TL;DR
Security Operations Engineer (AI): Responsible for detecting, investigating, and responding to security threats across Apollo’s cloud-native and SaaS environments with an accent on operational rigor and effective collaboration. Focus on threat-hunting activities to identify malicious or anomalous behavior and automate security workflows.
Location: Remote, Poland
Company
hirify.global is the leading go-to-market solution for revenue teams, trusted by over 500,000 companies and millions of users globally.
What you will do
- Monitor, triage, and investigate security alerts and events across cloud infrastructure, SaaS applications, and corporate systems.
- Conduct end-to-end security investigations, including scoping, containment, eradication, recovery, and documentation.
- Configure and maintain SIEM detections in Panther, including use cases, correlation rules, alert logic, and tuning.
- Perform proactive threat-hunting activities to identify malicious or anomalous behavior not surfaced by existing detections.
- Build scripts, automations, and tools to reduce manual work and improve response speed and consistency.
- Produce clear, high-quality documentation for incidents, investigations, and post-incident reviews.
Requirements
- 5+ years of experience in Security Operations, Incident Response, or Security Engineering.
- Hands-on experience with SIEM platforms (experience with Panther is highly valued), log analysis, and detection engineering.
- Experience investigating security incidents in cloud-native environments (GCP preferred; AWS and Azure also relevant) and SaaS applications.
- Experience automating security workflows and investigations.
- Proficiency in Python; familiarity with Ruby preferred.
- Ability to operate independently, prioritize effectively, and make sound technical decisions under pressure.
Nice to have
- Experience using AI or ML-powered security tools for detection, investigation, or response.
- Familiarity with vulnerability management concepts and remediation workflows.
- Relevant certifications such as GCIA, GCIH, GCED, AWS / GCP Security certifications, or Security+.
- Prior experience working in fully remote, distributed teams.
Culture & Benefits
- AI Native culture of continuous improvement.
- Investments in your growth with resources, support, and autonomy.
- Collaboration across departments for team success.
- Encouragement of bold ideas and courageous action.
Будьте осторожны: если вас просят войти в iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →