Security Operations Engineer
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
About the Role
This is a high-impact, hands-on role for a security professional who enjoys creating clarity in complex environments and has experience building and maturing security capabilities.
Key Skills for This Role
Full Job Posting
Overview
- This is a high-impact, hands-on role for a security professional who enjoys creating clarity in complex environments and has experience building and maturing security capabilities.
- The Security Operations Engineer will bring an engineering mindset to security program ownership: solving problems at scale, automating where possible, and designing capabilities that are durable, measurable, and defensible.
- Strong communication is essential - this person will work across technical and non-technical teams and must be able to translate complexity into clarity for a range of audiences.
Key Responsibilities
- Take full ownership of assigned security domains - build programs that start from a strong operational foundation and mature toward scalable, automated capabilities that evolve alongside the threat landscape and the firm's technology stack. Assignments will be determined based on team structure and may range from a focused set of primary domains to broad ownership across the full security operations portfolio.
- Develop and maintain workplans for each assigned domain with clear milestones, dependencies, and measurable outcomes; manage progress with limited day-to-day oversight and adapt priorities as the team and program evolve.
- Proactively identify gaps, risks, and opportunities within assigned domains and bring forward structured recommendations to leadership - backed by data and a clear implementation path.
- Track and report on key metrics across assigned domains - maintaining accurate, up-to-date data on coverage, remediation progress, and program activity to support leadership reporting and decision-making.
- Manage vendors and external partners supporting assigned domains. Hold partners accountable to SLAs, drive escalations, and evaluate opportunities to automate or replace manual dependencies.
- Collaborate cross-functionally with infrastructure, GRC, compliance, and platform engineering teams to ensure security requirements are operationalized effectively and at scale.
Detect & Respond
- Own and continuously mature Vista's detection and response capability in partnership with our MSSP. Set the standard for how threats are identified, investigated, and resolved across our environment.
- Serve as the internal escalation point for Vista's MSSP. Investigate suspicious and malicious activity across Vista's environment and build and maintain investigation tooling, queries, and workflows that allow for faster and more consistent analysis. Where possible, automate runbook execution or integrate runbook logic into response workflows.
- Escalate validated incidents, coordinate containment efforts, and document findings and investigative steps. Contribute to post-incident reviews to drive systematic improvements in Vista's detection and response processes.
- Identify opportunities to improve detection fidelity and translate recommendations back to Vista's MSSP partner to reduce MTTD/MTTR.
Platform Protection
- Own and operate Vista's platform protection program - maintain comprehensive coverage across devices, networks, and applications, and ensure the program evolves alongside the firm's technology environment.
- Assess and validate monitoring coverage across the environment; identify gaps, prioritize remediation, and track closure with clear owners and timelines - coordinating with infrastructure teams and reporting progress in a transparent and consistent way.
- Partner with Security Architecture to operationalize baseline security configurations across platforms. Leverage automation to validate configuration state, surface drift, and ensure findings are accessible to GRC.
- Run vulnerability and misconfiguration scans across Vista's environment; drive remediation in collaboration with infrastructure teams and track findings transparently.
- Ensure platform telemetry is properly ingested and available to Vista's MSSP; proactively identify and close logging gaps and report on coverage completeness.
Data Protection
- Own and engineer Vista's data protection program - building monitoring capabilities at scale, ensuring visibility is comprehensive, and closing gaps systematically as they are identified.
- Partner with Compliance, GRC, and the CISO to translate data classification and labeling requirements into technical controls; implement and validate those controls programmatically.
- Build and maintain DLP policy logic. Tune rules over time based on investigative findings, past alerts, and emerging patterns in the threat landscape. Automate alert triage and routing where possible.
- Leverage insights from the data loss program and broader threat landscape to contribute to firm-wide security awareness efforts and inform the risk register.
Identity & Access Management
- Own and mature an IAM program covering users, non-person identities, and privileged access - with a focus on automation, consistency, and auditability at scale.
- Build and maintain automated provisioning and deprovisioning workflows in partnership with infrastructure; define entitlement rules and ensure they are enforced systematically.
- Collaborate with GRC on access recertification processes and drive automation of review workflows to reduce manual effort and improve cycle time.
- Identify systems not currently integrated into standard IAM processes; engineer integrations to close coverage gaps and build toward a unified identity governance model.
Asset Management
Own and build an asset management program covering all devices, users, networks, applications, and data at Vista - with an emphasis on automated discovery, continuous inventory accuracy, and integration with downstream security functions.
Build and maintain tooling to identify shadow IT, onboard new assets systematically, and flag inventory gaps in real time.
Risk-rank assets programmatically and maintain CMDB accuracy.
Ensure vulnerability management, IAM, and other downstream functions can consume inventory data via reliable integrations.
Evaluate and manage asset discovery technology and drive automation of inventory processes to reduce manual overhead and improve coverage fidelity.
Threat Intelligence
Build and maintain a threat intelligence program that translates an evolving threat landscape into a clear, prioritized view of what matters most to Vista - and why.
Build and maintain the technical infrastructure that powers Vista's Threat Intelligence program - automating intelligence ingestion, enrichment, and distribution so that relevant signals reach the right systems and people without manual overhead.
Translate threat intelligence into prioritized, actionable guidance - providing data-driven recommendations to partners across Security, GRC, and Architecture to inform high-impact initiatives and investment decisions.
Support Vista's physical security program by managing vendors monitoring keywords, impersonations, and executive protection.
Hold partners accountable to timely, accurate outputs and identify opportunities to automate or enrich their feeds.
Secure Culture
- Own and operate a secure culture program that evolves alongside the threat landscape and Vista's technology environment.
- Configure, manage, and optimize security awareness training platforms to deliver firm-wide and role-based training in a programmatic way. Ensure enrollment, tracking, and reporting workflows are automated.
- Design and execute social engineering simulations that mimic adversary tradecraft. Analyze results at scale, identify behavioral patterns, and surface opportunities for high-value intervention.
- Treat human risk as a measurable, manageable variable. Rigorously assess the efficacy of awareness training at Vista as a security control using simulation results, completion data, and behavioral trends. Ensure data-driven conclusions are reflected in the risk register.
Key Requirement
- Approximately 6 years of experience in security engineering, security operations, or a related field; experience in cloud security strongly preferred
- Demonstrated engineering depth - hands-on experience building, configuring, and integrating security tools and platforms at scale
- Proficiency in scripting or automation (e.g. Python, PowerShell) to drive operational efficiency and eliminate manual processes across security programs
- Solid understanding of cybersecurity principles, frameworks, and common attack techniques, including those specific to cloud environments (e.g. misconfiguration, identity-based attacks, cloud-native threats)
- Demonstrated ability to own and drive programs forward with limited day-to-day guidance
- Experience managing or coordinating with external vendors or security partners
- Strong analytical and problem-solving skills; able to work through ambiguous situations independently
- Strong written and verbal communication skills, with the ability to document findings and present to technical and non-technical audiences
Preferred Qualifications
- Experience with SIEM platforms, EDR tools, DLP solutions, vulnerability management tools, or cloud security posture management (CSPM) solutions
- Experience building or maintaining SOAR playbooks or automated response workflows
- Familiarity with cloud security frameworks and controls (e.g. CIS Benchmarks, CSA CCM, NIST CSF)
- Familiarity with adversarial tactics, techniques, and procedures (TTPs)
- Experience working within a ticketing or queue-based workflow environment
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at Robert Walters
Strategy Associate
Abu Dhabi, UAE
A leading Sharia-compliant digital challenger bank is seeking a Strategy Associate to support the bank's Head of Strategy and Transformation in both scoping and executing against a range of new initiatives. This role is
Regional Finance Director
Dubai, UAE
A leading global consultancy is seeking a Regional Finance Director to provide strategic direction and expert guidance for their regional finance unit based in Dubai. This pivotal role offers you the opportunity to shape
Technical Support Specialist
Dubai, UAE
Our client is a leading global professional services firm seeking a skilled Technical Support Specialist to provide high-quality IT support across a dynamic enterprise environment. The role involves troubleshooting hardw
IT Excellence & Support Manager
Doha, QAT
IT Excellence & Support Manager within the IT department reporting to Executive Director, IT. Responsible for driving strategic alignment, performance management, and operational insight across the IT department. * The
Accountant - GL & Financial Accounting
Abu Dhabi, UAE
An exciting opportunity to join a fast-growing technology-focused organisation in a broad GL and financial accounting role. This position will own month-end close, reconciliations, statutory reporting, fixed assets, inte
Accountant - Accounts Receivable & Revenue
Abu Dhabi, UAE
We are seeking a commercially minded finance professional to lead revenue accounting and receivables within a fast-growing technology business. The role offers exposure to complex contracts, IFRS 15 revenue recognition,
Head of Controlling
Dubai, UAE
A senior finance leadership role with a global luxury retail brand, focused on financial planning, performance analysis, management reporting, controls and business partnering. The position will work closely with senior
Organization and Manpower Planning Manager (UAE National)
Abu Dhabi, UAE
We are currently partnered with a leading Abu Dhabi based organisation who are looking recruit a senior strategic candidate within the Organisational & Manpower Planning space. This role requires a UAE National Family Bo
Strategy Associate
Abu Dhabi, UAE
Regional Finance Director
Dubai, UAE
Technical Support Specialist
Dubai, UAE
IT Excellence & Support Manager
Doha, QAT
Accountant - GL & Financial Accounting
Abu Dhabi, UAE
Accountant - Accounts Receivable & Revenue
Abu Dhabi, UAE
Head of Controlling
Dubai, UAE
Organization and Manpower Planning Manager (UAE National)
Abu Dhabi, UAE