Назад
Company hidden
обновлено 2 дня назад

Security Operations Engineer (AI)

91 200 - 118 600$
Формат работы
remote (только USA)
Тип работы
fulltime
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Operations Engineer (AI/SecOps): Strengthening security monitoring, incident response, detection engineering, and SecOps automation across endpoint, identity, network, cloud, SaaS, and application environments with an accent on threat investigation, detection logic, and responsible AI-assisted workflows. Focus on leading end-to-end incident response, building SIEM and EDR detections, developing Python and PowerShell automations, and improving coverage through MITRE ATT&CK-aligned threat hunting.

Location: Remote USA. The role participates in a rotating 24/7/365 coverage schedule, including nights, weekends, holidays, and extended hours as required.

Base salary: $91,200–$118,600 per year. The role may also be eligible for bonuses, commissions, and equity grants.

Company

hirify.global provides software and technology solutions for business tax compliance.

What you will do

  • Monitor, triage, investigate, and respond to security alerts across endpoint, identity, network, cloud, SaaS, and application environments.
  • Lead incident response from detection through containment, eradication, recovery, root-cause analysis, and corrective action tracking.
  • Build and tune SIEM, EDR, cloud, and network detection logic and conduct MITRE ATT&CK-aligned threat hunting.
  • Develop SecOps tooling, scripts, API integrations, and workflow automations to accelerate investigations and response.
  • Apply AI responsibly in security workflows by validating, testing, explaining, and maintaining AI-assisted outputs.
  • Collaborate across functions to close telemetry gaps, improve detection coverage, and turn incident findings into lasting security improvements.

Requirements

  • Hands-on experience in security operations, incident response, detection engineering, or threat hunting, including significant investigations.
  • Strong knowledge of attacker tactics across endpoint, identity, network, cloud, and email environments, including MITRE ATT&CK mapping and IOC analysis.
  • Experience with SIEM platforms such as Sentinel, Splunk, Chronicle, QRadar, or Elastic, and detection languages including KQL, SPL, Sigma, or YARA.
  • Experience with EDR/XDR platforms such as Defender for Endpoint, CrowdStrike, SentinelOne, Cortex XDR, or Carbon Black.
  • Scripting or automation experience with Python, PowerShell, or Bash, plus practical use of AI tools for security and development workflows.
  • Experience with at least one cloud platform and knowledge of cloud logging, identity security, MFA, conditional access, privileged access, token abuse, and identity-based attacks.

Nice to have

  • Bachelor’s degree in cybersecurity, information assurance, computer science, or a related field, or equivalent experience.
  • Experience with threat intelligence, malware triage, digital forensics, reverse engineering, vulnerability management, or compliance-driven SecOps.
  • Familiarity with detection-as-code, Git workflows, CI/CD pipelines, and code review practices.
  • Relevant GIAC, OffSec, AWS, Google Cloud, Microsoft, or CompTIA certifications.

Culture & Benefits

  • Collaborative, customer-focused environment built around teamwork, integrity, transparency, and continuous improvement.
  • Emphasis on innovation and responsible use of AI to improve security and operational efficiency.
  • Remote work arrangement for candidates in the United States.
  • Compensation includes a competitive base salary range with potential bonus, commission, and equity eligibility.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →