SecOps Engineer

Agentúrna prácaTavana ITStockholmJob.bozverejnené 10. 12. 2025
Povinné:AWSAzureGoogle CloudCloudMobileE-CommerceSecurityLeadPrincipalJuniorHybrid

For our customers, we are looking for several SecOps Engineers. Are you ready for new challenges in 2026? We look forward to receiving your application.

Overall objective of role: Our business is in a constant journey of change and digitalization where security is a high priority.

The SecOps Engineer has a key role in protecting the company’s computers, mobile devices, IoT devices, networks, software, hardware, platforms and data from malware and cyber-attacks whether these components exist on-site or in the cloud. Essentially to oversee the design and development of the IT infrastructure and security standards.  As a SecOps Engineer, you will develop and raise the organization's level of IT security and contribute to greater resilience in security. Primarily, the role has a tactical focus but also has elements of both operational and strategic tasks.

Primary responsibilities: You will have a key role in IT security, risk exposure, and IT security incident management. You will work closely with and have the support of the business stake holders such as, but not limited to, CIO, CTO, CFO, Manager IT Operations and Head of IT Development as well as partners / service providers and other resource support in the security area. You will hold service responsibility for maintaining and developing our IT security capabilities and interaction with service providers of IT security products. You will have the responsibility for the contact and relationship with external Security Operations Center and the IT security incident process.

You will be working with and keeping track of the company cybersecurity roadmap both long- and short-term in the area. Responsible for the IT security domain within the IT Architecture Council in review and decisions regarding IT security architecture.

Work tasks:

Describe and review the IT cybersecurity architecture and support in strategic path choices and analyses

Be an advisor and act as a SME within the IT organization and actively support IT architects, service owners, developers and stakeholders with IT security expertise and convey security requirements, principles and guidance in architecture and design

Support in risk assessments and supplier assessments related to IT security

Take a leading role and actively drive improvements in the field IT security

Anchoring the security work and ensuring that the users within the organization understand and follow our rules and regulations within the area of IT security

Be responsible for the prevention of IT security risks and follow-up of incidents

Coordinate initiatives, measures and implementation of security solutions to ensure that all systems meet requirements from an IT security perspective

Assist with external monitoring in the area of IT security and contribute with IT security expertise in cooperation forums with other organizations, partners and vendors.

Liaise with Head of Legal for collaboration of activities related to GDPR responsibilities that lies on IT

Key responsibilities:

Key areas of responsibility include (but are not limited to):

Develop and drive the security roadmap, including prioritization of most important for customer.

Be familiar with and able to work in an operational “hands-on” as well as in a security architecture role, and work closely with stakeholders.

Planning, updating, and maintenance of the security measures, defenses and counteractions to stop and avoid internal and external occurrences.

Manage penetration testing of both applications and infrastructure

Perform susceptibility scans and manage the resolution of threats as well as continuously evaluate techniques for how to handle Phishing, Spoofing, etc

Assess software as a service (SaaS) product for security compliance

Manage security applications

Conduct periodic user access control verifications as well as evaluate existing solutions for MFA, e.g. YubiKey, Apple Passkey etc

Develop and maintain security monitoring, logging, and auditing

Install required security patches and updates for a wide range of applications

Monitor system security relating to resiliency, malware intrusion, and patching

Assess technical controls and identify areas of improvement

Serve as technical security lead

Conduct systems testing to ensure that critical vulnerabilities become identified

Be updated on the latest within the area of cyber threats, etc, and evaluate how to best protect the company resources

Create and maintain a Business Continuity Plan (BCP)

Responsible for our SOC-work, EDR, XDR, NDR, etc

Deliver and adopt according to the IT Service Delivery Management and IT Operations life cycle

Change, release and deploy management life cycle is adopted and followed.

Participate in Incident Management, Problem and Change Management

Help automate and streamline our operations and processes

Develop and maintain scripts for automation and monitoring

Hybrid and cloud infrastructural components such as general compute services, VPC, PKI Management, Networking, Storage services, security systems, communication systems, and backup operations

Proactively maintain and monitor delivered IT systems and related services

Ensure all servers and related workloads have required security compliance for patch management, anti-malware, and other threat protections applied and up-to-date

Work collaboratively with other operations staff, development and service delivery teams to ensure critical L.O.B. systems and services are available 24 x 7 x 365

Works closely with NOC and SOC as an escalation tier for customer support and for operative production cases

Identify, categorize and respond to Network, Security & Compute system events and alerts

Record, track, follow-up and maintain documentation of systems and the ITSM processes

Engage with hardware and software vendors and suppliers as needed

Ensure that the business (customer) expectations are met or exceeded

Fulfil individual SMART goals and KPI’s through everyday work.

Perform internal audits and auditable evidence of internal audits for non-technical areas

Monitor, verify, measure delivered services and solutions from suppliers and partners

Review survey feedback to improve delivered services, SLA’s, tools and support experience.

Perform backup and restore operations

Be part of Line of Business-related projects

Possible rotate in on-call rotation

Mentor junior employees within the function

Adhere to policies, procedures and routines

Experience:

+5 years of operational experience in IT security field(s)

Skills, qualifications, and knowledge needed:

Degree in Computer science or equivalent

Self-motivated

Natural ability to influence and build trust

Team player

Capability in anti-malware software, interruption recognition, firewalls, and content filters

Knowledge about threat assessment tools, skills, and procedures

Highly organized with attention to details

Strong problem-solver with a pragmatic approach

Strong verbal and written communication skills

Professional fluency in English, both writing and speaking

IT order management, procurement and project coordination

Advanced knowledge and experience of managing, monitoring and supporting a multi hybrid cloud compute IT infrastructure environment

O365 Administration (Exchange, Teams, SharePoint, OneDrive etc)

Advanced knowledge and experience working with different kind of anti-malware and threat protection services

Advanced knowledge and experience working with user and service catalog services such as Active Directory and Azure AD

Experience working with Identity Access Management and SSO

Experience working with Enterprise Mobility and Device Management

Advanced knowledge and experience working with datacom and networking services

Advanced knowledge and experiencing working with backup and restore operation services

Skilled with PowerShell scripting

Advanced knowledge of and experience supporting PCs and Macs within Microsoft network and Office 365 environment

Microsoft Azure services and AWS

Microsoft SQL Server, IIS

Experience with modern ITSM processes and techniques.

DNS & PKI Management

General knowledge and experience working with multi-platform environments such as Windows Client and Server OS, Mac OS X and mobile devices based on iOS/Android

Advantages:

Meriting with knowledge in: Microsoft certifications is a plus.

Meriting with ITIL certification

Meriting working with O365 Defender, Defender for Endpoints

Meriting working with public cloud services such as GCP and AWS

Meriting with Cisco Meraki, Fortinet solutions

Meriting with ServiceNow and AzureDevOps tooling

Retail, wholesale, e-commerce or logistics business flows.

Fashion industry.