Назад
Company hidden
2 дня назад

Senior Detection & Response Engineer (Cybersecurity)

Π€ΠΎΡ€ΠΌΠ°Ρ‚ Ρ€Π°Π±ΠΎΡ‚Ρ‹
hybrid
Π’ΠΈΠΏ Ρ€Π°Π±ΠΎΡ‚Ρ‹
fulltime
Π“Ρ€Π΅ΠΉΠ΄
senior
Английский
b2
Π‘Ρ‚Ρ€Π°Π½Π°
UK
Вакансия ΠΈΠ· списка Hirify.GlobalВакансия ΠΈΠ· Hirify Global, списка ΠΌΠ΅ΠΆΠ΄ΡƒΠ½Π°Ρ€ΠΎΠ΄Π½Ρ‹Ρ… tech-ΠΊΠΎΠΌΠΏΠ°Π½ΠΈΠΉ
Для мэтча ΠΈ ΠΎΡ‚ΠΊΠ»ΠΈΠΊΠ° Π½ΡƒΠΆΠ΅Π½ Plus

ΠœΡΡ‚Ρ‡ & Π‘ΠΎΠΏΡ€ΠΎΠ²ΠΎΠ΄

Для мэтча с этой вакансиСй Π½ΡƒΠΆΠ΅Π½ Plus

ОписаниС вакансии

ВСкст:
/
TL;DR
Senior Detection & Response Engineer (Cybersecurity): Strengthening detection and incident response across studio and gaming environments with an accent on escalated investigations, detection engineering, and security automation. Focus on threat hunting with MITRE ATT&CK, developing monitoring logic and tooling, and improving incident runbooks and response workflows.

Location: Cambridge, England, United Kingdom. Hybrid role with predominantly remote work available, but candidates must live within a comfortable commuting distance of the office and attend onsite when required.

Company

hirify.global is a game development company creating community-powered online worlds, including the RuneScape franchise, for PC and mobile platforms.

What you will do

  • Lead escalated security investigations, developing hypotheses, collecting evidence, and determining root cause and impact.
  • Build and optimise detection rules, queries, and monitoring logic across cloud, endpoint, network, and application environments.
  • Develop tooling and automation for security telemetry, alert enrichment, investigation workflows, and response times.
  • Conduct threat hunting using adversary behaviours, TTPs, and MITRE ATT&CK frameworks.
  • Create and improve incident runbooks, playbooks, and detection processes.
  • Collaborate with the external SOC and internal engineering teams, including participation in an on-call rotation.

Requirements

  • Hands-on experience investigating security incidents, collecting artefacts, and analysing endpoint, network, and application data.
  • Strong knowledge of SIEM and security monitoring tooling, including complex investigation queries.
  • Understanding of adversary TTPs, offensive security concepts, and MITRE ATT&CK principles.
  • Practical experience with cloud environments, security controls, and hybrid infrastructure.
  • Experience developing detection logic, runbooks, automation, or security tooling.
  • Knowledge of operating system internals and forensic investigation across Windows, macOS, or Linux.

Nice to have

  • Scripting experience with PowerShell or Python.

Culture & Benefits

  • Private healthcare, including a dental plan.
  • Discretionary annual performance bonus.
  • Minimum 6% pension contributions and life insurance.
  • Enhanced family leave policies from day one.
  • Flexible working hours and 25 days of annual leave plus bank holidays.
  • Option to buy or sell holidays and an inclusive workplace focused on trust, autonomy, and collaboration.

Π‘ΡƒΠ΄ΡŒΡ‚Π΅ остороТны: Ссли Ρ€Π°Π±ΠΎΡ‚ΠΎΠ΄Π°Ρ‚Π΅Π»ΡŒ просит Π²ΠΎΠΉΡ‚ΠΈ Π² ΠΈΡ… систСму, ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΡƒΡ iCloud/Google, ΠΏΡ€ΠΈΡΠ»Π°Ρ‚ΡŒ ΠΊΠΎΠ΄/ΠΏΠ°Ρ€ΠΎΠ»ΡŒ, Π·Π°ΠΏΡƒΡΡ‚ΠΈΡ‚ΡŒ ΠΊΠΎΠ΄/ПО, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡ‚Π΅ этого - это мошСнники. ΠžΠ±ΡΠ·Π°Ρ‚Π΅Π»ΡŒΠ½ΠΎ ΠΆΠΌΠΈΡ‚Π΅ "ΠŸΠΎΠΆΠ°Π»ΠΎΠ²Π°Ρ‚ΡŒΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡˆΠΈΡ‚Π΅ Π² ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΡƒ. ΠŸΠΎΠ΄Ρ€ΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β†’