Назад
Company hidden
10 часов назад

Staff Security Engineer - Security Operations (Cybersecurity)

Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Security Engineer - Security Operations (Cybersecurity): Designing and operating Pantheon’s security operations capabilities for detection, incident response, threat intelligence, and operational resilience with an accent on scalable security architecture, cloud-native monitoring, and EU regulatory requirements. Focus on building high-fidelity detections, leading complex incident response, automating investigation and response workflows, and improving vulnerability and abuse management.

Location: United Kingdom

Company

hirify.global is a WebOps platform that helps developers, IT, and marketing teams develop, test, and release websites at scale.

What you will do

  • Define and execute the multi-year security operations roadmap across detection engineering, incident response, threat intelligence, exposure management, and abuse prevention.
  • Architect, select, and integrate the SecOps toolchain, including SIEM, SOAR, EDR/XDR, cloud security posture management, and identity monitoring platforms.
  • Build high-fidelity detections mapped to MITRE ATT&CK across cloud, endpoint, and identity environments.
  • Own major incident response, including playbooks, runbooks, war rooms, post-incident reviews, and continuous improvement.
  • Develop automation for alert triage, enrichment, investigation, and response using SOAR, APIs, and scripting.
  • Lead vulnerability management, abuse and fraud prevention, business resilience exercises, executive reporting, and SecOps mentoring.

Requirements

  • 10+ years of information security experience, including 7+ years focused on security operations.
  • Extensive experience architecting and operating enterprise SIEM and SOAR platforms such as Chronicle, Splunk, Elastic SIEM, Palo Alto XSOAR, or Tines.
  • Hands-on cloud-native security experience with GCP and/or AWS, including logging pipelines, cloud security posture management, and IAM monitoring.
  • Expertise in attack techniques, threat actor tradecraft, MITRE ATT&CK, and MITRE D3FEND.
  • Major incident response leadership experience and proficiency in Python, Bash, or equivalent scripting for security engineering.
  • Experience with GDPR and NIS2 operational security requirements, plus the ability to communicate technical risk to engineering and executive audiences.

Nice to have

  • Security certifications such as CISSP, CISM, GIAC, OSCP, or a cloud security specialty certification.
  • Experience building detection engineering programmes, threat intelligence capabilities, abuse monitoring, phishing detection, or takedown coordination.
  • Experience with bug bounty operations, red team or purple team collaboration, security vendors, RFPs, and build-versus-buy decisions.
  • Familiarity with the Irish or wider EU regulatory environment, including the Data Protection Commission, ENISA, and NIS2 obligations.

Culture & Benefits

  • Trust, teamwork, passion, and customer focus, with an emphasis on individuality, humour, balance, and open-source contribution.
  • Competitive compensation and equity plan.
  • 28 days of holiday, private medical and dental coverage, life and critical illness insurance, and a workplace pension scheme.
  • Top-of-line equipment, wellness and reading allowance, and access to LinkedIn Learning.
  • Team and company-wide events and activities.

Hiring process

  • Visa sponsorship is not available at this time.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →