Senior Linux Engineer (OS Hardening)
Experience Level: Senior (8+ years)
Job Summary:
We are seeking a highly skilled and experienced Senior Linux Engineer to lead our efforts in operating system (OS) hardening and security enhancements. The ideal candidate will have extensive experience in Linux system administration, security best practices, and vulnerability remediation. This role will involve designing, implementing, and maintaining secure Linux environments, ensuring compliance with industry standards, and mentoring junior team members.
Key Responsibilities:
Lead OS hardening initiatives for Linux systems (e.g., RHEL, CentOS, Ubuntu) in alignment with industry standards (e.g., CIS benchmarks, NIST, DISA STIGs).
Architect and implement advanced security configurations, including firewalls, SELinux, AppArmor, and kernel-level security enhancements.
Conduct comprehensive vulnerability assessments and oversee remediation efforts across Linux environments.
Develop and maintain robust automation frameworks (e.g., Ansible, Terraform, Python) to streamline hardening and security processes.
Monitor, analyze, and respond to security incidents, leveraging SIEM tools and log analysis for threat detection.
Collaborate with cross-functional teams to ensure compliance with organizational security policies and regulatory requirements.
Provide technical leadership and mentorship to junior engineers and team members.
Stay ahead of emerging security threats, vulnerabilities, and mitigation techniques, and proactively implement solutions.
Document and standardize hardening procedures, configurations, and security policies for enterprise-wide adoption. Qualifications:
Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience).
8+ years of experience in Linux system administration and security, with a focus on OS hardening.
Expertise in Linux OS hardening techniques, tools, and frameworks.
Advanced proficiency in scripting and automation (e.g., Bash, Python, Ansible).
Extensive experience with configuration management tools (e.g., Ansible, Puppet, Chef).
Deep knowledge of security frameworks such as CIS, NIST, and DISA STIGs.
Hands-on experience with vulnerability scanning tools (e.g., Nessus, OpenSCAP) and remediation processes.
Strong understanding of networking concepts and protocols (e.g., TCP/IP, DNS, SSH).
Excellent problem-solving skills, with the ability to troubleshoot complex issues.
Relevant certifications (e.g., RHCE, CISSP, CISM, OSCP) are highly desirable.
Preferred Skills:
Experience with cloud environments (e.g., AWS, Azure, GCP) and containerization (e.g., Docker, Kubernetes).
Knowledge of DevOps practices and CI/CD pipelines.
Familiarity with log management and SIEM tools (e.g., Splunk, ELK Stack).
Experience in designing and implementing secure architectures for large-scale environments
Job Types: Full-time, Permanent
Pay: Up to RM11,500.00 per month
Benefits:
- Health insurance
- Opportunities for promotion
- Professional development
Schedule:
- Day shift
- Monday to Friday
Experience:
- Linux: 3 years (Required)