About the job

SKELAR is a venture builder dedicated to creating international product IT companies using the principles of venture investment. Together with our co-founders, we assemble strong teams to launch tech businesses and excel in global markets.
Currently, SKELAR boasts a portfolio of diverse businesses spanning various niches—from EdTech to marketplaces. Our companies consistently rank among the top startups and product firms in Ukraine, achieving high placements in the App Store and developing platforms utilized by millions globally. Moreover, our ventures have been featured in prominent media outlets like TechCrunch and Wired.
We are on the lookout for a proactive and responsible Security Engineer to elevate our company's security framework. With over 2000 users and 1000+ devices at SKELAR, our goal is to establish robust processes ranging from system hardening and automation (Zero Trust) to building our internal Security Operations Center (SOC) from the ground up.
We welcome applications from talented engineers with expertise in either Infrastructure & Endpoint Security or Detection & Response. If you possess a solid foundation in security practices and have experience with systems similar to ours, we would love to connect!
Your Challenges Await:
Area 1: Cloud & Endpoint Security (Prevention & Hardening)
- Conduct security reviews and harden our key corporate services: Google Workspace (GWS), Slack, Notion, Dropbox;
- Engage deeply in Identity & Access Management: architecting a Zero Trust framework, configuring MFA, SSO, and Lifecycle management exclusively based on Okta;
- Manage macOS systems and ensure compliance through Jamf Pro and Jamf Protect;
- Develop and implement data loss prevention (DLP) policies within our ecosystem.
Area 2: SecOps & Monitoring (Detection & Response)
- Select and fully implement an internal SIEM solution: conducting POCs for monitoring systems and safeguarding architectural choices for the business;
- Configure log collection and correlation from our cloud environments, SaaS services (GWS), and networks;
- Design anomaly detection rules (Detection Engineering) and create response Playbooks;
- Build processes for alert handling and incident management from the ground up.
What We Value:
- Experience in information security (infrastructure protection);...

