TL;DR
Senior Security Operations Engineer (Cybersecurity): Leading incident response and threat hunting initiatives within a global enterprise environment with an accent on SIEM/EDR management and cloud security. Focus on designing automated SOAR playbooks, mentoring junior analysts, and strengthening the organization’s detection capabilities against complex threats.
Location: Must be based in Brno, Czech Republic, with a hybrid 3+2 requirement (mandatory office presence on Tuesdays and Wednesdays).
Company
hirify.global provides powerful and secure IT management software solutions to accelerate business transformation.
What you will do
- Lead Tier 3 incident investigations and serve as Incident Commander for high-severity security breaches.
- Conduct proactive threat hunting using internal telemetry and external intelligence frameworks.
- Develop and tune detection logic across SIEM, EDR, and cloud platforms.
- Design and implement SOAR playbooks to automate response and reduce MTTR.
- Mentor junior and mid-level analysts while leading tabletop exercises.
- Partner with DevOps and Engineering teams to integrate security monitoring into CI/CD pipelines.
Requirements
- 5–7 years of experience in Security Operations, Incident Response, or Threat Hunting.
- Mastery of SIEM platforms and EDR/XDR solutions.
- Proven experience securing and monitoring AWS, Azure, or GCP cloud environments.
- Proficiency in scripting (Python, PowerShell, Bash, or YARA-L).
- Strong command of security frameworks like NIST CSF, MITRE ATT&CK, and ISO 27001.
- Ability to work from the Brno office at least 3 days per week.
Nice to have
- Professional certifications such as CISSP, GCIA, GCIH, or GCFA.
- Experience with offensive security methodologies or Purple Teaming.
- Bachelor’s or Master’s degree in Cybersecurity or related field.
Culture & Benefits
- Generous 25 days of vacation plus additional sick and study days.
- Personal education budget of up to 48,300 CZK per year.
- Pension or life insurance matching program.
- Multisport card and meal allowance.
- Access to LinkedIn Learning and language classes.
- Supportive hybrid work environment with team-focused perks like office breakfasts.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →