TL;DR
Senior Security Operations Engineer: Joining the security team to triage escalations from the SOC and act as an Incident Commander when required, focusing on threat hunting, forensic investigations, and developing detection rules. Focus on proactively detecting and responding to security threats and ensuring the overall security of digital assets by crafting guardrails that keep users, data, and processes safely contained.
Location: Employees are expected to come into the office 3-days a week if based out of San Francisco Bay Area, Boston, Austin, Tokyo, Bangalore, Hyderabad, London, and New York
Salary: $220,000 to $240,000 plus a competitive equity package.
Company
hirify.global is the world’s leading API platform, used by more than 45 million+ developers and 500,000 organizations, including 98% of the Fortune 500.
What you will do
- Provide Level 2 support to a managed SOC and support monitoring security alerts and events from various sources.
- Conduct threat hunting and perform forensic investigations to identify indicators of compromise and patterns of malicious activity.
- Coordinate and manage incident resolution with cross-functional teams, including acting as Incident Commander during incidents.
- Support Cloud Detection & Response platforms to enable various automated notification and containment workflows.
- Fine-tune and develop detection rules, configurations, and automations based on new threats, lessons learned, or environmental changes.
- Manage Cloudflare security products for web application security, including WAF rules and DDoS protection.
Requirements
- Bachelor’s degree in Computer Science, Information Security, or a related field; or equivalent experience.
- Minimum of 7 years of experience in a SOC analyst, engineer, or security operations role.
- Proficiency in programming and relevant scripting languages such as Python, JavaScript, Bash.
- Experience with AWS security services and best practices.
- Familiarity with Cloudflare, SentinelOne, Okta, and related security tools, or similar equivalents.
- Understanding of network protocols, firewalls, and intrusion detection systems.
Nice to have
- Certifications such as CISSP, CEH, and AWS Certified Security Specialty.
- Knowledge of DevSecOps practices and CI/CD pipelines.
- Familiarity with regulatory compliance standards (e.g., GDPR, ISO 27001).
Culture & Benefits
- Flexible schedule working with a fun, collaborative team.
- Comprehensive benefits, including full medical coverage, flexible PTO, wellness reimbursement, and a monthly lunch stipend.
- Wellness programs to help you stay in the best of your physical and mental health.
- Frequent and fascinating team-building events to keep you connected.
- Donation-matching program to support the causes you care about.
- Embrace a hybrid work model.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →