Назад
Company hidden
3 дня назад

SNOC Engineer III (Cybersecurity)

105 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SNOC Engineer III (Cybersecurity): Protecting client environments through advanced incident investigation, threat analysis, monitoring improvement, and detection engineering with an accent on SIEM analytics, endpoint and identity telemetry, cloud security, and operational response. Focus on leading high-severity incidents, developing threat-hunting queries and automated response playbooks, solving complex cross-platform alerts, and mentoring junior engineers.

Location: Remote; 1st shift during standard business hours

Salary: $105,000 annually

Company

hirify.global provides cybersecurity and operational services focused on protecting client environments and improving security operations.

What you will do

  • Lead investigations and response activities for high-severity security incidents, including containment, eradication, recovery, and root cause analysis.
  • Perform advanced threat analysis across network, system, endpoint, identity, email, cloud, SIEM, and EDR telemetry.
  • Improve monitoring capabilities through detection logic, alert tuning, SIEM analytics rules, threat-hunting queries, enrichment logic, and automated response playbooks.
  • Drive operational improvements, support telemetry onboarding, and strengthen incident response and disaster recovery readiness.
  • Maintain runbooks, investigation guides, knowledge base articles, case records, and compliance documentation.
  • Mentor junior SNOC engineers and collaborate with engineering, infrastructure, and client teams on remediation and risk reduction.

Requirements

  • Advanced knowledge of security operations, incident investigation, and threat detection methodologies.
  • Experience with SIEM and monitoring platforms such as Microsoft Sentinel, Wazuh, SentinelOne, or similar technologies.
  • Strong understanding of networking, endpoint protection, identity protection, and cloud environments including Azure or AWS.
  • Experience with advanced log analysis, threat hunting, alert triage, detection engineering, alert tuning, and automation.
  • Ability to troubleshoot complex issues, lead high-severity operational events, and communicate effectively in documentation and client discussions.
  • Bachelor’s degree in Cybersecurity, Information Technology, or a related field preferred, or equivalent experience.

Nice to have

  • GIAC certifications such as GCIH, GCIA, or GCFA.
  • CompTIA CySA+ or CASP+, Microsoft Azure Security Engineer Associate, AWS Certified Specialty, or Cisco CCNP.
  • Familiarity with compliance frameworks, standards, and operational best practices.

Culture & Benefits

  • Medical, dental, and vision coverage.
  • Life insurance, 401(k) with company match, FSA, and HSA options.
  • Paid holiday, pet insurance, and additional benefits.
  • Certification, training, and professional development opportunities.
  • Collaborative environment focused on respect, teamwork, continuous improvement, and operational excellence.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →