Senior Security Engineer/Manager, EMEA Security Operations

Full Time
Kraków, Poland
21 hours ago
At Qualtrics, we create software the world’s best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we are more than a platform—we are the creators and stewards of the Experience Management category serving over 18K clients globally. Building a category takes grit, determination, and a disdain for convention—but most of all it requires close-knit, high-functioning teams with an unwavering dedication to serving our customers.When you join one of our teams, you’ll be part of a nimble group that’s empowered to set aggressive goals and move fast to achieve them. Strategic risks are encouraged and complex problems are solved together, by passing the mic and iterating until the best solution comes to light. You won’t have to look to find growth opportunities—ready or not, they’ll find you. From retail to government to healthcare, we’re on a mission to bring humanity, connection, and empathy back to business. Join over 5,000 people across the globe who think that’s work worth doing.     Senior Security Engineer/Manager, EMEA Security Operations   Why We Have This Role   Qualtrics is growing exponentially and that growth means constantly finding and eradicating threats to our systems. We must continuously evaluate how we secure systems, identify potential threats, and implement alerts and tooling necessary that will help us maintain a strong security posture at scale. We are looking for an experienced security engineer to join as a leader for our security operations center / incident response team in EMEA, a person, who can work with others across the organization, react to alerts, hunt for threats, respond to incidents, mentor junior reports and create and implement technical solutions that improve our ability to identify, stop, and eliminate potential threats.In today’s rapidly evolving threat landscape, proactive defense is essential. The Manager of Security Operations & Strategy is a pivotal leader responsible for safeguarding our systems, data, and operations. This role is vital to maintaining customer trust and ensuring the integrity of our operations—helping us deliver exceptional service.   How You’ll Find Success
  • Strategic Visionary: You possess an in-depth understanding of the cybersecurity threat landscape and proactively identify emerging risks. You shape the Security Operations strategy, ensuring alignment with the organization's overall goals.
  • Technical Innovator: You drive continuous improvement by evaluating and implementing cutting-edge security tools, techniques, and automation. Your relentless pursuit of innovation keeps us ahead of evolving threats.
  • Collaborative Leader: You build strong cross-functional partnerships, championing security across the organization. You foster a collaborative environment where teams work seamlessly to achieve a strong security posture.
  • Resilient and Adaptive: You thrive in a dynamic environment, effectively managing complex security projects and leading teams through change. Your ability to adapt and problem-solve makes you a key asset during challenging situations.
How You’ll Grow
  • Shape Industry Standards: Participate in leading security conferences, thought leadership initiatives, and industry working groups to shape the future of cybersecurity practices.
  • Executive Presence: Gain direct exposure to executive-level decision-making, refining your strategic communication and influencing skills.
  • Expand Your Leadership Toolkit: Lead a team of skilled security professionals, providing you with ample opportunities to enhance your mentorship, coaching, and talent development abilities.
  • Complex Problem-Solving: Tackle high-impact security challenges that will push your critical thinking, analysis, and strategy-building skills.
Things You’ll Do
  • Drive Security Innovation: Research, evaluate, and implement advanced security technologies for intrusion detection, threat hunting, incident response, and automation.
  • Manage Complex Security Operations: Oversee daily operations of security teams involved in network monitoring, threat detection, analysis, incident response, and threat intelligence.
  • Lead Incident Response: Own significant security incidents, guiding cross-functional teams through investigation, containment, and remediation.
  • Shape Security Strategy: Develop a robust Security Operations strategy aligned with our risk appetite and business objectives.
  • Manage Security Projects: Ensure timely, on-budget delivery of security initiatives while mitigating risks and promoting adaptability.
  • Develop a High-Performing Team: Build and mentor a diverse group of security experts, promoting knowledge-sharing, continuous learning, and professional growth.
What We’re Looking For On Your Resume   While we value the wealth of experience, we put more emphasis on your capability and the outcomes you've produced. For this role, these elements are particularly important:
  • 8+ years of experience in the Information/Network Security fields.
  • 2+ years of prior SOC and/or Incident Response experience.
  • Strong experience in leading highly talented, but junior teams of InfoSec/SOC engineers.
  • GIAC, or equivalent security certification preferred, but not required
  • Ability to lead an Incident Response Team and respond to emergency calls during non-business hours, as needed.
  • Possess the ability to react quickly, decisively, and deliberately.
  • Excellent verbal and written communication skills.
  • Proactive, self-managed, and able to interface well with interdisciplinary teams across the organization, including executive leadership.
  • Experience performing analysis utilizing SIEM, SOAR, and HIDS/HIPS technologies.
  • Experience performing analysis utilizing IDS/AV/ Firewall consoles.
  • Experience with cloud computing and AWS services.
  • Strong understanding of networking and associated protocols.
  • Development skills including scripting (e.g. Python, shell scripting).
  • Experience with MITRE ATT&CK and Cyber Kill Chain, including Tactics, Techniques, and Procedures (TTPs).
  • Knowledge of STIX/TAXII, SIGMA, DISA STIGs.
  • Experience with Multiple Operating Systems with a System Administrator level skill set on MacOS and Linux.
Remember, it's not about how many years you've worked; it's about what you've achieved during that time that counts. We know the confidence gap and imposter syndrome can get in the way of meeting spectacular candidates. Please don't hesitate to apply.   What You Should Know About This Team
  • Innovation at Our Core: Our Security Operations team embraces change and thrives on solving complex challenges. We value experimentation, continuous learning, and push the boundaries of conventional security practices.
  • Collaborative Environment: We believe in the power of teamwork and foster open communication across the team and the wider organization. Your ideas will be heard, and your collaboration will be essential.
  • Data-Driven Approach: We rely on data-driven insights to inform our security strategies, measure effectiveness, and continuously improve our posture.
  • Growth Mindset: We are committed to your professional development. You'll have opportunities to expand your expertise, contribute to high-visibility projects, and advance your career in cybersecurity.
  • Joining our team means stepping into a role that's vital, challenging, and deeply linked to Qualtrics' aim of reshaping industries by harnessing the power of Experience Management and AI.

A day in Life 

  • Acts as a Highest Tier escalation point for SOC/IR and shift lead duties as a part of a security incident watch team.
  • Provides leadership, mentoring, and training to SOC/IR team personnel and to other Qualtrics stakeholders and the Qualtrics Information Security Team.
  • Performs network and endpoint forensics to identify the attack vector, scope and root cause.
  • Ensures communication and escalation of security activities to leadership.
  • Performs additional analysis of escalations from SOC engineers and conducts incident review.
  • Leads development of workflow automation to lower response time and eliminate lengthy response times
  • Develops and improves attack remediation strategies, incident handling processes, standard operating procedures, playbooks, and automations.
  • Shapes security strategy
  • Identifies alerting gaps and develops strategies to increase threat detection coverage.
  • Support FedRamp, ISO27001, SOC, HITRUST, and other audit activities for security operations and incident response.
  What differentiate Us From Other Companies
  • Work life integration is deeply important to us - we have frequent office events, team outings, and happy hours.
  • We take pride in our offices design aiming at cultivating creativity from our rooftop views to an open and collaborative work space.
  • On top of the standard benefits package (medical, dental, vision, life insurance, etc) we provide snacks, drinks, and free breakfast and lunches in our office.
  • We believe in sharing Qualtrics success which is part of the compensation for all employees.
  Our Team’s Favorite Perks and Benefits
  • Annual Leave: 20 or 26 annual leave days per annum plus an additional day for each year of service (to a max of 5).
  • Private Medical Insurance- Luxmed health & dental cover for you and your dependants.
  • Commuter Assistance- Up to the value of 80 PLN net a month for public transport.
  • Savings Plan- Two company saving plans provided by Nationale Nederlanden: Employee Capital Plan (PPK) & Employee Saving Plan (PPO).
  • QED PROGRAM- Qualtrics Engineer Development (QED) program: support, engineering learning activities up to 10% of engineering work time each quarter.
  • Wellness- Up to the value of 800PLN gross per quarter can be reimbursed for a variety of wellness activities via our dedicated platform Twic.
  • A choice of Multispot cards available.
  • Our employee assistance program with Unum provides counselling and wellbeing support to all employees.
  • Experience bonus- 7000 PLN gross per annum. Qualtrics experience bonus is a program designed to provide experiences to our employees they might not otherwise have.
  • Group Life & Income Protection Insurance.
  • Glasses/Contact lenses Reimbursement.
  • Free breakfasts, lunches, snacks, and drinks for everyone in the office.
  • Tax-deductible expenses (up to 75% depending on role).

 

The Qualtrics Hybrid Work Model: Our hybrid work model is elegantly simple: we all gather in the office three days a week; Mondays and Thursdays, plus one day selected by your organizational leader. These purposeful in-person days in thoughtfully designed offices help us do our best work and harness the power of collaboration and innovation. For the rest of the week, work where you want, owning the integration of work and life.   Qualtrics is an equal opportunity employer meaning that all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other protected characteristic.   ​​​​​​​Applicants in the United States of America have rights under Federal Employment Laws: Family & Medical Leave Act,Equal Opportunity Employment,Employee Polygraph Protection Act   Qualtrics is committed to the inclusion of all qualified individuals. As part of this commitment, Qualtrics will ensure that persons with disabilities are provided with reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please let your Qualtrics contact/recruiter know.   Not finding a role that’s the right fit for now? Qualtrics Insiders is the one-stop shop for all things Qualtrics Life. Sign up for exclusive access to content created with you in mind and get the scoop on what we have going on at Qualtrics - upcoming events, behind the scenes stories from the team, interview tips, hot jobs, and more. No spam - we promise! You'll hear from us two times a month max with fresh, totally tailored info - so be sure to stay connected as you explore your best role and company fit.