Назад
Company hidden
3 дня назад

Director, Security Operations (Security Engineering)

Формат работы
hybrid
Тип работы
fulltime
Грейд
director
Английский
b2
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Director, Security Operations (Security Engineering) (Cybersecurity): Leading global threat detection, security monitoring, threat intelligence, and incident response across Delivery Hero's worldwide entities with an accent on Google SecOps, detection engineering, and operational maturity. Focus on directing CSIRT and SOC teams, commanding critical incidents, integrating threat intelligence into proactive defenses, and measuring detection and response performance with MITRE ATT&CK.

Location: Berlin, Germany; hybrid model with attendance at the Berlin campus two days per week

Company

hirify.global operates a global local delivery platform across approximately 65 countries, with headquarters in Berlin and a large technology organization.

What you will do

  • Lead and mentor global CSIRT and SOC teams responsible for monitoring and incident response across hirify.global entities.
  • Define and execute the multi-year strategy for threat detection, incident response, and threat intelligence.
  • Modernize the detection pipeline with Google SecOps, advanced telemetry, high-fidelity detections, and automated response playbooks.
  • Act as incident commander and ultimate escalation point for critical security incidents.
  • Translate threat actor tactics, techniques, and procedures into proactive detection engineering and strategic defenses.
  • Establish operational metrics, including MTTD, MTTR, and MITRE ATT&CK detection coverage, to drive continuous improvement.

Requirements

  • Proven leadership of SOC and CSIRT or incident response functions in large-scale enterprise or technology environments.
  • Extensive experience managing complex security incidents and building proactive threat hunting programs.
  • Hands-on familiarity with cloud-native SIEM and SecOps platforms, telemetry ingestion, detection-as-code, and SOAR playbooks.
  • Strong executive communication, crisis management, stakeholder management, and team mentorship skills.
  • Experience managing global follow-the-sun or escalation models and measuring security operations performance.
  • Ability to balance urgent incident response with long-term strategic capability development.

Nice to have

  • Experience with Google SecOps or Chronicle.
  • Experience in large-scale platforms, food or logistics delivery networks, or multi-tenant cloud ecosystems.
  • CISSP, CISM, GCIH, GCFA, GNFA, or comparable security operations certification.
  • Experience with multi-cloud environments, including AWS and GCP.

Culture & Benefits

  • Hybrid working model with face-to-face collaboration at the Berlin campus two days per week.
  • 27 days of annual leave, with an additional day in the second and third years of service.
  • Health checkups, meditation, yoga, gym access, life and accident insurance, and a corporate pension plan.
  • Employee share purchase plan, sabbatical bank, public transport discounts, and meal or food vouchers.
  • €1,000 annual education budget, language courses, and parental support.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →