Senior Linux Engineer (OS Hardening)_8645
Position Title: Senior Linux Engineer (OS Hardening)
Location: [Insert Location]
Employment Type: Full-Time
Experience Level: Senior (8+ years)
Job Summary:
We are seeking a highly skilled and experienced Senior Linux Engineer to lead our efforts in operating system (OS) hardening and security enhancements. The ideal candidate will have extensive experience in Linux system administration, security best practices, and vulnerability remediation. This role will involve designing, implementing, and maintaining secure Linux environments, ensuring compliance with industry standards, and mentoring junior team members.
Key Responsibilities:
- Lead OS hardening initiatives for Linux systems (e.g., RHEL, CentOS, Ubuntu) in alignment with industry standards (e.g., CIS benchmarks, NIST, DISA STIGs).
- Architect and implement advanced security configurations, including firewalls, SELinux, AppArmor, and kernel-level security enhancements.
- Conduct comprehensive vulnerability assessments and oversee remediation efforts across Linux environments.
- Develop and maintain robust automation frameworks (e.g., Ansible, Terraform, Python) to streamline hardening and security processes.
- Monitor, analyze, and respond to security incidents, leveraging SIEM tools and log analysis for threat detection.
- Collaborate with cross-functional teams to ensure compliance with organizational security policies and regulatory requirements.
- Provide technical leadership and mentorship to junior engineers and team members.
- Stay ahead of emerging security threats, vulnerabilities, and mitigation techniques, and proactively implement solutions.
- Document and standardize hardening procedures, configurations, and security policies for enterprise-wide adoption.
Qualifications:
- Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent experience).
- 8+ years of experience in Linux system administration and security, with a focus on OS hardening.
- Expertise in Linux OS hardening techniques, tools, and frameworks.
- Advanced proficiency in scripting and automation (e.g., Bash, Python, Ansible).
- Extensive experience with configuration management tools (e.g., Ansible, Puppet, Chef).
- Deep knowledge of security frameworks such as CIS, NIST, and DISA STIGs.
- Hands-on experience with vulnerability scanning tools (e.g., Nessus, OpenSCAP) and remediation processes.
- Strong understanding of networking concepts and protocols (e.g., TCP/IP, DNS, SSH).
- Excellent problem-solving skills, with the ability to troubleshoot complex issues.
- Relevant certifications (e.g., RHCE, CISSP, CISM, OSCP) are highly desirable.
Preferred Skills:
- Experience with cloud environments (e.g., AWS, Azure, GCP) and containerization (e.g., Docker, Kubernetes).
- Knowledge of DevOps practices and CI/CD pipelines.
- Familiarity with log management and SIEM tools (e.g., Splunk, ELK Stack).
- Experience in designing and implementing secure architectures for large-scale environments.
Job Types: Full-time, Permanent, Contract, Temporary, Freelance, Internship, Fresh graduate, Student job
Contract length: 12 months
Pay: RM1.00 - RM2.00 per month
Benefits:
- Additional leave
- Cell phone reimbursement
- Company car
- Dental insurance
- Flexible schedule
- Free parking
- Gym membership
- Health insurance
- Maternity leave
- Meal allowance
- Meal provided
- Opportunities for promotion
- Parental leave
- Professional development
- Vision insurance
- Work from home
Schedule:
- Early shift
- Holidays
- Monday to Friday
- Weekend jobs
Supplemental Pay:
- 13th month salary
- Attendance bonus
- Commission pay
- Overtime pay
- Performance bonus
- Retention bonus
- Signing bonus
- Tips
- Yearly bonus
Work Location: In person