Security Operations Engineer
About the role
The Security Operations Engineer is responsible for the development, design, and implementation of secure solutions and processes for the corporation and sub-entities. They identify, implement, support and maintain tool-driven and highly automated solutions to deliver key security management processes using existing tool sets and/or identify new tools as innovations in security are realized. They develop corporate governance in support of MAR, FINRA and other compliance/governance policies/procedures following NIST/Hi-Trust best practices. They are responsible for ensuring that the software development lifecycle (SDLC) follows security best practices and adhering to secure coding principles by facilitating the scanning and testing of software applications against security risks/vulnerabilities before release.
Responsibilities
- Lead Security Operations integrations between various security technologies and business software within existing infrastructure platforms (e.g. on premises, cloud, and hybrid). Work closely with various technology and project teams to engineer and implement security controls with a focus on Security Operations.
- Builds and Reviews security utilities, playbooks and tools for internal use that enables high speed and wide scale security monitoring and coverage over our enterprise data and intellectual property. Evaluate and recommend use of machine learning, artificial intelligence, and data analytic services to enable security-related action based events and triggers.
- Respond to, resolve, and escalate security incidents to all appropriate parties. Report unresolved security exposures, misuse of resources, and noncompliance situations using defined escalation processes. Actively engage in threat hunting using manual and automated tools.
- Provide mentoring for other team members and other IT and business colleagues in order to improve overall security understanding and awareness within the organization.
- Designs, implements, and maintains Workday security architecture, including security groups, domain security policies, business process security configuration, and advanced access control models.
- Engineers automated identity governance and lifecycle integrations between Workday and enterprise IAM platforms, enabling secure provisioning, deprovisioning, SSO, compliance reporting, access certification, segregation of duties enforcement, and audit readiness.
Skills
- Identify, architect, implement, support and maintain tool-driven and highly automated solutions to deliver key security management processes for identity management, vulnerability management, application security, incident response, technology governance, and threat intelligence using existing tool sets and/or identify new tools as innovations in security are realized.
- Expert experience with Workday Security administration and architecture, including security groups, domain security policies, business process security, role-based access controls, and segregation of duties controls.
- Experience designing and supporting Workday integrations with IAM, IGA, PAM, SSO, and provisioning platforms.
- Experience implementing SAML, OAuth, and related authentication and authorization technologies within Workday environments.
- Experience supporting Workday security audit, compliance, governance, and identity lifecycle management requirements.