Назад
Company hidden
8 дней назад

Response Engineer (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Response Engineer (Cybersecurity): Investigating and mitigating sophisticated DDoS and application-layer attacks for enterprise customers with an accent on WAF, network security, traffic analysis, and customer incident response. Focus on designing targeted mitigation rules, correlating packet and traffic data in real time, and leading high-pressure technical communications during active attacks.

Location: Hybrid, available in London, United Kingdom. The role includes 24x7 rotating shifts, and candidates progressing to the offer stage may be asked to attend an in-person interview at a hirify.global office or hub.

Company

hirify.global operates a global network and security platform that protects and accelerates websites, applications, and other Internet properties.

What you will do

  • Investigate complex threat telemetry and respond to volumetric DDoS and application-layer attacks across OSI Layers 3, 4, and 7.
  • Implement and tune mitigation strategies using hirify.global security products, including Magic Transit, Magic Firewall, WAF, Bot Management, and Rate Limiting.
  • Analyze packets, traffic flows, alerts, and HTTP activity to identify protocol exhaustion, exploitation, and malicious traffic patterns.
  • Act as the primary technical contact for enterprise customers during active incidents and provide clear mitigation guidance through phone, chat, and email.
  • Maintain customer runbooks, lead onboarding sessions, deliver security posture reviews and post-incident reports, and meet customer SLA requirements.
  • Partner with engineering, product, and threat intelligence teams on attack trends, tooling gaps, and product improvements.

Requirements

  • 4–7 years of hands-on experience in MDR, advanced security operations, technical support, or incident response for enterprise infrastructure.
  • Experience with application security, OWASP Top 10, L7 WAF, HTTP/S anomalies, bot mitigation, network security, and L3/L4 DDoS attacks.
  • Knowledge of MITRE ATT&CK and Internet protocols including TCP, UDP, ICMP, GRE, BGP, and DNS.
  • Hands-on packet capture or HTTP inspection experience with tools such as tcpdump, Wireshark, tshark, HAR, or Burp Suite.
  • Ability and willingness to work 24x7 rotating shifts. Strong enterprise customer communication skills and the ability to remain calm during high-pressure incidents are required.
  • Proficiency in Linux/Unix and scripting, preferably Bash and Python, plus experience with REST APIs or GraphQL. Preferred experience includes agentic AI or LLMs, Prometheus, Grafana, security technologies, and relevant security or networking certifications.

Nice to have

  • Experience with enterprise CDNs, cloud-based DDoS scrubbing centers, next-generation WAFs, and edge network firewalls.
  • Experience building or querying Prometheus and Grafana dashboards.
  • GIAC, Cisco CCNA/CCNP, or equivalent incident response credentials.

Culture & Benefits

  • Work within Cloudforce One and INTERDICT, hirify.global’s threat operations and unified operational security organizations.
  • Collaborate with security, engineering, product, and threat intelligence specialists.
  • Contribute to initiatives protecting journalism, civil society organizations, public-sector election websites, and the broader open Internet.
  • hirify.global is committed to equal employment opportunity, inclusion, and reasonable accommodations.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →