Назад
Company hidden
7 дней назад

Cyber Detection Event Analyst (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cyber Detection Event Analyst (SIEM/EDR/NDR): Investigating security alerts and cyber threats across endpoint, network, cloud, identity, application, and manufacturing environments with an accent on detection engineering, threat intelligence, and security analytics. Focus on developing detection logic, conducting threat hunting, improving automation workflows, and supporting major incident investigations.

Location: Hybrid in Warren, Michigan; report to the specific location at least 3 times per week. The role may be eligible for relocation benefits.

Company

hirify.global is an automotive company focused on safer, more equitable mobility through its Zero Crashes, Zero Emissions, and Zero Congestion vision.

What you will do

  • Monitor, triage, and investigate security alerts across endpoint, network, cloud, identity, application, and manufacturing environments.
  • Use SIEM, EDR, NDR, SOAR, cloud security platforms, and threat intelligence to identify indicators of compromise and malicious activity.
  • Develop and improve detection logic, correlation rules, analytics, dashboards, queries, scripts, and alerting content.
  • Conduct threat hunting and apply adversary TTPs and MITRE ATT&CK methodologies to improve detection coverage and quality.
  • Collaborate with Incident Response, Threat Intelligence, Identity Security, Cloud Security, and Engineering teams.
  • Support major incident investigations, security tool onboarding, log integration, automation, documentation, and operational maturity improvements.

Requirements

  • 2+ years of cybersecurity experience in security operations, incident response, threat detection, detection engineering, or threat hunting.
  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, Engineering, or a related field, or equivalent practical experience.
  • Working knowledge of SIEM, EDR, network security monitoring, intrusion detection, packet analysis, network telemetry, and flow analysis.
  • Hands-on experience with Azure, AWS, or GCP and scripting with Python, PowerShell, or similar technologies.
  • Understanding of operating systems, networking, authentication, cyber threat intelligence, APIs, data integrations, and security automation workflows.
  • Ability and willingness to participate in a 24x7 on-call rotation; immigration sponsorship is not provided.

Nice to have

  • Experience with SOAR, proactive threat hunting, detection engineering, use-case development, content tuning, or security analytics programs.
  • Knowledge of MITRE ATT&CK, the Cyber Kill Chain, and modern adversary tradecraft.
  • Experience securing cloud-native, SaaS, identity, or manufacturing environments.
  • Familiarity with machine learning, AI-assisted security workflows, security automation, or relevant industry certifications.

Culture & Benefits

  • Collaborative environment spanning cybersecurity, engineering, threat intelligence, cloud security, and incident response teams.
  • Opportunities to build expertise in security operations, threat detection, automation, cloud security, and emerging technologies.
  • Employee-focused total rewards and well-being benefits from day one.
  • Inclusive workplace committed to belonging, equal opportunity, and reasonable accommodations.

Hiring process

  • Role-related assessments and pre-employment screening may be required where applicable.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →