Назад
Company hidden
23 часа назад

Principal Advanced Threat Response Analyst (Cybersecurity)

120 500 - 276 500$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Advanced Threat Response Analyst (Cybersecurity): Leading complex APT, ransomware, insider threat, and nation-state investigations across enterprise and cloud environments with an accent on threat hunting, digital forensics, incident command, and adversary emulation. Focus on developing detections and automation, directing purple team exercises, hardening security controls, and mentoring incident response specialists.

Location: Fully remote within the USA

Salary: USD 120,500–276,500 annual base salary in Texas; variable incentives may also be offered.

Company

hirify.global is a global edge-to-cloud technology company helping organizations connect, protect, analyze, and act on data and applications.

What you will do

  • Lead complex investigations involving APTs, ransomware, insider threats, and nation-state activity across enterprise and cloud environments.
  • Drive proactive threat hunting focused on emerging TTPs, behavioral analytics, and detection gaps across EDR, SIEM, and network telemetry.
  • Develop purple team exercises, tabletop simulations, custom detections, playbooks, and automation to improve detection and containment.
  • Lead incident command during major security events, coordinate multidisciplinary responders, brief executives, and produce after-action reports.
  • Collaborate with red teams, offensive security engineers, engineering, and architecture teams to translate adversary behavior into stronger controls and detections.
  • Mentor junior analysts, hunters, and incident responders while contributing to threat intelligence initiatives.

Requirements

  • Must be based in the USA for this fully remote role.
  • 10+ years of experience in incident response, threat hunting, digital forensics, threat intelligence, or SOC operations.
  • Experience leading end-to-end investigations of advanced threat campaigns and complex multi-vector attacks.
  • Strong knowledge of MITRE ATT&CK, adversary emulation, kill chain analysis, enterprise IT, and cloud security across AWS, Azure, and GCP.
  • Expertise with offensive security tools, SIEM platforms including Splunk, Sentinel, and ELK, EDR platforms, and forensic tools.
  • Strong scripting or automation skills with Python, PowerShell, or Bash, plus excellent communication and leadership abilities.

Nice to have

  • Advanced SANS certifications such as GCFA, GREM, GCIA, GNFA, GCTI, GSEC, or GCIH.
  • Offensive certifications such as OSCP, OSEP, OSED, or CRTO.
  • Recognition from hands-on cybersecurity platforms such as Hack The Box, CyberDefenders, or TryHackMe.
  • Cloud security certifications for AWS, Azure, or GCP.

Culture & Benefits

  • Remote/teleworker arrangement with flexibility to manage work and personal needs.
  • Comprehensive health, financial, and emotional wellbeing benefits for employees and their loved ones.
  • Professional development programs supporting subject-matter expertise and career mobility.
  • Inclusive workplace that values varied backgrounds and individual uniqueness.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →