Information Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Information Security Engineer (Cybersecurity): Managing endpoint security and vulnerability programs for a global security team with an accent on EDR platform ownership and MSSP oversight. Focus on optimizing detection quality, handling phishing triage, and coordinating incident response across multiple time zones.
Location: Hybrid (Romania, Cluj) — at least one day per week in the office
Company
connects customers and teams globally, empowering CX leaders with performance and insights to drive lasting business impact.
What you will do
- Own the endpoint security platform (CrowdStrike Falcon) and the vulnerability management programme.
- Manage the MSSP by reviewing escalations and ensuring service delivery quality.
- Track incidents through their full lifecycle, maintaining clear records for distributed team handovers.
- Handle phishing triage and IOC enrichment using standard tooling.
- Analyze and tune false positive patterns to improve detection quality.
- Gain hands-on experience in detection engineering, incident response, and M&A security work.
Requirements
- Hands-on experience with EDR platforms, preferably CrowdStrike.
- Familiarity with vulnerability scanning and remediation workflows.
- Experience working with SIEM tools such as Exabeam, Splunk, or Sentinel.
- Solid understanding of TCP/IP, DNS, and log analysis.
- Basic scripting skills in Python or PowerShell for automation.
- Must be based in or able to work from the Cluj office (Romania) at least one day per week.
Culture & Benefits
- Opportunity to work in a small team where contributions are highly visible.
- Real ownership and influence over detection quality and program maturity.
- Collaborative environment working with international colleagues in the UK and Florida.
- Commitment to diversity, equity, and equal opportunity employment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →