Swoon · 1 day ago
Sr. Information Security Engineer
Swoon is actively hiring a Sr. Information Security Engineer to join the team. The role involves monitoring and analyzing security events, designing security controls, leading incident response activities, and collaborating with various teams to enhance security practices.
Responsibilities
Monitor and analyze security events, alerts, and system logs across cloud, on-prem, and hybrid environments using SIEM, EDR, and IDS/IPS tools to identify and investigate potential threats
Design, implement, and maintain security controls, detection rules, and automated response workflows to strengthen threat prevention, detection, and remediation capabilities
Lead incident response activities by investigating security breaches, coordinating containment and recovery efforts, and communicating technical findings to internal teams and external partners
Conduct regular vulnerability assessments, threat hunting, and risk evaluations, using threat intelligence and analytics to proactively identify and mitigate emerging security risks
Collaborate with infrastructure, cloud, application, and compliance teams to embed security best practices into system designs, deployments, and operational processes
Develop security policies, provide technical guidance and training, and mentor junior engineers while supporting audits, governance initiatives, and ongoing security improvement efforts
Qualification
Required
5+ years of progressive IT and information security experience, with hands-on expertise in tools such as SIEM, EDR, IDS/IPS, vulnerability management, malware detection, and reverse proxies (retail/corporate environment preferred)
Strong technical foundation in secure coding, threat modeling, identity and access management, cryptography, penetration testing, and network/system security, with deep knowledge of TCP/IP and security protocols
Minimum 3 years of threat hunting and advanced analytics experience using platforms such as Splunk, including log analysis, network traffic inspection, and behavioral monitoring to detect malicious activity
Proficiency in web services and scripting/programming (e.g., Python, Java, C++, Ruby, Perl, JSON), with demonstrated ability to analyze large and unstructured data sets to identify security trends and anomalies
Proven leadership and communication skills, including incident response under pressure, executive-level reporting, vendor and stakeholder management, strong documentation abilities, and commitment to confidentiality and professionalism, supported by a Bachelor's degree (or equivalent experience) and preferred security certifications (CISSP, GIAC, GSEC, GCED)
Company
Swoon
In 2010, Swoon launched an agile, client-focused team that is not only savvy in our core industries but elbow-deep, every day, getting to know the strongest talent in the technology and professional fields.