SR INFORMATION SECURITY ENGINEER

Lumen is the trusted network for the AI‑powered world, connecting people, data, and applications through our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI workloads for enterprises, governments, and communities.

At Lumen, you’ll work on infrastructure customers rely on today and build for what’s next, where performance, security, and resilience matter.

This is a high accountability environment where bold ideas drive real innovation for our customers, partners, and industry. The work is challenging, expectations are clear, and trust is built into how we operate. If you’re ready to take ownership, deliver meaningful impact, and help shape the future of AI‑ready connectivity, join us today.

The Role

The role sits within Lumen’s Security Operations Engineering team and is accountable to lead and manage all activities as part of our service onboarding and deployment of our Managed Security Services.
This includes coordinating and working with customers to deploy log collectors, agent software, testing and confirming that the services have been deployed or activated. This role will also support, manage and
operate the technology platforms (SIEM, SOAR, others) which we are leveraging in our managed security services for our customers. The candidate will have responsibility to monitor and manage our centralized
technology platforms, our deployment activities for services to new customers, and 3rd level operational support of Lumen’s standard managed security products.

The Main Responsibilities

  • Interface with the Lumen customers’ internal staff to support the deployment and operationalization of CenturyLink’s Security Log Monitoring (SLM) / Managed Security Behavioral Analytics (MSBA) / Managed
  • Endpoint Detection & Response (MEDR) service on our platforms in APAC.
  • Responsible to work with customers’ IT teams to script and configure GPO or other methods for
    deployment of agents or EDR installations.
  • Responsible for configuration changes and tuning of AWS environment. Ensure that AWS tags are used to document and identify the environment, versions, usage, and other critical details.
  • Responsible for setting up communications / connectivity to customers’ premises, such as site-to-site IPsec / VPN.
  • Interpret and incorporate customer requirements into Lumen’s repeatable processes where appropriate
  • Manage project timelines.
  • Monitor, secure, harden, operate, patch / update, upgrade and maintain the FortiSIEM & Swimlane SOAR platforms on AWS.
  • Be part of the platform (FortiSIEM & Swimlane SOAR) on-call operational support team roster. The role requires being on standby or on call after hours and weekends, on rotational basis.

What We Look For in a Candidate

  • Resilience and ability to handle stressful situations effectively while managing several tasks
  • Ability to work within a defined deployment process and willingness to participate in periodic after-hours scheduled maintenance
  • Demonstrated ability to make and take responsibility for decisions on technical issues
  • Ability to work in a self-directed manner and demonstrate initiative
  • Experience following and creating repeatable processes to support a multi-tenant environment
  • Quick learner
  • Attention to detail
  • Ability to communicate effectively – both written and oral.
  • Strong analysis skills to perform network and system vulnerability assessments, identifying and prioritizing security issues, and documenting findings and recommendations.
  • Strong customer focus and quality mindset.

Competencies: (where applicable)

  • Preferably some working experience with Active Directory.
  • Some basic knowledge of SIEM, different log collection methods and rules / use case development on SIEM.
  • Good with Microsoft Excel, Word and Powerpoint.