TL;DR
Security Engineer (Cybersecurity): Designing, maintaining, and optimizing endpoint security solutions and enforcing OS hardening standards to minimize attack surface across on-prem and cloud environments. Focus on proactive vulnerability assessment, incident response, and advanced workstation logging and telemetry.
Location: Hybrid in Kazakhstan. Relocation package is offered for candidates from other regions.
Company
hirify.global is a global ride-hailing and logistics technology company providing a range of services.
What you will do
- Design, maintain, and optimize endpoint security stack solutions.
- Develop and enforce OS hardening standards to minimize the attack surface of corporate endpoints.
- Test, assess, and deploy new security products and technologies for employee workstations.
- Configure advanced workstation logging and telemetry.
- Proactively identify, assess, and resolve vulnerabilities and misconfigurations on workstations.
- Respond to workstation-level security incidents and maintain high-quality documentation.
Requirements
- Proven experience managing and securing Windows/MacOS endpoints in enterprise environments at scale.
- Proven experience administering cloud-based AV/EDR solutions.
- Ability to use scripting languages like PowerShell/Python/Bash to automate security tasks.
- Expertise in managing system configurations via MDM solutions or other configuration management tools.
- Understanding of log collection mechanisms with experience using tools to gather and analyze logs across various operating systems (Windows, macOS).
- Knowledge of operating system hardening best practices.
- English: B1+ required.
Nice to have
- Experience securing Linux workstations.
- Experience working with one of the popular SIEM solutions (Splunk, ArcSight ESM, IBM QRadar, Elastic Security, etc.).
- Professional certificates in practical information security in offensive and defensive areas.
- Experience with CTFs.
Culture & Benefits
- Stable salary and official employment.
- Health insurance and access to professional counseling services including psychological, financial, and legal support.
- Hybrid work mode and flexible schedule.
- Discount club membership.
- Diverse internal training programs and partially or fully paid additional training courses.
- All necessary work equipment provided.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →