Назад
Company hidden
обновлено 3 дня назад

Principal Incident Response Engineer (AI)

117 200 - 157 500$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Incident Response Engineer (AI): Leading digital forensics, incident response, and threat hunting across on-premises, hybrid, and cloud workloads with an accent on high-severity incident coordination, detection engineering, and AI/LLM workflows. Focus on analyzing endpoint and network artifacts, investigating root causes, expanding MITRE ATT&CK coverage, and developing remediation strategies for complex cyber threats.

Location: Remote, United States of America

Salary: $117,200–$157,500 base pay per year

Company

Purpose-driven technology supports social impact organizations through responsible AI, innovation, trust, and human expertise.

What you will do

  • Analyze security events and indicators to determine incident nature and severity.
  • Respond to security incidents and serve as technical lead for high-severity cases.
  • Coordinate containment, mitigation, recovery, and remediation across cross-functional teams.
  • Conduct digital forensic investigations across on-premises, hybrid, and cloud workloads.
  • Lead intelligence-driven threat hunts and partner with detection engineering to expand MITRE ATT&CK coverage.
  • Develop AI/LLM workflows to improve incident detection and response, and participate in the on-call rotation.

Requirements

  • 8+ years of cyber incident response experience in a relevant environment.
  • Expertise with SIEM, IDS/IPS, EDR, and cloud monitoring solutions.
  • Strong knowledge of incident response methodologies, including containment, eradication, and recovery, plus NIST, SANS, and CSA frameworks.
  • Ability to acquire and analyze endpoint and network artifacts, volatile memory, malicious files, binaries, and scripts.
  • Experience with EnCase, FTK, Axiom, Cellebrite, or comparable forensic tools.
  • Ability to collaborate with forensic analysts, law enforcement, and legal experts while preserving electronic evidence.

Nice to have

  • Cybersecurity certifications such as CISSP, GCIH, GFCA, GREM, or ECIH.

Culture & Benefits

  • Remote-flexible workforce.
  • Medical, dental, and vision insurance.
  • 401(k) program with employer match.
  • Flexible paid time off and generous parental leave.
  • Wellness programs, pet insurance, legal and identity protection, and tuition reimbursement.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →