Назад
Company hidden
4 дня назад

Senior Detection and Response Engineer

200 000 - 240 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Detection and Response Engineer (Cybersecurity): Building detection and response capabilities across cloud, endpoint, and identity environments with an accent on high-fidelity detections, incident investigations, and threat hunting. Focus on automating containment with SOAR, operationalizing threat intelligence, improving logging coverage, and measuring detection efficacy against MITRE ATT&CK.

Location: Hybrid schedule with three days per week onsite in the San Francisco FiDi or Culver City office, California, United States

Salary: $200,000–$240,000 USD annually

Company

hirify.global is building an AI platform for wealth professionals and partnering with financial advisors to improve the accessibility and quality of financial advice.

What you will do

  • Build, tune, and maintain high-fidelity detections as code across SIEM, cloud, endpoint, and identity telemetry.
  • Triage and investigate alerts, lead security incident response, and threat-hunt for low-and-slow and insider activity.
  • Operationalize threat intelligence and IOC ingestion in detections and edge/WAF rules.
  • Develop response playbooks and SOAR automation to reduce manual work and accelerate containment.
  • Partner with MDR and incident response providers and run purple-team exercises with red-team security engineers.
  • Improve logging coverage and detection effectiveness using MITRE ATT&CK as a measurement framework.

Requirements

  • 4+ years of experience in detection engineering, incident response, or threat hunting.
  • Hands-on experience authoring detections in a modern SIEM and investigating AWS, endpoint, and identity data.
  • Ability to script and automate with Python or similar tools.
  • Experience or aptitude with AWS, Kubernetes, Datadog or Splunk, SentinelOne, CrowdStrike, and Terraform.
  • Bachelor’s degree in computer science, computer engineering, information security, or equivalent relevant experience.
  • Strong independent work, communication, ownership, resilience, and creative problem-solving skills.

Nice to have

  • Experience in regulated environments, fintech, or financial services.
  • Experience with cyber threat intelligence or insider-threat detection.

Culture & Benefits

  • Values include kindness, humility, ownership, growth mindset, resilience, and open collaboration.
  • Premium healthcare, dental, and vision insurance plans.
  • 401(k) savings plan with a 4% match and immediate vesting.
  • 16 weeks of paid parental leave after one year of employment.
  • Professional development support, including an employee mobility program and annual learning and development budget.
  • One month of work from anywhere per year, with exceptions for a few countries.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →