обновлено 8 дней назад
Staff Security Engineer - Security Operations
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Staff Security Engineer - Security Operations (Security Operations/AI): Commanding major security incidents and defining incident response methodology for a WebOps platform with an accent on threat hunting, detection engineering, SIEM governance, and AI-assisted automation. Focus on leading containment and post-incident reviews, building the ARES incident response platform, improving MITRE ATT&CK coverage, and guiding operational security standards.
Location: Remote within Ireland. Some scheduling flexibility is expected for cross-timezone standups and incident response with teams in North America and Europe.
Company
provides a WebOps platform that helps developers, IT, and marketing teams develop, test, and release website changes reliably.
What you will do
- Command complex security incidents, including data breach scenarios, coordinated attacks, and platform-level events.
- Define and improve incident response methodology, including severity frameworks, escalation paths, playbooks, runbooks, on-call standards, and SLAs.
- Lead MITRE ATT&CK-based threat hunting across cloud, endpoint, and identity environments, converting findings into higher-fidelity detections.
- Set the automation roadmap for triage, enrichment, investigation, and response, and help build the AI-assisted ARES platform.
- Govern the Google SecOps/Chronicle SIEM, covering detection coverage, log source strategy, data quality, and cost.
- Mentor analysts and engineers, communicate operational risk to senior leadership, and support threat intelligence, resilience testing, compliance, and red/purple team activities.
Requirements
- 8+ years of information security experience, including substantial security operations experience and demonstrated command of major incidents.
- Deep practical knowledge of incident response methodologies such as NIST 800-61 or SANS PICERL, with experience building or materially improving an incident response programme.
- Expertise in threat hunting, attacker tradecraft, MITRE ATT&CK, detection logic, and response procedures.
- Hands-on AI and LLM tooling experience, plus an engineering mindset and the ability to work with Python, Bash, APIs, and GCP and/or AWS.
- Experience operating an enterprise SIEM at governance level; Google SecOps/Chronicle is strongly preferred, with Splunk, Sentinel, or Elastic also acceptable.
- CISSP or equivalent security certification depth, along with excellent written and verbal communication skills.
Culture & Benefits
- Remote work within Ireland and collaboration with distributed teams across North America and Europe.
- Industry-competitive compensation and an equity plan benchmarked to the Irish market.
- 28 days of holiday, private medical and dental coverage, life and critical illness insurance, and a workplace pension scheme.
- Top-of-the-line equipment, wellness and reading allowances, and access to LinkedIn Learning.
- Team and company-wide events, an Employee Resource Platform, and a culture focused on trust, teamwork, passion, customers, individuality, and balance.
- Visa sponsorship is not available.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
12 дней назад
Threat Hunter (Cybersecurity)
10 дней назад
Security Engineer - Incident Response (Cybersecurity)
70 000 - 107 800€
Writer
10 дней назад
Staff Detection and Response Engineer (AI Security)
146 000 - 240 000$
10 дней назад
HK Senior Detection and Response Engineer (Cybersecurity)
10 дней назад
Senior Detection & Security Automation Engineer
Runway
9 дней назад
Detection & Response Engineer (AI Security)
240 000 - 290 000$