Назад
Company hidden
6 часов назад

Principal Security Operations Engineer (Cloud Security)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
UK/Singapore/US +2 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Security Operations Engineer (Cloud Security): Driving the evolution of a global SOC and cloud threat detection strategy across GCP, AWS, and containerized workloads with an accent on detection engineering, incident response, and operational resilience. Focus on designing SIEM/SOAR automation, leading complex investigations, improving MSSP service quality, and validating 24x7 monitoring and response capabilities.

Location: United States — Austin; hybrid work environment, and candidates must be local to the posting location.

Company

hirify.global provides a mobile advertising and consumer experience platform connecting telecoms, advertisers, app publishers, and consumers.

What you will do

  • Serve as the primary technical authority for the SOC ecosystem and cloud threat detection strategy.
  • Lead complex incident investigations across GCP, AWS, Kubernetes, serverless, and other containerized workloads.
  • Design, maintain, and fine-tune SIEM, SOAR, log management, CrowdStrike, Orca Security, and related detection and automation capabilities.
  • Optimize the MSSP relationship and improve detection quality, response speed, visibility, and protection coverage.
  • Develop incident response playbooks and threat-hunting methodologies aligned with MITRE ATT&CK.
  • Define SOC metrics such as MTTD and MTTR, coordinate tabletop exercises and BC/DR drills, and advise technical and executive stakeholders.

Requirements

  • 12+ years of cybersecurity experience in security operations, threat detection, or incident response within global enterprise or SaaS environments.
  • Hands-on experience developing and managing SOC functions for GCP and AWS, including cloud logging, monitoring, and automation.
  • Strong knowledge of MSSP models, modern adversary tradecraft, cloud attack paths, and detection engineering frameworks.
  • Experience with CrowdStrike, Orca, SIEM/SOAR platforms, and security telemetry and automation tools.
  • Experience supporting or interfacing with SOC 2, ISO 27001, or SOX compliance programs.
  • Excellent analytical and communication skills for presenting technical findings and risks to engineers and executives.

Nice to have

  • Advanced certifications such as CISSP, GCIH, GCFA, CISM, or CCFR.
  • Google Cloud certifications such as Professional Cloud Security Engineer or Professional Cloud Architect.

Culture & Benefits

  • Hybrid work environment based in Austin.
  • Bonus plan and equity plan.
  • 401(k) benefits.
  • Unlimited paid time off.
  • Inclusive environment supporting diversity, equity, and collaboration across global teams.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →