Kraken
Cyber Security Engineer II
Remote, Australia · Remote · Security and Privacy · vor 4 Std.
Help us use technology to make a big green dent in the universe!
Kraken powers some of the most innovative global developments in energy.
We create the technology that redefines utilities and unlocks a new energy system of the future. By optimising renewable generation, building a more intelligent grid, and empowering utilities to deliver an exceptional customer experience, our operating system is transforming the industry worldwide.
It’s an incredibly exciting time to work in energy. Join us on our mission to improve the lives of ONE BILLION humans within the decade and shape a cleaner, better future for everyone.
Why we do it
Future energy will not look like energy as we know it today. We need to not just think about our future, but build for it. Now.
We are seeking a Security Operations Analyst that will become a member of a growing global Security Team in Kraken Technologies. You’ll play a crucial role in helping to ensure that we continue to protect Kraken and our Clients by analysing and responding to security incidents. This is a critical position that is a full-time member of a team approaching security in a way which is able to move at the pace of Kraken.
What you’ll do
Working as part of the Global Cyber Defense Center (CDC), you will contribute to a broad range of cyber defense functions, including Kraken’s Security Operations Center (SOC), threat intelligence, detection engineering, incident response, and continuous improvement of our detection and response capabilities. You will be responsible for:
Monitoring, triaging, and investigation of security incidents on Kraken’s infrastructure and Client instances
Responding to alerts generated by our Security Information and Event Management (SIEM) system
Automating and continuously expanding the detection capabilities
Analysing application, Cloud and access logs and events to identify potential security threats and vulnerabilities and coding this analysis for future playbooks
Identifying where escalation of incidents, or notification to third parties may be required
Providing incident response support working with our engineering and product teams where necessary
Maintaining, improving and automating incident response processes and playbooks, to continually improve the team's capabilities
Preparing reports and incident summaries, as well as reviewing and improving the content and presentation of reports produced by the team
Maintaining and updating security incident documentation including analysis findings and recommended mitigation strategies, automating wherever possible
Liaising with stakeholders in relation to incident root cause and providing remediation/improvement recommendations
This role requires participation in a roster covering weekends and public holidays, in co-ordination with other team members globally, in order to deliver a 24x7 operations capability.
This is a critical role in a growing, global team. You’ll have the opportunity to get involved in exciting and innovative security-related initiatives and we encourage you to take on new challenges that align with your skills and interests, collaborating with other teams to drive improvements in security across our entire organisation.
What you’ll have
A strong Security Operations and technology background
Experience in using SIEM platforms to analyse and respond to security alerts
Familiarity with EDR (Endpoint Detection and Response) tools and their capabilities, including host containment and evidence preservation
Knowledge of best practices for analysing incidents and logs in a cloud environment
An understanding of how different mitigation strategies can contain and respond to security events
An understanding of Cloud and software architectures
Strong analytical and problem-solving skills, with the ability to identify, triage and mitigate incidents
Ability to collaborate effectively across Cyber Defense functions and with internal stakeholders, communicate clearly during potentially high-pressure incidents, and support colleagues to deliver a coordinated, timely, and effective incident response.
A passion for security, a drive to improve security alerting and response processes by harnessing technology and automation
Good experience in at least some of the areas mentioned above (we’re not expecting any candidate to be an expert in all areas)
What will help
Experience working in a SOC or CERT that monitors multiple client infrastructure/instances
Experience with AWS environments including AWS security monitoring, logging (e.g., CloudTrail, GuardDuty)
Relevant certifications or qualifications related to Security Operations
Basic scripting or automation skills using SOAR tooling to optimise tasks and develop security automation workflows
Are you ready for a career with us? We want to ensure you have the right tools and environment to unleash your potential. If you have any accommodation requests, please contact us at inclusion@kraken.tech. We’ll do our best to tailor the experience to your needs so you can feel comfortable, confident and be at your best!
Studies have shown that some groups of people, like women, are less likely to apply to a role unless they meet 100% of the job requirements. Whoever you are, if you like one of our jobs, we encourage you to apply as you might just be the candidate we’re looking for! At Kraken, we're creating a team of genuine, honest, empathetic people. Our people are our strongest asset and the unique skills and perspectives people bring to the team are the driving force of our success. As an equal opportunity employer, we do not discriminate on the basis of any protected attribute. We consider all applicants without regard to race, colour, religion, national origin, age, sex, gender identity or expression, sexual orientation, marital or veteran status, disability, or any other legally protected status.
*Our (i) Applicant and Candidate Privacy Notice and Artificial Intelligence (AI) Notice, (ii) Website Privacy Notice and (iii) Cookie Notice govern the collection and use of your personal data in connection with your application and use of our website. These policies explain how we handle your data and outline your rights under applicable laws, including, but not limited to, the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). Depending on your location, you may have the right to access, correct, or delete your information, object to processing, or withdraw consent. By applying, you acknowledge that you’ve read, understood and consent to these terms
Please note that, in line with our current recruitment policy, we are unable to offer visa sponsorship for this position; applicants must have the right to work in the country that they're applying to, at the time of application.*