TL;DR
Junior Information Security Engineer (Cybersecurity): Identifying, analyzing, and addressing security vulnerabilities across systems, networks, and cloud infrastructure with an accent on implementing remediation and ensuring a strong security posture. Focus on supporting the implementation of open-source security stacks, setting up ingestion pipelines, and assisting with vulnerability analysis and remediation.
Location: Hybrid in Czech Republic (Prague, Hradec Králové, or Zlín offices, with remote flexibility)
Company
hirify.global is a custom product engineering company supporting multinational organizations and scaling startups in solving complex business challenges.
What you will do
- Support the implementation of open-source security stacks (Wazuh, OpenSearch, Suricata, Zeek).
- Help set up ingestion pipelines from various sources like GCP sinks, Vision One, Entra/M365, servers, and network sensors.
- Assist in tuning detections, Sigma rules, dashboards, and alert workflows.
- Perform CVE analysis, prioritize vulnerabilities, and support remediation efforts.
- Run scans using various vulnerability scanners and collect results.
- Document procedures, pipelines, detections, and playbooks.
Requirements
- 3+ years experience in cybersecurity, cloud security, or SOC work.
- Familiarity with open-source security tools (Wazuh, Suricata, Zeek, OpenSearch).
- Good understanding of CVEs, CVSS, EPSS, and vulnerability management processes.
- Hands-on experience with GCP basics (IAM, Compute, VPC, Logging).
- Experience with EDR/XDR platforms (Trend Micro Vision One preferred).
- Good English communication and documentation skills.
Nice to have
- Basic experience with Python/Bash scripting.
- Familiarity with Terraform basics.
- Experience with BigQuery.
Culture & Benefits
- Opportunity to work alongside top professionals in an open-door environment.
- Access to large-scale projects with global impact and tailored learning resources (Udemy, language courses, certifications).
- Internal mobility options to explore diverse domains and technologies.
- Company-paid medical insurance, mental health support, and financial & legal consultations.
- Flexible work arrangements balancing office and remote work.
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →