Sr Cybersecurity Engineer (Incident Response)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Sr Cybersecurity Engineer (Incident Response): Leading the detection, investigation, and response to complex cybersecurity threats with an accent on advanced incident response activities and security monitoring across a broad range of technologies. Focus on improving detection capabilities, guiding response efforts, and refining cloud detections across Azure and Microsoft 365.
Location: Hybrid (Irving, TX). Candidates must be based in the US; visa sponsorship is not provided.
Company
provides innovative automotive financing and financial services with a cybersecurity structure reporting directly to the CEO.
What you will do
- Lead incident investigations, including detection, containment, eradication, recovery, and post-incident reviews.
- Analyze log sources, SIEM alerts, IDS/IPS alerts, host activity, and network traffic to identify unauthorized activity.
- Act as the senior escalation point for complex investigations and develop standardized incident response playbooks.
- Identify and codify attacker TTPs and IOCs to enhance detection pipelines.
- Design and refine cloud detections and alerts specifically for Azure and Microsoft 365 environments.
- Participate in an on-call rotation to support security incidents outside of standard business hours.
Requirements
- No visa sponsorship available for this position.
- Deep knowledge of TCP/IP networking, OSI model, and IP subnetting.
- Proficiency with analysis tools like Bro/Zeek or Suricata and network log analysis.
- Strong understanding of NIST Incident Response Life Cycle and MITRE ATT&CK Framework.
- Hands-on experience responding to security incidents in both cloud (Azure) and on-prem environments.
- Expertise in writing and optimizing Splunk queries for threat hunting.
- 3-5 years of experience in Cybersecurity, Information Security, or Network Engineering.
Nice to have
- Security certifications such as CISSP, CCNP-Security, GIAC, CEH, or CPTS.
- Bachelor’s Degree in a related field.
- Experience integrating AI tools (e.g., Microsoft Copilot) into security workflows.
Culture & Benefits
- Comprehensive benefits package including 401K matching.
- 12 weeks of 100% paid bonding leave for new parents.
- Tuition assistance and continuous training opportunities.
- GM employee auto discount and community service pay.
- Flexible hybrid work environment with a requirement of 4 days per week in the office.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →