Назад
Company hidden
4 дня назад

SOC Lead (Cybersecurity)

96 086 - 111 683$
Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SOC Lead (Cybersecurity): Leading incident response and threat hunting for a cloud-native digital identity platform with an accent on Kubernetes, container security, CI/CD pipelines, and forensic analysis. Focus on investigating sophisticated cloud incidents, developing detection and mitigation strategies, mentoring SOC analysts, and applying AI/ML to accelerate security operations.

Location: McLean, Virginia; full-time, in-office work five days per week

Salary: $96,086–$111,683 USD annual base salary, excluding bonus, equity, and benefits

Company

hirify.global provides a digital identity wallet and identity verification platform used by consumers, government agencies, healthcare organizations, and consumer brands.

What you will do

  • Lead cyber security incident response across cloud-native infrastructure, including compromised containers, Kubernetes clusters, and CI/CD pipelines.
  • Conduct host, network, and operating-system forensic investigations covering containment, eradication, recovery, and root-cause analysis.
  • Oversee detection and mitigation of insider threats and sophisticated attacks using DLP, SIEM, IDS/IPS, EDR, and firewall technologies.
  • Perform proactive threat hunting for indicators of compromise, APT tactics, and cloud- and container-specific attack patterns.
  • Lead security monitoring, incident response, SOC process improvement, SOP development, and adoption of new security solutions.
  • Mentor junior SOC analysts and collaborate with Tier 2 and Tier 3 staff and cross-functional teams.

Requirements

  • 8+ years of information security experience with hands-on incident response, threat hunting, and forensic analysis.
  • 2+ years in a lead SOC role and responding to sophisticated threats.
  • 2+ years performing cloud incident response, preferably in GCP, involving Kubernetes, containers, and CI/CD pipelines.
  • 4+ years detecting, analyzing, and mitigating complex incidents with DLP, SIEM, IDS/IPS, EDR, and firewalls.
  • Knowledge of container security, including image scanning, runtime protection, container escapes, and CI/CD supply-chain risks.
  • Experience with cloud security, Kubernetes, IaC, GitOps, threat intelligence, scripting, automation, and forensic investigations across Linux, macOS, and Windows.

Nice to have

  • Experience securing service mesh policies, LLM deployments, AI pipelines, and adversarial AI threats.
  • Advanced SIEM expertise with Chronicle or Splunk.
  • Certifications such as GCIA, GCIH, GCFA, CISSP, CKS, or a cloud security certification.
  • Experience developing insider-threat detection strategies and conducting SOC maturity assessments.

Culture & Benefits

  • Mission-driven cybersecurity work focused on protecting digital identities.
  • Medical, dental, vision, HSA, FSA, life, disability, accident, and critical illness insurance.
  • 401(k) with company match, parental leave, unlimited paid time off subject to policy, and company holidays.
  • Learning and development benefit, employee assistance, wellbeing and childcare discounts, pet insurance, and commuter benefits.
  • Work environment emphasizing collaboration, adaptability, critical thinking, and continuous improvement.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →