6 часов назад
Principal Security Operations Engineer (Cloud Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Principal Security Operations Engineer (Cloud Security): Driving the evolution of a global SOC and cloud threat detection strategy across GCP, AWS, and containerized workloads with an accent on detection engineering, incident response, and operational resilience. Focus on designing SIEM/SOAR automation, leading complex investigations, improving MSSP service quality, and validating 24x7 monitoring and response capabilities.
Location: United States — Austin; hybrid work environment, and candidates must be local to the posting location.
Company
provides a mobile advertising and consumer experience platform connecting telecoms, advertisers, app publishers, and consumers.
What you will do
- Serve as the primary technical authority for the SOC ecosystem and cloud threat detection strategy.
- Lead complex incident investigations across GCP, AWS, Kubernetes, serverless, and other containerized workloads.
- Design, maintain, and fine-tune SIEM, SOAR, log management, CrowdStrike, Orca Security, and related detection and automation capabilities.
- Optimize the MSSP relationship and improve detection quality, response speed, visibility, and protection coverage.
- Develop incident response playbooks and threat-hunting methodologies aligned with MITRE ATT&CK.
- Define SOC metrics such as MTTD and MTTR, coordinate tabletop exercises and BC/DR drills, and advise technical and executive stakeholders.
Requirements
- 12+ years of cybersecurity experience in security operations, threat detection, or incident response within global enterprise or SaaS environments.
- Hands-on experience developing and managing SOC functions for GCP and AWS, including cloud logging, monitoring, and automation.
- Strong knowledge of MSSP models, modern adversary tradecraft, cloud attack paths, and detection engineering frameworks.
- Experience with CrowdStrike, Orca, SIEM/SOAR platforms, and security telemetry and automation tools.
- Experience supporting or interfacing with SOC 2, ISO 27001, or SOX compliance programs.
- Excellent analytical and communication skills for presenting technical findings and risks to engineers and executives.
Nice to have
- Advanced certifications such as CISSP, GCIH, GCFA, CISM, or CCFR.
- Google Cloud certifications such as Professional Cloud Security Engineer or Professional Cloud Architect.
Culture & Benefits
- Hybrid work environment based in Austin.
- Bonus plan and equity plan.
- 401(k) benefits.
- Unlimited paid time off.
- Inclusive environment supporting diversity, equity, and collaboration across global teams.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
18 часов назад
Security Engineer (AI)
20 часов назад
Senior Security Engineer, Operations (Aerospace)
150 000 - 190 000$
3 дня назад
Security Architect (Cloud Security)
175 000 - 200 000$
17 часов назад
Security Engineer
180 000 - 300 000$
22 часа назад
Staff Security Engineer - Security Operations (Cybersecurity)
24 часа назад
Staff Security Engineer for Cloud (Automotive)
205 000 - 240 000$