Назад
Company hidden
3 дня назад

Senior Detection & Response Engineer (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Poland
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Detection & Response Engineer (Cybersecurity): Developing and maintaining threat detections, security analytics, and automation workflows across SIEM, EDR, identity, email, SaaS, and security monitoring platforms with an accent on detection engineering, incident response, and operational automation. Focus on building Tines and API integrations, improving detection coverage and alert fidelity, and solving complex security operations challenges in a Tier 3 SOC environment.

Location: Kraków, Poland; hybrid work with onsite attendance at the Kraków office three days per week

Company

hirify.global develops and operates technology products and maintains a global Security Operations function focused on protecting its environments and services.

What you will do

  • Develop, tune, and maintain detections, correlation rules, analytics, searches, and threat detection content across SIEM, EDR, identity, email, SaaS, and security monitoring platforms.
  • Identify detection gaps, create new use cases, map detections to MITRE ATT&CK, and improve alert fidelity and security coverage.
  • Design, build, and maintain security automation workflows using Tines, SOAR platforms, APIs, and platform-native capabilities.
  • Support security investigations and incident response through technical analysis, detection engineering, and automation.
  • Collaborate with Security Operations, Security Engineering, IT, Product Security, threat analysts, incident responders, and MSSP partners.
  • Measure and improve the effectiveness of detections, automations, and operational workflows.

Requirements

  • Senior-level experience improving threat detection, security operations, incident response, or related cybersecurity capabilities in a production environment.
  • Hands-on detection engineering experience, including creating, tuning, and maintaining detections, searches, analytics, or threat hunting content with security-focused query languages.
  • Experience building and maintaining security automations with Tines, SOAR platforms, or similar workflow automation technologies.
  • Experience designing, building, or maintaining automation workflows and integrating systems through APIs or automation platforms.
  • Solid understanding of threat detection, security investigations, and incident response in a Tier 3 Security Operations environment.
  • Ability to work in a hybrid model and attend the Kraków office onsite three days per week.

Culture & Benefits

  • Collaboration across Security Operations, Security Engineering, IT, Product Security, and MSSP environments.
  • Opportunities to evaluate and adopt emerging technologies that improve analyst efficiency and operational effectiveness.
  • Potential eligibility for annual bonuses and incentives depending on role and location.
  • Health and wellbeing benefits, paid time off, retirement plans, insurance coverage, and local or statutory benefits may be available depending on location.
  • Compensation is determined based on skills, experience, qualifications, and location and is discussed during recruitment.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →