Security Engineer III

Expedia Expedia · Hospitality · Prague, Czech Republic

Security Engineer III at Expedia Group responsible for advanced cybersecurity investigations across various technologies and brands, analyzing security signals, threat intelligence, and vulnerability data to detect, investigate, and remediate security issues. The role involves driving long-term risk reduction through automation and scalable solutions, with a requirement for familiarity with AI-driven systems, tools, or workflows.

What you'd actually do

  1. Perform advanced level of security investigation on the following areas: application security, cloud security, data security, network security, and perimeter security
  2. Analyze security signals, threat intelligence, and vulnerability data to detect, investigate, and remediate security issues, driving long-term risk reduction through automation and scalable solutions.
  3. Provide in-depth knowledge of cyber-attack analysis and cyber kill-chain framework
  4. Gather data and drill down to root cause analysis, ability to recommend effective courses of containment, remediation, and communicate to the various levels in the organization
  5. Suggest improvements to current Security Detection practices and procedures

Skills

Required

  • security engineering
  • building or operating security tooling, services, or platforms
  • complex, distributed systems
  • owning the security posture of one or more services or platforms
  • implementing controls, monitoring, and remediation
  • programming or scripting language
  • secure coding practices
  • working with APIs
  • data models in modern software architectures
  • AI-driven systems, tools, or workflows
  • applying AI/ML concepts to real world products

Nice to have

  • leading shifts in a security operations center or CISRT
  • leading security initiatives or projects end to end
  • rolling out new security controls, detection capabilities, or automation
  • depth in one or more security domains
  • measurable risk reduction
  • Cybersecurity certifications such as SANS or CISSP
  • data-driven approaches to prioritize security work
  • tune detections
  • improve operational excellence
  • defining metrics and feedback loops for continuous improvement

What the JD emphasized

  • advanced cybersecurity investigations
  • advanced cybersecurity
  • advanced networking
  • advanced system administration
  • intermediate scripting
  • Familiarity with AI-driven systems, tools, or workflows