53 минуты назад
Senior Security Operations Analyst (Detection & Response)
117 800 - 166 950$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Security Operations Analyst (Detection & Response) (Fintech): Building and operating detection and response capabilities across AWS, Google Workspace, SaaS, and identity environments with an accent on SIEM engineering, incident response, vulnerability management, and automation. Focus on designing detection-as-code and SOAR workflows, investigating and containing cloud and identity threats, and establishing repeatable response practices in a regulated financial-services environment.
Location: Remote within 's states of operation in the United States; local or 100% remote work is supported. The role includes an off-hours 24/7 on-call and incident-response rotation.
Annual base salary: $117,800–$130,200 for Tier 3, $127,300–$140,700 for Tier 2, or $151,050–$166,950 for Tier 1, depending on location.
Company
Digital Finance builds home-equity financial products that help homeowners access the value of their homes.
What you will do
- Share the 24/7 on-call rotation with the security lead and independently triage, investigate, and contain security incidents.
- Build and maintain incident-response runbooks, escalation paths, post-incident reviews, metrics, and audit-ready evidence.
- Engineer and tune SIEM detections, correlation rules, dashboards, and reporting in Coralogix across cloud and identity log sources.
- Manage vulnerabilities, prioritize findings, coordinate remediation with system owners, and report on risk reduction.
- Develop detection-as-code and lightweight SOAR automation to accelerate alert triage and response.
- Use AI and LLM tooling to improve investigation, correlation, detection engineering, and security-operations workflows.
Requirements
- 5+ years of experience in security operations, incident response, SOC, or detection engineering.
- Independent experience participating in an on-call or incident-response rotation and handling incidents end to end.
- Strong SIEM experience with detections, correlation rules, dashboards, and log-source onboarding; Coralogix, Splunk, Elastic, or Microsoft Sentinel experience is applicable.
- Practical AWS and Google Workspace security experience, including identity and log sources.
- Working knowledge of vulnerability management and Python or similar scripting for detection-as-code and SOAR workflows.
- Must be authorized to work in the United States and reside in one of 's states of operation.
Nice to have
- Experience in regulated financial services or fintech, including GLBA, NYDFS Part 500, or SOC 2.
- Relevant security certifications such as GIAC, CySA+, Security+, or AWS Security Specialty.
- Experience establishing detection and response practices from an early-stage or greenfield environment.
Culture & Benefits
- Remote-first work with optional in-person collaboration at the Palo Alto headquarters.
- Medical, dental, vision, FSA, and HSA options.
- Unlimited paid time off, 10 company holidays, and paid parental leave.
- Equity, 401(k), life insurance, and short- and long-term disability coverage.
- Internet, mobile, wellness, and home-office stipends, plus company-provided equipment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 дня назад
Cybersecurity Engineer - US Federal
130 200 - 195 400$
6 дней назад
Senior Security Operations Engineer (Cybersecurity)
5 дней назад
Senior Security Engineer (Cybersecurity)
175 000 - 217 000$
5 дней назад
Senior Security Operations Engineer (Cybersecurity)
134 000 - 205 000$
3 дня назад
Vulnerability Management Team Lead (Cybersecurity)
109 900 - 185 260$
7 дней назад
Detection and Response Lead (Cybersecurity)
160 000 - 200 000$