682,237open jobs
39,519companies
99,018added this week
Browse all
Salary
$40k – $90k per year (Estimated)
Location
Remote/Hybrid (Colombo, Sri Lanka)
Seniority
Principal · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match

IFS

IFS is a Swedish enterprise software company founded in Linkoping in 1983 that sells applications for organisations whose value depends on physical assets and field work rather than office processes. Its Cloud product combines enterprise resource planning, asset management and field service management in one model, which suits aerospace and defence, energy and utilities, manufacturing, construction and telecommunications customers who plan maintenance, parts and technicians together. Headquartered in Linkoping and majority owned by the private equity firms EQT and Hg, it has pushed hard into industrial artificial intelligence.

IFS is a billion-dollar revenue company with 7000+ employees on all continents. Our leading AI technology is the backbone of our award-winning enterprise software solutions, enabling our customers to be their best when it really matters-at the Moment of Service™. Our commitment to internal AI adoption has allowed us to stay at the forefront of technological advancements, ensuring our colleagues can unlock their creativity and productivity, and our solutions are always cutting-edge.

At IFS, we’re flexible, we’re innovative, and we’re focused not only on how we can engage with our customers but on how we can make a real change and have a worldwide impact. We help solve some of society’s greatest challenges, fostering a better future through our agility, collaboration, and trust.

We celebrate diversity and understand our responsibility to reflect the diverse world we work in. We are committed to promoting an inclusive workforce that fully represents the many different cultures, backgrounds, and viewpoints of our customers, our partners, and our communities. As a truly international company serving people from around the globe, we realize that our success is tantamount to the respect we have for those different points of view.

By joining our team, you will have the opportunity to be part of a global, diverse environment; you will be joining a winning team with a commitment to sustainability; and a company where we get things done so that you can make a positive impact on the world.

We’re looking for innovative and original thinkers to work in an environment where you can #MakeYourMoment so that we can help others make theirs. With the power of our AI-driven solutions, we empower our team to change the status quo and make a real difference.

If you want to change the status quo, we’ll help you make your moment. Join Team Purple. Join IFS.

Purpose

The Senior Information Security Engineer is a senior technical and leadership role within IFS’s global Security Operations Center (SOC), responsible for driving advanced threat detection, deep-dive investigation and major cyber incident response across a fast-growing, global SaaS business. This role combines hands-on operational excellence with a mandate to mature the SOC itself - leading capability-building and transformation initiatives that scale detection engineering, automation and analyst tooling in step with IFS’s growth. The Senior Information Security Engineer acts as the senior escalation point for high-priority incidents, mentors and uplifts Tier 1/2 analysts, and brings a genuinely curious, investigative mindset to uncovering and closing gaps in the organization’s defensive posture.

Summary

IFS is seeking an experienced and highly curious Senior Information Security Engineer to strengthen its global Security Operations Center. Reporting to the SOC Manager, this role is central to detecting, investigating and responding to advanced threats across a fast-scaling, global SaaS estate, while also leading the ongoing transformation and maturity uplift of the SOC function itself.

We are looking for someone who has thrived in a fast-growth organization and is comfortable building process and capability from a lower level of maturity, and confident designing the detection engineering, automation and reporting foundations that a scaling security function needs. You will be very familiar with responding to cyber incidents and will experience leading major cyber incident responses, bringing the calm, structured leadership that high-pressure investigations demand.

This position suits a technically strong, and curious security professional who enjoys digging beneath the alert to understand root cause, who takes ownership of SOC transformation initiatives, and who can mentor and elevate the analysts around them.

Key Responsibilities:

  • Major Incident Response & Leadership: Lead and coordinate the end-to-end response to high-priority and major cyber incidents - acting as senior technical authority and calm decision-maker under pressure, from triage through containment, eradication and post-incident review.
  • Deep-Dive Investigation & Threat Validation: Perform advanced forensic analysis, malware and log investigation, and root-cause assessment, applying a naturally curious, hypothesis-driven approach to uncover threats others might miss.
  • SOC Capability Development & Transformation: Design, lead and deliver SOC maturity and transformation initiatives - from detection engineering and use-case development to workflow automation, tooling consolidation and process redesign - drawing on proven experience building SOC capability within a fast-growth organization.
  • Threat Detection Engineering: Build, tune and continuously improve SIEM detection logic, alerting and correlation rules (preferably Microsoft Sentinel) to reduce false positives and improve signal quality.
  • Proactive Threat Hunting: Conduct intelligence-led threat hunts using MITRE ATT&CK and emerging TTPs, identifying gaps in detection coverage before they can be exploited.
  • Automation & AI Enablement: Champion the use of automation, SOAR playbooks and AI-assisted tooling to increase SOC efficiency and free analysts for higher-value investigative work.
  • Vulnerability & Risk Management: Support vulnerability scanning, risk-based prioritization and remediation tracking across the environment.
  • Runbooks, Documentation & Quality: Own the creation and continuous improvement of incident and detection runbooks, ensuring documentation quality and consistency across the SOC.
  • Team Development & Mentorship: Act as an escalation point and mentor for Tier 1/2 analysts, coaching investigative technique, structured incident handling and a culture of curiosity.
  • Governance, Metrics & Reporting: Contribute to SOC KPI reporting and ISMS audit readiness, and support the continuous improvement of SOC policies and standards, translating technical findings into clear reporting for stakeholders.
  • Tooling & Vendor Input: Maintain deep proficiency across SOC tooling (SIEM, EDR, SOAR, cloud security) and contribute to tooling strategy, renewals and annual security budget planning as the SOC scales.

Essential:

  • 5+ years of experience within a Security Operations Center (SOC) or Cyber Defense function, including demonstrable experience operating within a fast-growth or rapidly scaling organization.
  • Proven track record of developing SOC capability and delivering SOC transformation or maturity programs (e.g. detection engineering, automation, process redesign, tooling consolidation).
  • Hands-on experience leading major or high-priority cyber incident response, from initial triage through to executive-level post-incident reporting.
  • Strong hands-on expertise with SIEM (preferably Microsoft Sentinel), EDR (e.g. Microsoft Defender for Endpoint) and SOAR platforms.
  • Advanced analytical and investigative mindset, with a genuine, demonstrable curiosity for understanding root cause and emerging threat techniques.
  • Strong forensics and security analysis skills, with the ability to make sound, well-informed decisions with minimal supervision under pressure.
  • Excellent written and verbal communication skills, including the ability to brief non-technical and executive stakeholders during live incidents.
  • Degree in Cyber Security, Information Technology, Computer Science or a related field, or equivalent demonstrable experience.

Desirable:

  • Experience with SOC automation, AI-enhanced detection and response, KQL analysis, scripting or Python.
  • Exposure to threat intelligence platforms and structured frameworks such as MITRE ATT&CK.
  • Familiarity with cloud security (Azure/AWS) and modern cyber defense methodologies.
  • Experience mentoring or leading junior analysts within a SOC environment.

Relevant certifications such as CISSP, CISM, GCIH, GCIA, CEH, Azure SC-200/AZ-500 or equivalent blue-team certifications.

Why Join Us

Opportunity to shape and lead the transformation of a growing global SOC function, with a clear path toward Lead Security Engineer and SOC leadership roles.

Exposure to enterprise-grade security platforms and global cyber defense operations across a fast-growth SaaS business.

A collaborative, high-performance culture where curiosity, ownership and continuous improvement are genuinely valued.

Competitive salary, certification sponsorship and career development.

For general information about IFS Applications, visit ifs.com

We embrace flexibility and hybrid work opportunities to support diverse needs and lifestyles, while also valuing inclusive workplace experiences. By fostering a sense of community, we drive innovation, strengthen connections, and nurture belonging. Our commitment ensures you can work in a way that suits you best, while also engaging with colleagues to share ideas and build meaningful relationships.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
682,237 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Colombo
$106k – $236k per year (Estimated) • Remote • Full-Time • Bachelor's Degree
DevOps
Incident Management
Cybersecurity
MITRE ATT&CK
Cyber Kill Chain
Apply
$31k – $76k per year (Estimated) • Remote/Hybrid • 3+ years exp • Moscow
Python
SQL
PowerShell
Bash
DevOps
VMWare
Proxmox VE
SLI/SLO/SLA
Cybersecurity
MITRE ATT&CK
Apply
$97k – $155k per year • Equity • In office • Full-Time • 5+ years exp • Bachelor's Degree • United States
Python
PowerShell
Cybersecurity
Microsoft Defender
pfSense
Apply
$48k – $123k per year (Estimated) • Remote/Hybrid • Full-Time • Barcelona
Cybersecurity
Nessus
Qualys Cloud Platform
Microsoft Defender
Apply
$107k – $115k per year • Equity • In office • Full-Time • Broomfield
Python
TypeScript
AI/ML
AI Agents
DevOps
Terraform
AWS
Cybersecurity
Microsoft Sentinel
NIST 800-171
Microsoft Entra ID
Apply
$158k – $200k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • Reston
Analytics
Power BI
Apply
$46k – $57k per year • Remote/Hybrid • Full-Time • Ottawa
Python
PowerShell
Bash
AI/ML
LLM
DevOps
Azure
Cybersecurity
Microsoft Entra ID
Apply
$88k – $162k per year (Estimated) • In office • Full-Time • Staines-upon-Thames
Go
DevOps
CI/CD
Apply
$40k – $85k per year (Estimated) • Remote/Hybrid • Full-Time • 7+ years exp • Bachelor's Degree • Colombo
AI/ML
Embeddings
Prompt Engineering
AI Agents
Edge AI
DevOps
Vector
Apply
$98k – $169k per year (Estimated) • Remote/Hybrid • Full-Time • Staines-upon-Thames
AI/ML
AI Agents
Apply
$40k – $85k per year (Estimated) • Remote/Hybrid • Full-Time • 7+ years exp • Bachelor's Degree • Colombo
AI/ML
Embeddings
Prompt Engineering
AI Agents
Edge AI
DevOps
Vector
Apply
$51k – $106k per year (Estimated) • Remote/Hybrid • Full-Time • 6+ years exp • Colombo
Go
AI/ML
AI Agents
Apply
$31k – $85k per year (Estimated) • In office • Full-Time • 3+ years exp • Colombo
Apply
$39k – $88k per year (Estimated) • In office • Full-Time • 1+ year exp • Colombo
Apply
$36k – $99k per year (Estimated) • Remote/Hybrid • Full-Time • Colombo
Design
Figma
Canva
Apply
See all jobs
This is one of many
682,237 more open roles from verified company boards, updated every day.