Назад
Company hidden
4 дня назад

Principal Incident Response Engineer

117 200 - 157 500$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Incident Response Engineer (Cybersecurity): Leading digital forensics, incident response, and threat hunting for critical information and IT assets with an accent on high-severity incident leadership, forensic investigations, and detection coverage. Focus on analyzing endpoint and network artifacts, coordinating containment and recovery, expanding MITRE ATT&CK detections, and developing AI/LLM workflows for incident response.

Location: Remote, United States of America

Salary: $117,200–$157,500 base pay annually

Company

hirify.global develops purpose-driven technology and responsible AI for organizations creating social impact.

What you will do

  • Analyze security events and indicators to determine incident nature and severity.
  • Respond to security incidents and serve as technical lead for high-severity cases.
  • Coordinate containment, mitigation, recovery, and remediation across on-premises, hybrid, and cloud workloads.
  • Conduct digital forensic investigations and threat hunts to identify detection gaps.
  • Partner with detection engineering to expand MITRE ATT&CK coverage.
  • Develop AI/LLM workflows and collaborate with forensic analysts, law enforcement, and legal experts on computer evidence.

Requirements

  • 8+ years of cyber incident response experience in a relevant environment.
  • Expertise with SIEM, IDS/IPS, EDR, and cloud monitoring solutions.
  • Strong knowledge of incident response methodologies, including containment, eradication, and recovery, plus NIST, SANS, and CSA frameworks.
  • Ability to acquire and analyze endpoint and network artifacts, volatile memory, malicious files, binaries, and scripts.
  • Experience with EnCase, FTK, Axiom, and Cellebrite forensic tools.

Nice to have

  • Cybersecurity certifications such as CISSP, GCIH, GFCA, GREM, or ECIH.

Culture & Benefits

  • Remote-flexible workforce.
  • Medical, dental, and vision insurance.
  • 401(k) program with employer match.
  • Flexible paid time off and parental leave.
  • Wellness programs, pet insurance, legal and identity protection, and tuition reimbursement.
  • Support for diversity, inclusion, innovation, trust, and responsible technology.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →