ability
- Experience with state-actor and other advanced persistent threats
We consider geographical location, experience, and performance in shaping compensation worldwide. We revisit compensation annually (and more often for graduates and associates) to ensure we recognise outstanding performance. In addition to base pay, we offer a performance-driven annual bonus. We provide all team members with additional benefits, which reflect our values and ideals. We balance our programs to meet local needs and ensure fairness globally.
- Distributed work environment with twice-yearly team sprints in person
- Personal learning and development budget of USD 2,000 per year
- Annual compensation review
- Recognition rewards
- Annual holiday leave
- Maternity and paternity leave
- Employee Assistance Programme
- Opportunity to travel to new locations to meet colleagues
- Priority Pass, and travel upgrades for long haul company events
Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects and the platform for AI, IoT and the cloud, we are changing the world on a daily basis. We recruit on a global basis and set a very high standard for people joining the company. We expect excellence - in order to succeed, we need to be the best at what we do. Canonical has been a remote-first company since its inception in 2004. Working here is a step into the future, and will challenge you to think differently, work smarter, learn new skills, and raise your game.
Canonical is an equal opportunity employer
We are proud to foster a workplace free from discrimination. Diversity of experience, perspectives, and background create a better work environment and better products. Whatever your identity, we will give your application fair consideration.
Seniority level
- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology
- Industries Software Development
Referrals increase your chances of interviewing at Canonical by 2x
Sign in to set job alerts for “Security Engineer” roles. Global Security GRC Analyst (Governance, Risk, and Compliance) Linux Cryptography and Security Engineer Graduate Software Engineer, Open Source and Linux, Canonical Ubuntu Python and Kubernetes Software Engineer - Data, AI/ML & Analytics Python and Kubernetes Software Engineer - Data, Workflows, AI/ML & Analytics Software Engineer - Solutions EngineeringHong Kong, Hong Kong SAR
SGD24,000.00
-
SGD60,000.00
3 weeks ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrBe The First To Know
About the latest Incident response Jobs in Hong Kong !
(Senior) Security Operations Engineer
Posted 16 days ago
Job Viewed
Job Description
Join to apply for the (Senior) Security Operations Engineer role at OSL
1 day ago Be among the first 25 applicants
Join to apply for the (Senior) Security Operations Engineer role at OSL
Get AI-powered advice on this job and more exclusive features.
- Maintain and enhance cybersecurity tools and solutions, including SIEM, EDR, SOAR, Vulnerability Management, HIDS/NIDS technologies, Data Loss Prevention, Network Proxy and Open-Source Tools.
- Maintain and enhance log sources (e.g., firewalls, servers, endpoints, cloud platforms) for centralized monitoring, ensuring comprehensive visibility and correlation in SIEM platforms.
- Maintain secure configurations for network devices, proxies, and cloud infrastructure
- Automate security processes using scripting (e.g., Python, Bash) to enhance threat detection, log analysis, and incident response workflows.
- Conduct vulnerability assessments and support the end-to-end vulnerability management lifecycle, prioritizing remediation for critical systems.
- Integrate security controls into development pipelines, ensuring secure software development and deployment.
- Monitor and analyze security logs to detect anomalies, cross-referencing with approved domains and app traffic.
- Support digital forensic investigations and e-Discovery, analyzing logs and endpoints for evidence of compromise.
Requirement
- At least 5-8 years of experience in Information Security, Computer Science, or related field, or equivalent experience.
- Working Experience with SIEM, EDR, SOAR, Vulnerability Management, HIDS/NIDS technologies, Network Proxy and Open-Source Tools
- Strong scripting skills in Python, Bash, or similar languages for automation and log analysis.
- Experience with cloud security (e.g., AWS, GCP, Azure) and managing log sources from cloud platforms.
- Experience with DevSecOps and integrating security into CI/CD pipelines.
- Exposure to container security (e.g., Docker, Kubernetes) and cloud-native tools.
- Understanding of network protocols, firewall configurations, and secure proxies.
- Excellent problem-solving and analytical skills, with a focus on process automation.
- Ability to work under pressure, managing multiple priorities in a fast-paced environment.
- Collaborative mindset, working effectively with diverse teams to champion cybersecurity
- Seniority level Director
- Employment type Full-time
- Industries Securities and Commodity Exchanges
Referrals increase your chances of interviewing at OSL by 2x
Sign in to set job alerts for “Senior Security Engineer” roles. Security Architect - Director/Executive Level Securities Trade Data Modeling Business Analyst - Leading Investment Bank Analyst - Dealer, Equities Institutional Business, Vickers Securities (Licensed) ELV System Engineer or Manager(ICT & Security) Web3 Security Engineer (Wallet Security) IT Support Analyst for Security Financing Analyst, Credit Monitoring, Securities FinancingWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSr Security Operations Engineer (HK)
Posted 4 days ago
Job Viewed
Job Description
2 weeks ago Be among the first 25 applicants
Join our dynamic team as a Cybersecurity Engineer, where you will play a vital role in maintaining and enhancing our cybersecurity tools and solutions. This position offers the opportunity to work across various platforms, ensuring robust security measures are integrated seamlessly into our operations.
Responsibilities
- Maintain and enhance cybersecurity tools, including SIEM, EDR, SOAR, Vulnerability Management, HIDS/NIDS, Data Loss Prevention, Network Proxy, and Open-Source Tools.
- Ensure comprehensive visibility by managing log sources (e.g., firewalls, servers, endpoints, cloud platforms) for centralized monitoring in SIEM platforms.
- Securely configure network devices, proxies, and cloud infrastructure to maintain operational integrity.
- Automate security processes using scripting (Python, Bash) to improve threat detection, log analysis, and incident response workflows.
- Conduct vulnerability assessments and manage the vulnerability lifecycle, prioritizing remediation for critical systems.
- Integrate security controls into development pipelines to ensure secure software development and deployment.
- Monitor and analyze security logs to detect anomalies, cross-referencing with approved domains and application traffic.
- Support digital forensic investigations and e-Discovery by analyzing logs and endpoints for evidence of compromise.
Requirements
- At least 5-8 years of experience in Information Security, Computer Science, or a related field, or equivalent experience.
- Proficient with SIEM, EDR, SOAR, Vulnerability Management, HIDS/NIDS, Network Proxy, and Open-Source Tools.
- Strong scripting skills in Python, Bash, or similar languages for automation and log analysis.
- Experience with cloud security (AWS, GCP, Azure) and managing log sources from cloud platforms.
- Familiarity with DevSecOps practices and integrating security into CI/CD pipelines.
- Knowledge of container security (Docker, Kubernetes) and cloud-native tools.
- Understanding of network protocols, firewall configurations, and secure proxies.
- Excellent problem-solving and analytical skills, with a focus on process automation.
- Ability to thrive under pressure, managing multiple priorities in a fast-paced environment.
- Collaborative mindset, effectively working with diverse teams to champion cybersecurity.
About OSL
As a subsidiary of the publicly listed OSL Group (HKEX: 863.HK), OSL Digital Securities is Hong Kong’s first and most established SFC-licensed and insured digital asset platform. Operating since 2018, the platform provides institutional-grade digital asset services to corporations, financial institutions, professional and retail investors.
OSL Core values:
Be customer-centered
Be a high-performing team
Be relentlessly innovative
Be an owner
Be geared toward action
Be compliant
Seniority level- Seniority level Mid-Senior level
- Employment type Full-time
- Job function Information Technology, Analyst, and General Business
- Industries Financial Services, Information Services, and Technology, Information and Media
Referrals increase your chances of interviewing at OSL by 2x
Sign in to set job alerts for “Security Engineer” roles. CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER Senior Security Consultant/ Cybersecurity Manager (CISSP, CISA, CISM) - 60K+BCentral & Western District, Hong Kong SAR 1 week ago
Information Technology Cybersecurity Analyst / SpecialistEastern District, Hong Kong SAR 1 week ago
Analyst, Cyber Security (Ref: DTD194/25, 10514) Site Reliability Engineer – Global Fintech Firm – HKD$720k – HKD$1.2mill. + Bonus Cybersecurity Detection and Response Analyst Low Latency Network Engineer (VP) - Leading Investment Bank Web3 Security Engineer (Wallet Security)Central & Western District, Hong Kong SAR 1 week ago
Eastern District, Hong Kong SAR 3 weeks ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-LjbffrSr Security Operations Specialist (HK)
Posted 22 days ago
Job Viewed
Job Description
3 days ago Be among the first 25 applicants
Get AI-powered advice on this job and more exclusive features.
Join our fast-paced team as a Senior Security Operations Specialist , contributing to global security operations across various entities at the group level. In this role, you'll utilize advanced tools for threat detection, incident response, and proactive security measures, ensuring robust protection against emerging cyber threats.
Responsibilities
- Utilize cybersecurity tools like SIEM, EDR, and SOAR for effective threat management.
- Stay updated on emerging cyber threats, vulnerabilities, and mitigation techniques.
- Lead incident response, management, and investigations.
- Conduct purple team exercises and threat hunting to identify risks.
- Analyze threat actors and their tactics through detailed research.
- Perform malware analysis to prevent future attacks.
- Oversee actionable Threat Intelligence (TI) collection and execution.
- Propose and implement security initiatives to combat emerging threats.
- Develop and update playbooks and documentation for security processes.
- Provide expertise in creating and maintaining security frameworks and policies.
- Evaluate new software or products for security projects.
- Promote security awareness and conduct role-based training.
- Communicate cybersecurity risks effectively to stakeholders.
Requirements
- Must have 5-8 years of experience in Information Security with hands-on expertise in Security Engineering, Operations, Cyber Threat Intelligence, Digital Forensics, Incident Response, Endpoint, or Cloud Security.
- Must be skilled with security event tools and incident response within a blue team context.
- Nice to have: Experience in Red Teaming and Penetration Testing (PenTest), as well as in-house security operations.
- Proficient with SIEM, EDR, SOAR, Vulnerability Management, and Open-Source Tools.
- Familiar with cloud environments such as AWS, Azure, and GCP.
- Knowledge of malware reverse-engineering techniques.
- Proficient in one coding language (Python, Java, etc.).
- Strong understanding of the MITRE ATT&CK framework.
- Professional English proficiency; Chinese is a plus.
About OSL
As a subsidiary of the publicly listed OSL Group (HKEX: 863.HK), OSL Digital Securities is Hong Kong’s first and most established SFC-licensed and insured digital asset platform. Operating since 2018, the platform provides institutional-grade digital asset services to corporations, financial institutions, professional and retail investors.
OSL Core values:
Be customer-centered
Be a high-performing team
Be relentlessly innovative
Be an owner
Be geared toward action
Be compliant
Seniority level- Seniority level Not Applicable
- Employment type Full-time
- Job function Information Technology, Consulting, and Analyst
- Industries Financial Services, Banking, and IT Services and IT Consulting
Referrals increase your chances of interviewing at OSL by 2x
Sign in to set job alerts for “Security Operations Specialist” roles. Senior IT Operations and Security Manager - Prominent Tech Firm Cyber Security Operations (SOC) Manager - Leading Professional Firm CYBER SECURITY AND RISK ANALYST / CYBER SECURITY ENGINEER Associate - IT Security (Corporate Bank) Security Governance Specialist (VP to Director) – Leading Global Tech Firm - Hong Kong Manager, Cyber Security Operations (MJ006042)Wan Chai District, Hong Kong SAR 2 months ago
Security and Privacy Compliance Senior Specialist (SEA)-Hong Kong SAR Technology Consulting - Cyber Security - Security Governance - Senior Associate - Hong Kong Service Delivery Manager (Cybersecurity) Technology Consulting - Cyber Security - Blue Team - Senior Associate - Hong Kong IT Support Analyst for Security Financing Technology Consulting - Cyber Security - Privacy - Senior Associate - Hong Kong Technology Consulting - Cyber Security and Privacy Protection - Senior Associate - Hong Kong Cybersecurity Governance and Risk Specialist Technology Consulting - Cyber Security - Red Team - Senior Associate - Hong Kong Consulting - Financial Services - Cyber Security - Cyber Governance - Senior Consultant - Hong Kong Securities Trade Data Modeling Business Analyst - Leading Investment BankWe’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.
#J-18808-Ljbffr