Junior Security Operations Engineer (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Junior Security Operations Engineer (AI/Cybersecurity): Designing and shipping security tooling for triage, investigations, and response workflows with an accent on AI-assisted automation and vulnerability management. Focus on building LLM-backed copilots, automating bug bounty triage, and optimizing threat response in a lean environment.
Location: Remote (Global); hubs in Dublin, Amsterdam, San Francisco, and Denver (Hybrid option for those nearby).
Company
Industry leader in global connectivity building a private, multi-cloud IP network and hyperlocal edge technology.
What you will do
- Review and reproduce vulnerability reports from bug bounty programs.
- Build AI-assisted triage tools to automate duplicate detection and spam filtering.
- Monitor and respond to EDR, cloud security alerts, and darkweb credential exposures.
- Develop LLM-backed copilots and Slack bots to correlate signals and pull alert context.
- Create response workflows to draft remediation steps and track issues to closure.
- Support audit evidence collection for SOC 2, ISO 27001, and PCI DSS.
Requirements
- Previous experience in SecOps, Security Analyst, or Threat Response roles.
- Ability to reproduce technical vulnerabilities and triage bug bounty reports.
- Hands-on experience with SIEM, EDR, and DLP tools.
- Demonstrated interest in applying AI/LLMs to security through side projects or internal tools.
- Scripting skills in Python, Bash, or similar.
- Strong written communication skills and ability to work autonomously across time zones.
Nice to have
- Experience building LLM agents, RAG pipelines, or bots backed by OpenAI/Anthropic.
- Detection engineering experience (Sigma rules, Falcon queries, Grafana/Loki).
- Cloud security depth in AWS or GCP.
- Prior work in regulated environments (SOC 2, ISO 27001, PCI DSS).
- Exposure to AI/ML security concerns like prompt injection and data leakage.
Culture & Benefits
- Remote-first and async-friendly work environment.
- Lean, high-trust team culture that treats security as an engineering problem.
- Focus on automation and replacing repetitive tasks with scripts or agents.
- Opportunities for continuous learning and career growth.
- Flexible work arrangement with optional office presence in global hubs.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →