Назад
Company hidden
1 день назад

Senior Cybersecurity Engineer (Cyber Threat Intelligence & Response)

Формат работы
remote (Global)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Cybersecurity Engineer (Cyber Threat Intelligence & Response): Leading hands-on incident response across platforms and applications with an accent on threat investigation, host and network forensics, malware triage, and detection engineering. Focus on containing sophisticated attacks, mapping adversary activity to MITRE ATT&CK, automating response workflows, and improving threat detection through hunting and intelligence analysis.

Location: Remote

Company

hirify.global provides cloud-based business management and payment solutions for small and medium-sized businesses in more than 72 countries.

What you will do

  • Own security incidents from detection and triage through investigation, containment, eradication, recovery, and final reporting.
  • Lead investigations across logs, endpoints, email, network data, and operating systems to establish scope, root cause, and attack timelines.
  • Perform host and network forensics, malware triage, document and PDF analysis, and threat-intelligence research.
  • Coordinate incident response with engineering, IT, security teams, and leadership, communicating technical risks clearly.
  • Hunt for threats across system logs, user behavior, network flows, and intelligence sources while developing detections and indicators of compromise.
  • Build incident-response playbooks and automation, strengthen MITRE ATT&CK detection coverage, and participate in on-call and out-of-hours response.

Requirements

  • 3–6 years of experience in security operations or incident response.
  • Experience managing the full incident-handling lifecycle and making decisions under pressure.
  • Strong triage, root-cause analysis, log correlation, and familiarity with HTTP, SMTP, network logs, Windows, Active Directory, operating systems, and servers.
  • Hands-on SIEM experience for investigation, threat hunting, and detection development; Microsoft Sentinel and KQL are preferred.
  • Practical experience with EDR, advanced threat protection, identity management, API security, scripting, analytics, and automation.
  • Understanding of attacker TTPs, the Cyber Kill Chain, ITIL, ISO 27001, and PCI DSS, together with strong written and verbal communication skills.

Nice to have

  • Malware analysis experience.
  • GCIH, GCFA, AZ-500, or SC-100 certification.
  • Experience with Jupyter Notebooks, Python, PowerShell, or SOAR automation.

Culture & Benefits

  • Flexible working arrangements and a global colleague network.
  • 12 weeks of gender-neutral paid parental leave.
  • Three additional paid days for volunteering and social-impact activities.
  • LinkedIn Learning access and regular career-development conversations.
  • Global mentorship, diversity and inclusion initiatives, mental health support, medical insurance, and life insurance.
  • Visa sponsorship is not available; candidates must be legally authorized to work in the country where they apply.

Hiring process

  • Submit a resume through the careers portal or an external job board.
  • Include the word “moonshot” at the top of the message to the Hiring Manager.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →