Security Engineer, Public Sector (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Engineer, Public Sector (Cybersecurity): Building and operating high-precision security detections, incident response automation, and telemetry pipelines across cloud services and enterprise SaaS with an accent on detection engineering, digital forensics, and malware analysis. Focus on designing production-grade security tooling, investigating complex incidents, and converting findings into scalable controls, improved schemas, and automated response workflows.
Location: New York, NY; St. Louis, MO; or Washington, DC. The role requires an active Top Secret clearance.
Salary: $164,000–$256,000 USD for St. Louis; $196,800–$307,000 USD for Washington, DC; and $218,400–$342,000 USD for New York.
Company
develops reliable AI systems, high-quality data, and full-stack technologies for enterprises, leading technology companies, and government organizations.
What you will do
- Engineer, test, deploy, and measure security detection logic across cloud and enterprise environments.
- Build incident response automation, runbooks, integrations, and tooling to accelerate containment and improve traceability.
- Improve telemetry pipelines through schema design, normalization, enrichment, and quality controls.
- Investigate security incidents, conduct digital forensics and malware analysis, and identify attack vectors and adversary techniques.
- Partner with IT, security, and engineering teams to strengthen identity, access, logging, forensics, and security guardrails.
- Use threat intelligence platforms and communicate incident impact and remediation recommendations to technical and non-technical stakeholders.
Requirements
- Active Top Secret clearance is mandatory; candidates without at least this clearance will not be considered.
- 5+ years of experience in detection engineering, incident response, or security operations, focused on security tooling and automation.
- Production-grade programming experience in at least one language, such as Python or Go.
- Experience with detection pipelines, SIEM content, alerting workflows, and SIEM, EDR, or SOAR platforms.
- Experience with cloud-native environments such as AWS, GCP, or Azure and their security telemetry.
- Knowledge of modern cyber threats, adversary TTPs, digital forensics, malware analysis, and threat intelligence workflows.
Nice to have
- Proficiency in NodeJS, TypeScript, Python, and/or Kubernetes.
- Experience extending security platforms programmatically or building integrations.
- Relevant certifications such as GCIH, GCFA, GCIA, CISSP, or GDSA.
Culture & Benefits
- Base salary, equity compensation for eligible roles, and comprehensive health, dental, and vision coverage.
- Retirement benefits, a learning and development stipend, and generous paid time off.
- Additional benefits may include a commuter stipend depending on eligibility and location.
- Inclusive workplace with equal employment opportunities and reasonable accommodation support.
Hiring process
- Compensation is determined during the interview process based on location, skills, experience, qualifications, and interview performance.
- Candidates must wait 90 days before being reconsidered for the same role.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →