About the job
#LI-DNI
Join Our Dynamic Security Team!
- As a Security Engineer at Tosscareers, you will be part of the Information & Security Tribe, handling technical operations within the Security Purple Team and Security Green Team.
- The Security Purple Team is a hybrid of Red and Blue teams, focusing on event analysis, incident response, vulnerability assessments, penetration testing, and scenario-based threat modeling.
- We prioritize customer safety and collaborate closely with all teams to enhance Toss's security measures.
Your Responsibilities Will Include:
- Designing, building, and operating SIEM (Splunk, Opensearch, Elasticsearch).
- Creating robust architectures for secure log collection across various environments (On-Prem, AWS, K8S).
- Ensuring stable operation and enhancement of log pipelines (NIFI, KAFKA, Hadoop).
- Establishing and managing logging/monitoring systems for performance optimization and incident response of the Security Data Platform (SIEM).
- Designing and normalizing standard models for various logs to improve log analysis efficiency.
We Are Looking For Candidates Who:
- Have experience in designing and building scalable and optimized SIEM systems.
- Can identify and resolve issues in log collection, data loading, search, and query building processes.
- Have worked with heterogeneous security log pipelines in On-Prem and AWS environments (ETL, ELT).
- Have standardized various forms of security logs (OCSF, CIM, etc.) for easier analysis.
- Have automated tasks using Python scripting.
Resume Tips:
- Detail specific examples of your work, particularly your roles in projects, the technologies used, and improvements made before and after.
- Explain any challenges faced during problem-solving and how you addressed them.
- If you have diverse problem-solving experiences (technical, managerial), provide concrete examples.
- Include specific cases where you applied learned technical skills to your work.

