Назад
Company hidden
3 дня назад

Senior Tactical Response Analyst (Cybersecurity)

125 000 - 135 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Tactical Response Analyst (Cybersecurity): Leading complex incident response investigations across endpoint, identity, cloud, and network telemetry with an accent on active-adversary analysis, defensible timelines, and remediation guidance. Focus on reconstructing attacker activity, developing detections and automation, and communicating actionable findings during high-stakes incidents.

Location: Remote within the United States

Salary: $125,000–$135,000 annual base salary, plus bonus and equity

Company

hirify.global provides cybersecurity technology backed by a 24/7 human-led Security Operations Center to protect businesses and service providers from cyber threats.

What you will do

  • Lead or support complex incident response cases involving active adversaries, hands-on-keyboard activity, serious intrusions, and multi-party coordination.
  • Investigate endpoint, identity, cloud, SIEM, VPN, firewall, Windows, Linux, macOS, and other available telemetry.
  • Build evidence-based timelines and root-cause narratives, then provide remediation, eviction, recovery, and recurrence-prevention guidance.
  • Communicate findings to technical teams, executives, partners, and other stakeholders during high-stakes incidents.
  • Turn investigation findings into technical notes, product and detection feedback, new detections, playbooks, threat intelligence, and automation opportunities.
  • Mentor responders and collaborate with Product, Engineering, Detection Engineering, Sales Engineering, and other cross-functional teams.

Requirements

  • 3–5+ years of experience in SOC, MDR, threat hunting, digital forensics, or incident response.
  • Experience with external-customer incident response engagements and complex or multi-host intrusions.
  • Strong knowledge of attacker techniques including initial access, persistence, lateral movement, credential access, remote access, and ransomware activity.
  • Experience with Microsoft 365, Azure, identity, VPN, firewalls, SIEM, cloud telemetry, endpoint and forensic tools, and common forensic artefacts.
  • Working knowledge of malware analysis, OSINT, attacker infrastructure research, query languages such as KQL, EQL, ES|QL, or Splunk SPL, and detection formats such as Sigma, YARA, Suricata, or Snort.
  • Ability to script or automate with Python, PowerShell, Bash, JavaScript, PHP, Ruby, or similar technologies, and to produce concise technical reports and executive summaries.

Nice to have

  • Experience designing reusable investigation playbooks, methodology modules, production-quality automation, or data-normalization workflows.
  • Experience creating technical enablement, case studies, webinars, blogs, or conference content.
  • Relevant certifications or equivalent practical experience in forensics, incident response, threat hunting, or offensive security.

Culture & Benefits

  • 100% remote work environment.
  • Paid vacation, sick time, holidays, and 12 weeks of paid parental leave.
  • Medical, dental, vision, life, and disability insurance plans.
  • 401(k) contribution of 5% regardless of employee contribution and stock options for full-time employees.
  • $500 home-office reimbursement, annual education and professional development allowance, and $75 monthly digital reimbursement.
  • Access to BetterUp for personal and professional coaching and growth.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →