Назад
Company hidden
6 дней назад

Senior Detection Engineer (Cybersecurity)

195 000 - 230 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Detection Engineer (Cybersecurity): Defining detection, effectiveness, and tuning requirements for an autonomous cybersecurity platform with an accent on EDR behavior, vendor-specific policy semantics, and SOC-grounded validation. Focus on evaluating agent recommendations, maintaining MITRE ATT&CK coverage, and translating endpoint telemetry and adversary tradecraft into measurable product standards.

Location: US, Remote

Base salary: $195,000–$230,000 annually, plus equity eligibility for full-time employees.

Company

hirify.global is a remote cybersecurity product company developing the NodeZero platform for autonomous penetration testing and security assessment operations.

What you will do

  • Define detection, effectiveness, and tuning requirements for the Defensive Agent team.
  • Partner with Product and Engineering to turn EDR effectiveness goals and blue team workflows into buildable product requirements.
  • Set acceptance criteria and validate releases before customer delivery.
  • Serve as the domain reference for Engineering and AI research on detection techniques, vendor behavior, and endpoint security.
  • Define vendor-specific policy semantics and maintain coverage models as endpoint platforms evolve.
  • Evaluate tuning recommendations and partner with the Attack team to align detection expectations with current adversary tradecraft.

Requirements

  • 6+ years of experience in detection engineering, security operations, incident response, or threat hunting.
  • Hands-on production experience administering and tuning EDR platforms, including detections, policies, exclusions, and alert investigations.
  • Strong understanding of SOC workflows, false-positive and false-negative tradeoffs, alert fatigue, and detection coverage measurement.
  • Working knowledge of MITRE ATT&CK, detection coverage frameworks, post-compromise behavior, and endpoint and identity telemetry.
  • Exceptional technical writing and the ability to influence engineers, AI researchers, product managers, SOC analysts, and executives without direct authority.
  • Scripting ability, ideally Python, plus comfort with SQL and large-scale event and telemetry analysis.

Culture & Benefits

  • Remote work for this US-based role, with remote and hybrid models varying by role and location.
  • Collaborative, inclusive culture focused on respect, ownership, and results.
  • Health, vision, and dental insurance for employees and families.
  • Flexible vacation policy and generous parental leave.
  • Career development opportunities, equity eligibility, and competitive compensation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →