Senior Detection and Response Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Detection and Response Engineer (Cybersecurity): Leading technical security use case design, implementation, and incident response for a major investment bank with an accent on threat hunting and SOC framework optimization. Focus on developing robust detection capabilities, automating security processes, and ensuring regulatory compliance within a high-stakes financial environment.
Location: Must be based in Hong Kong (Hybrid work model)
Company
is a European technology leader specializing in consulting, digital services, and software, supporting organizations in their digital transformation.
What you will do
- Lead security use case definition, design, and implementation based on MITRE ATT&CK frameworks.
- Oversee detection capabilities for the 24/7 regional IT Production SOC.
- Respond to cyber and IT security incidents, evaluating severity and developing mitigation plans.
- Partner with global and regional stakeholders to ensure procedural efficiency and readiness.
- Continuously improve SOC frameworks through policy reviews and operational playbook updates.
- Identify recurring security risks and recommend process improvements.
Requirements
- Minimum 7+ years of experience in cybersecurity incident response.
- Minimum 4+ years specifically in security use case design, development, and coding.
- Proficiency in scripting languages including Python, PowerShell, Bash, and SQL.
- Strong understanding of Linux (RedHat/Ubuntu) and SIEM technologies.
- Experience in threat hunting, event analysis, and incident investigation.
- Ability to work with large data sets and apply an automation mindset to security operations.
Nice to have
- Experience with the ELK (Elastic Logstash Kibana) stack.
- Professional credentials such as SANS, CISSP, or OSCP.
Culture & Benefits
- Hybrid working mode with Work-from-Abroad benefits.
- 18 days of annual leave.
- Comprehensive health and insurance coverage including GP and hospitalization.
- Annual performance-based bonus.
- Training programs, certification opportunities, and career development incentives.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →