Senior Security Engineer
🇧🇬 Bulgaria
Management
Python
Kubernetes
AWS
GCP
Marketing
Social Media
Cybersecurity
HR
Analyst
Security Engineer
Senior Security Engineer
from 🇧🇬 Bulgaria
Â
We are seeking a Senior Security Engineer to help monitor, investigate, and respond to security activity across cloud, identity, endpoint, and Linux-based environments. This role requires hands-on technical ability, strong scripting skills, and practical experience working with AWS, with GCP experience preferred.Â
Â
- Monitor and investigate security alerts across cloud, identity, endpoint, and network environments.Â
- Review logs and activity from AWS, GCP, Active Directory, Linux systems, Windows systems, and security tools.Â
- Support incident response by gathering evidence, validating suspicious activity, and documenting findings.Â
- Write scripts to automate repetitive security tasks, log analysis, reporting, or enrichment.Â
- Assist with security reviews, including IAM, storage exposure, compute workloads, and network configurations.Â
- Investigate authentication activity, user behavior, privilege changes, and potential account compromise.Â
- Work with internal teams to understand systems, identify risks, and support remediation, compliance and audit activities.
- Be available for after-hours incident response when urgent security events require investigation or support.Â
- Experience with cloud security concepts, services, logs, and IAM.Â
- Strong scripting ability, preferably with Python, Bash, or PowerShell.Â
- Experience with SIEM platforms such as Splunk, Chronicle, Sentinel, or similar tools.
- Working knowledge of Linux and Windows systems, command line usage, permissions, processes, and logs.Â
- Basic to intermediate understanding of Active Directory, including users, groups, authentication, and privilege changes.Â
- Ability to read and interpret logs from cloud platforms, operating systems, and security tools.Â
- Understanding of common security concepts such as phishing, credential compromise, privilege escalation, lateral movement, and exposed services.Â
- Strong analytical, documentation, and communication skills.Â
Preferred Skills
- Experience with Google Cloud Platform security, including IAM, Cloud Logging, Compute Engine, Cloud Storage, VPCs, and service accounts.Â
- Exposure to Kubernetes, containers, or cloud-native workloads.Â
- Experience creating automation for security monitoring or response.Â
Minimum Qualifications
- 3-5Â years of experience in security operations, incident response, systems administration, cloud operations, or a similar technical role.Â
- Hands-on experience using scripts to solve operational or security problems.Â
- Comfortable working in both cloud and Linux command-line environments.Â
Â
Please note:Â
- Candidates must be available for after-hours incident response when urgent security events require investigation or support.
- The interview process will include a hands-on practical exercise conducted through screen sharing, where candidates will be asked to demonstrate relevant technical skills.Â
Â
Â
Â
Â

