TL;DR
Security Engineer III (Cybersecurity): Performing advanced cybersecurity investigations and responding to escalations as part of a 24/7 operating model with an accent on security event alerts across numerous technologies and brands. Focus on cyber-attack analysis, cyber kill-chain framework, and recommending effective courses of containment and remediation.
Location: Prague, Czechia. Flexibility is required as the position will require shifts to cover 24x7 follow the sun in line with US and APAC operations.
Company
hirify.global brands power global travel for everyone, everywhere.
What you will do
- Perform advanced level of security investigation on the following areas: application security, cloud security, data security, network security, and perimeter security.
- Analyze security signals, threat intelligence, and vulnerability data to detect, investigate, and remediate security issues, driving long-term risk reduction through automation and scalable solutions.
- Gather data and drill down to root cause analysis, ability to recommend effective courses of containment, remediation, and communicate to the various levels in the organization.
- Suggest improvements to current Security Detection practices and procedures.
- Respond immediately to security issues ensuring alignment to SLAs and driving resolution and mitigation.
Requirements
- Bachelor’s degree in Computer Science, Information Security, or a related technical field, or equivalent practical experience in security engineering.
- Several years of hands-on experience in security engineering, including building or operating security tooling, services, or platforms within complex, distributed systems.
- Proven experience owning the security posture of one or more services or platforms, including responsibility for implementing controls, monitoring, and remediation within that scope.
- Strong technical proficiency in at least one programming or scripting language, with experience applying secure coding practices, working with APIs, and understanding data models in modern software architectures.
- Familiarity with AI-driven systems, tools, or workflows and applying AI/ML concepts to real world products.
Nice to have
- Experience leading shifts in a security operations center or CISRT.
- Demonstrated success leading security initiatives or projects end to end, such as rolling out new security controls, detection capabilities, or automation across multiple teams or services.
- Depth in one or more security domains such as application security, infrastructure security, identity and access management, detection engineering, or vulnerability management, with a track record of measurable risk reduction.
- Cybersecurity certifications such as SANS or CISSP.
- Experience applying data-driven approaches to prioritize security work, tune detections, and improve operational excellence, including defining metrics and feedback loops for continuous improvement.
Culture & Benefits
- Open culture where everyone belongs, differences are celebrated and know that when one of us wins, we all win.
- Full benefits package, including exciting travel perks, generous time-off, parental leave, a flexible work model.
- Career development resources to fuel our employees' passion for travel and ensure a rewarding career journey.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →