1 день назад
Senior Cybersecurity Engineer (Cyber Threat Intelligence & Response)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cybersecurity Engineer (Cyber Threat Intelligence & Response): Leading hands-on incident response across platforms and applications with an accent on threat investigation, host and network forensics, malware triage, and detection engineering. Focus on containing sophisticated attacks, mapping adversary activity to MITRE ATT&CK, automating response workflows, and improving threat detection through hunting and intelligence analysis.
Location: Remote
Company
provides cloud-based business management and payment solutions for small and medium-sized businesses in more than 72 countries.
What you will do
- Own security incidents from detection and triage through investigation, containment, eradication, recovery, and final reporting.
- Lead investigations across logs, endpoints, email, network data, and operating systems to establish scope, root cause, and attack timelines.
- Perform host and network forensics, malware triage, document and PDF analysis, and threat-intelligence research.
- Coordinate incident response with engineering, IT, security teams, and leadership, communicating technical risks clearly.
- Hunt for threats across system logs, user behavior, network flows, and intelligence sources while developing detections and indicators of compromise.
- Build incident-response playbooks and automation, strengthen MITRE ATT&CK detection coverage, and participate in on-call and out-of-hours response.
Requirements
- 3–6 years of experience in security operations or incident response.
- Experience managing the full incident-handling lifecycle and making decisions under pressure.
- Strong triage, root-cause analysis, log correlation, and familiarity with HTTP, SMTP, network logs, Windows, Active Directory, operating systems, and servers.
- Hands-on SIEM experience for investigation, threat hunting, and detection development; Microsoft Sentinel and KQL are preferred.
- Practical experience with EDR, advanced threat protection, identity management, API security, scripting, analytics, and automation.
- Understanding of attacker TTPs, the Cyber Kill Chain, ITIL, ISO 27001, and PCI DSS, together with strong written and verbal communication skills.
Nice to have
- Malware analysis experience.
- GCIH, GCFA, AZ-500, or SC-100 certification.
- Experience with Jupyter Notebooks, Python, PowerShell, or SOAR automation.
Culture & Benefits
- Flexible working arrangements and a global colleague network.
- 12 weeks of gender-neutral paid parental leave.
- Three additional paid days for volunteering and social-impact activities.
- LinkedIn Learning access and regular career-development conversations.
- Global mentorship, diversity and inclusion initiatives, mental health support, medical insurance, and life insurance.
- Visa sponsorship is not available; candidates must be legally authorized to work in the country where they apply.
Hiring process
- Submit a resume through the careers portal or an external job board.
- Include the word “moonshot” at the top of the message to the Hiring Manager.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Senior Threat Hunt Engineer (Cybersecurity)
118 960 - 178 440$
1 день назад
Engineer IV, Cybersecurity
180 000 - 205 000$
17 часов назад
Security Engineer - Incident Response (Cybersecurity)
70 000 - 107 800€
Twilio
2 дня назад
Senior Security Engineer, Incident Response (AI)
141 520 - 176 900$
LinkedIn
6 дней назад
Staff Information Security Engineer (Detection Engineering)
156 000 - 255 000$
Anthropic
3 дня назад
Security Engineer - Threat Intel
320 000 - 405 000$