Secretlab is an international gaming chair brand seating over a million users worldwide, with our key markets in the United States, Europe and Singapore, where we are headquartered.
This is an individual contributor role where you will be a valued member in our technical team, responsible for testing and screening security software and for monitoring networks and systems for security breaches or intrusions. In this role, you will be the company's first line of defense against unauthorized access from outside sources and potential security threats.
Our Tech team is essential in ensuring that Secretlab's team members are primed to continue delivering at a world-class level on all our initiatives; including collaborative efforts with world-renowned brands such as Game of Thrones, Batman, Cloud9, Team Secret, as well as international esports organisers such as Riot Games for their League of Legends global tournaments.
Responsibilities
- Architect, engineer, and deploy robust security controls to safeguard our networks, server infrastructure, and critical information systems.
- Craft and oversee comprehensive security policies and standards, ensuring alignment with global frameworks such as ISO 27001 and NIST.
- Execute deep-dive risk assessments, vulnerability scans, and penetration tests to pinpoint and resolve security gaps across our ecosystem.
- Drive the proactive optimization of automated playbooks and security configurations within our advanced software suites.
- Provide high-level architectural oversight and technical direction to ensure our core security initiatives are executed with precision.
- Spearhead incident response maneuvers, digital forensics, and investigations, while maintaining our master incident response roadmap.
- Translate complex security findings into actionable insights for leadership, advising senior management on our overall risk posture.
- Partner with Engineering and IT stakeholders to embed security into system design and the heart of our development lifecycles and operational DNA.
- Monitor the threat landscape to evaluate and integrate cutting-edge security tools that elevate our defensive environment.
Requirements
- Possess advanced technical mastery of database and operating system security across Windows, macOS, and UNIX/Linux environments.
- Demonstrate a proven track record in deploying and managing critical IT security infrastructure, including Next-Gen Firewalls, SIEM, EDR, and DLP solutions.
- Deep expertise in network security and core protocols such as TCP/IP, DNS, and VLANs, supported by the adept use of sophisticated monitoring toolsets.
- Thorough command of cybersecurity principles, defensive techniques, and the implementation of secure coding standards throughout the development lifecycle.
- Extensive experience securing web applications and service-oriented architectures, with a profound understanding of web-related communication protocols.
- Proficiency in scripting languages such as Python or PowerShell to drive automation and create bespoke security tooling.
- Practical experience in architecting security for cloud ecosystems (AWS, Azure, GCP) and managing modern identity frameworks like Okta or Entra ID.
- Exceptional communication skills, with the ability to distill complex technical risks into actionable intelligence for senior leadership and external partners.
Bonuses
- Attainment of top-tier professional certifications such as CISSP, CISM, or CEH is highly regarded.