At a Glance
- Tasks: Lead security monitoring and incident response for Square Enix across Europe and North America.
- Company: Join Square Enix, a leader in gaming, known for creativity and innovation.
- Benefits: Enjoy hybrid working options, flexible hours, and a vibrant office environment.
- Why this job: Be part of a dynamic team protecting players while enhancing your Cyber Security career.
- Qualifications: Seeking candidates with senior Cyber Security experience and engineering skills in SIEM platforms.
- Other info: Diversity and inclusion are core values; we welcome applicants from all backgrounds.
The predicted salary is between 43200 - 72000 £ per year.
The Security Operations Lead is responsible for our security monitoring and incident response capabilities within the Square Enix Cyber Security team (covering Europe and North America). The primary goals of the role are the timely detection of security incidents, effective response and the continuous improvement of our preventative and detective controls. This role will work alongside our team of security analysts and engineers to collectively protect our players, people and assets whilst enabling creativity and innovation across Square Enix.
Day to day you will be performing in-depth analysis and investigation of security alerts, game/brand related security events as well as leading the response to incidents. You will be responsible for maintaining and optimising our security operations tools and processes. Additionally, you will be testing the effectiveness of our preventative and detective controls, probing weaknesses and implementing improvements alongside our risk and engineering teams.
The role is aimed at candidates with a broad and senior Cyber Security skillset who are seeking to further develop their Cyber Security career in an exciting industry. Engineering skills in maintaining Security Information and Event Management (SIEM) platforms and the configuration of our wider security tools are key. We are also seeking candidates with experience leveraging AI to enhance productivity and effectiveness.
RequirementsKey Deliverables:
- Threat Detection & Incident Response
- Leading investigation and analysis of security alerts to identify and promptly respond to security events
- Leading the response to major cyber security incidents, collaborating with key business and technical stakeholders during investigations to gather further information and coordinate response actions
- Identifying and responding to game related threats like leaks, cheats, piracy, copyright abuse and account compromise
- Managing our security operations outsourcing partners to maximise the value and quality of their service delivery
- Maintaining a broad understanding of IT/online environments and key company assets to enhance decision making and response to incidents
- Maintaining and optimising our Cyber Security tools and platforms to continuously improve our detection and response capability.
- Supporting the management, administration and support of our SIEM platform, including general infrastructure and system administration, troubleshooting and user access management
- Maintaining and tuning security detections and alerts within our SIEM platform
- Onboarding and managing security log sources for our SIEM platform, including agent and policy deployment, creation and maintenance of ingest pipelines and index template and pattern creation
- Guiding and mentoring the day to day work of our Security Analysts, providing expertise to support their task and project delivery
- Collaborating with risk and architecture teams to continuously test and refine our security controls through attack simulation and purple team operations
- Influencing the strategic direction and priorities of our Cyber Security team by presenting insight into the security events, alerts and incidents we handle
- Continuously improving our security operations processes, escalation paths and playbooks
- Leveraging AI capabilities to enhance the effectiveness of our security capabilities and your own productivity in the role.
- Consuming relevant threat intelligence to drive proactive action within the Cyber Security and wider IT environment
- Mean time for business recovery to C1 (Highest criticality) level security incidents
- Security event triage time
- Game/brand leak detection timeframes
- High availability of security tools
- Security maturity improvements
We encourage applications from candidates who can meet some but not necessarily all of the listed experience and skills below. Applicants are welcomed from diverse professional backgrounds, including those who are self-taught or have gained experience through non-traditional paths.
Desirable Experience:- Held senior roles within Cyber Security/Information Security/Security Operations functions
- Background in security, IT, network engineering or administration, or software development
- Experience responding to or handling major cyber security incidents and following common response frameworks
- Experience within the gaming industry providing security operations support to game releases, game infrastructure monitoring and live game operations
- Strong appreciation of the cyber threat landscape and attacker tactics, techniques and procedures
- Experience developing operational processes and playbooks
- Ability to remain composed and effective during high-pressure situations
- Clear focus on coaching, mentoring and development of staff
- Effective communication skills with non-technical stakeholders and executives
- Flexibility to work out-of-office hours, when necessary, in response to incidents
- Ability to manage tasks and priorities effectively, with attention to detail
- Self-motivated and comfortable taking ownership of decisions, with support from the team
- SIEM engineering (especially Elastic Security)
- Microsoft Defender E5
- Google Cloud Platform (GCP) or similar cloud infrastructure platforms
- Infrastructure automation (Terraform, Ansible, Chef or Puppet)
- Scripting, log analysis and dashboard creation
- AI literacy and a desire to continuously learn and develop
Our goal at Square Enix is to hire, retain, develop and promote the best talent, regardless of age, gender, race, religious belief, sexual orientation or physical ability.
At Square Enix we believe in the importance of being a diverse and global company, and we stand firmly together against any forms of injustice, intolerance, harassment or discrimination. In our effort to create a truly diverse workforce, we pledge to continue to raise awareness in every step of the employee experience, from recruitment to promotions to ensure equal opportunities for all.
Square Enix is pleased to be an employer that offers flexibility within the workplace. We have a hybrid working policy which allows employees to work from the comfort of their home, three days per week, and in our amazing Blackfriars office for the other two. Or, if being in the Office is your preference, you can choose three days working from our office and two days working from home. The choice is yours!
Security Operations Lead employer: Square Enix
Contact Detail:
Square Enix Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Operations Lead
✨Tip Number 1
Familiarise yourself with the latest trends in cyber security, especially those relevant to the gaming industry. Understanding the unique threats faced by game developers and players will help you stand out during discussions with the hiring team.
✨Tip Number 2
Network with professionals in the cyber security field, particularly those who work in gaming. Attend industry events or join online forums to connect with others and gain insights that could be beneficial for your application.
✨Tip Number 3
Showcase your technical skills by engaging in projects that involve SIEM platforms or AI applications in security. Having hands-on experience will not only boost your confidence but also provide concrete examples to discuss during interviews.
✨Tip Number 4
Prepare to discuss your approach to incident response and threat detection. Be ready to share specific examples of how you've handled security incidents in the past, as this will demonstrate your capability to manage high-pressure situations effectively.
We think you need these skills to ace Security Operations Lead
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in Cyber Security, particularly in incident response and threat detection. Use specific examples that demonstrate your skills in managing security operations and working with SIEM platforms.
Craft a Compelling Cover Letter: In your cover letter, express your passion for Cyber Security and the gaming industry. Mention how your background aligns with Square Enix's goals and how you can contribute to their security operations team.
Showcase Technical Skills: Clearly outline your technical skills related to SIEM engineering, cloud platforms, and scripting. Provide examples of how you've used these skills in previous roles to enhance security measures.
Highlight Team Collaboration: Emphasise your experience in mentoring and collaborating with teams. Discuss how you've influenced strategic decisions in past roles and how you can bring that expertise to Square Enix.
How to prepare for a job interview at Square Enix
✨Showcase Your Cyber Security Expertise
Make sure to highlight your experience in cyber security, particularly in threat detection and incident response. Be prepared to discuss specific incidents you've managed and the outcomes, as this will demonstrate your capability to handle high-pressure situations.
✨Familiarise Yourself with SIEM Tools
Since the role involves maintaining and optimising SIEM platforms, brush up on your knowledge of these tools, especially Elastic Security. Be ready to discuss how you've used such platforms in previous roles to enhance security operations.
✨Demonstrate Team Collaboration Skills
The position requires working closely with security analysts and engineers. Prepare examples of how you've successfully collaborated with teams in the past, particularly in mentoring or guiding junior staff, as this will show your leadership potential.
✨Stay Updated on Cyber Threats
Being aware of the latest trends in cyber threats and attacker tactics is crucial. Research recent incidents in the gaming industry and be ready to discuss how you would approach similar challenges at Square Enix.