Security Engineer (Hybrid or Remote)
Job description
About the role
Vivid is seeking a Security Engineer to enhance the security of our internal systems, covering employee identities, cloud applications, devices, AI tools, and network infrastructure. This is a hands-on position where you will design security measures, identify vulnerabilities, and implement solutions. You will also develop automation to streamline security operations. You will own the design and execution of security initiatives that directly protect the organization's digital surface. This role requires a proactive mindset to anticipate threats before they materialize into incidents. You will work closely with cross-functional teams to embed security into daily operations and technology decisions. Your work will involve both strategic planning and urgent response to ensure the integrity of our environment. You will be a key driver in maturing the security posture of the company on an ongoing basis.
Key facts
What you'll do
Manage the entire lifecycle of security monitoring, including collecting logs from various sources, creating and refining detection rules, and reducing false positives.
Serve as the initial point of contact for security incidents, conducting investigations, implementing containment strategies, and documenting resolutions.
Administer identity and access management systems, including single sign-on, multi-factor authentication, and conditional access policies.
Oversee access reviews across all platforms, ensuring adherence to the principle of least privilege and managing privileged access.
Improve the security posture of Software-as-a-Service applications and implement data loss prevention controls.
Maintain and optimize endpoint security solutions, including mobile device management and extended detection and response tools.
Develop and execute strategies to defend against phishing and email-based threats, including managing secure email gateways and DMARC records.
Build custom tools and automate routine security tasks to increase efficiency and reduce manual effort.
Independently define and manage the roadmap for your security domains, identifying areas for improvement and leading initiatives.
Collaborate with engineering and product teams to ensure security requirements are integrated into development lifecycles.
Analyze complex security issues and translate technical findings into clear reports for both technical and non-technical stakeholders.
Continuously evaluate new security tools, technologies, and frameworks to identify opportunities for enhancement.
Perform threat hunting activities to uncover hidden risks and improve detection capabilities.
Contribute to the development of security policies, standards, and procedures to support business objectives.
Requirements
A minimum of 5 years of experience in security operations, corporate IT security, or endpoint engineering.
Proficiency with a Security Information and Event Management (SIEM) system, with experience in detection engineering and incident response.
Experience managing an identity provider (IdP) and implementing access recertification processes.
Familiarity with endpoint security technologies such as Mobile Device Management (MDM) and Extended Detection and Response (XDR).
Practical experience securing the use of Artificial Intelligence (AI) within an organization, including discovery, data loss prevention, and risk assessment for AI tools.
Strong scripting and automation skills, with a proven ability to develop tools using APIs.
A history of successfully driving security improvements and leading projects with minimal supervision.
Excellent written and verbal communication skills in English.
Nice to have
Experience with securing cloud-native AWS environments.
Skills & tools
SIEM (Splunk, Elastic, Panther, Sumo Logic)
Identity Providers (Okta, Entra ID, Google Workspace)
Endpoint Security (MDM, XDR/EDR/AV)
Scripting languages (e.g., Python)
API integrations
DLP solutions
Secure Email Gateways
Practical notes
Relocation support and visa assistance are available for candidates needing to move to Cyprus.
A budget for learning and development is provided.
Benefits include fully paid vacation and sick leave, and sports compensation.
Applications are reviewed on an ongoing basis.
About Vivid
Vivid is hiring for Security Engineer (Hybrid or Remote). The listing location is Remote.
This Security Engineer (Hybrid or Remote) opening is posted for Remote.