Information Security Engineer (Infrastructure & SecOps)
Ucom
Yerevan · On-siteSalary not disclosedfull-timeVerified recentlyStaff.am
We are seeking a hands-on Information Security Engineer with a strong foundation in IT systems administration or network engineering. In this role, you will go far beyond monitoring dashboards and vendor alerts.
Responsibilities
Infrastructure Hardening & Security Architecture
Audit and technically harden on-premises infrastructure (Windows Server, Linux, Active Directory, hypervisors, network appliances) based on CIS Benchmarks and industry best practices.
Design and implement architectural security controls, including network microsegmentation, tiered administrative models (Active Directory Tiering Model), Privileged Access Management (PAM), and secure configurations for reverse proxies and internal services.
SecOps, Incident Response & Threat Hunting
Analyze low-level security events: parse raw packet captures (pcap), trace system calls, and audit raw event telemetry across Windows Event Logs, Sysmon, and Linux auditd.
Onboard and normalize log sources, author custom detection logic, and fine-tune SIEM/EDR alerting rules beyond out-of-the-box templates.
Lead technical incident triage, conduct Root Cause Analysis (RCA), and isolate attack vectors to prevent recurrence.
Vulnerability & Attack Surface Management
Execute infrastructure vulnerability scans, manually validate findings to eliminate false positives, and build actionable technical remediation roadmaps with IT operations.
Maintain attack surface visibility and technical asset inventory.